17c95c32e9cf0bd17921e90d1bb0629c7f249e00c2170daa869b00542b75debb

Summary

Architecture IMAGE_FILE_MACHINE_AMD64
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date 1970-Jan-01 00:00:00
Detected languages Japanese - Japan
TLS Callbacks 2 callback(s) detected.
ProductName Hotkey Viewer
FileDescription Synchronizes hotkey viewer between applications on the same PC
OriginalFilename HotkeyViewer.exe
LegalCopyright (c) SpringView Crest Technologies Co.. All rights reserved.
FileVersion 6.1.9.0
CompanyName SpringView Crest Technologies Co.

Plugin Output

Suspicious PEiD Signature: HQR data file
Info Interesting strings found in the binary: Contains domain names:
  • golang.org
  • https://go.dev
Info Cryptographic algorithms detected in the binary: Uses constants related to SHA256
Uses constants related to SHA512
Uses constants related to AES
Suspicious The PE is possibly packed. Unusual section name found: .xdata
Suspicious The PE contains functions most legitimate programs don't use. [!] The program may be hiding some of its imports:
  • GetProcAddress
  • LoadLibraryA
  • LoadLibraryExW
  • LoadLibraryW
Functions which can be used for anti-debugging purposes:
  • SwitchToThread
Memory manipulation functions often used by packers:
  • VirtualAlloc
  • VirtualProtect
Info The PE is digitally signed. Signer: Hotkey Viewer
Issuer: Hotkey Viewer
Malicious VirusTotal score: 13/70 (Scanned on 2026-06-14 14:08:16) AVG: Win64:MalwareX-gen [Trj]
AhnLab-V3: Malware/Win.MalwareX-gen.R779336
Avast: Win64:MalwareX-gen [Trj]
Avira: TR/W64.MalwareX
Bkav: W32.Malware.1A448990
Cynet: Malicious (score: 99)
ESET-NOD32: Win64/Agent.JUM trojan
F-Secure: Trojan.TR/W64.MalwareX
Kaspersky: VHO:Trojan.Win64.DLLhijack.gen
Malwarebytes: Trojan.MalPack
Microsoft: Trojan:Win32/Wacatac.B!ml
Rising: Trojan.Kryptik!8.8 (TFE:6:MrOPQZBAArL)
Trapmine: malicious.high.ml.score

Hashes

MD5 0c521ac4cb0d5b5305d2422554db24b4
SHA1 daec7ff753cf5329cda9ec866d74fc11086910ec
SHA256 17c95c32e9cf0bd17921e90d1bb0629c7f249e00c2170daa869b00542b75debb
SHA3 eaef4a7a6eb02b3900404d92a8686d8fe6090012a5e35309a50798e27d0fe5b6
SSDeep 196608:5o11p/zglJAzFmyq/Q6bYaBdgkoF9qwL01:5XbyFmzGwBoFA
Imports Hash fe9fea8fb19fd7848c8e645e3ea33785

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0x80

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_AMD64
NumberofSections 12
TimeDateStamp 1970-Jan-01 00:00:00
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xf0
Characteristics IMAGE_FILE_DEBUG_STRIPPED
IMAGE_FILE_DLL
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE
IMAGE_FILE_LINE_NUMS_STRIPPED
IMAGE_FILE_LOCAL_SYMS_STRIPPED

Image Optional Header

Magic PE32+
LinkerVersion 2.0
SizeOfCode 0xdae00
SizeOfInitializedData 0x6e6000
SizeOfUninitializedData 0x49e00
AddressOfEntryPoint 0x00000000000012EF (Section: .text)
BaseOfCode 0x1000
ImageBase 0x2d8aa0000
SectionAlignment 0x1000
FileAlignment 0x200
OperatingSystemVersion 6.1
ImageVersion 0.0
SubsystemVersion 6.1
Win32VersionValue 0
SizeOfImage 0x811000
SizeOfHeaders 0x400
Checksum 0x7d4ce3
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x200000
SizeofStackCommit 0x1000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 2794b698c6a3ef6100b3ded030b88751
SHA1 60ef7436584c779a0fa54d143d9b89c08ec590fa
SHA256 9bcb31540d31f40e19d694f185bacb82bec05e40f1a7e57e6501d9702c19d50a
SHA3 840adff848642fd1033e1e1bc6b0fc809677448b6230c95efb08b38579d71e14
VirtualSize 0xdae00
VirtualAddress 0x1000
SizeOfRawData 0xdae00
PointerToRawData 0x400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.30169

.data

MD5 24025f926db9f5c7943d848e80b3ebae
SHA1 b8aa4f241d3a330f4deee5f11db35e50ce19ad57
SHA256 4a4fdb90816d36565f8437ae43bf53ade8597410f4eb400578c1b0729f58dfeb
SHA3 e7a2766a75c4b1f3b99cf91d6f572c1bad4cb82618179e29c1c9efdc053fd110
VirtualSize 0x5c95d0
VirtualAddress 0xdc000
SizeOfRawData 0x5c9600
PointerToRawData 0xdb200
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 7.99542

.rdata

MD5 a9e59e352f81f0eac8045b478890dd66
SHA1 1b2a9a861e2f3092c713d8a95ad627b159e1f000
SHA256 bbb6fd0d7abd817ddb39649e88ce1a10748f42f07f353643b16c6b5a2cb1b7b1
SHA3 5021d7da6f485822e7590f8592e496893df98102b03b8d20d2caeb83af33f2cd
VirtualSize 0xfdd00
VirtualAddress 0x6a6000
SizeOfRawData 0xfde00
PointerToRawData 0x6a4800
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 5.48237

.eh_fram

MD5 bf619eac0cdf3f68d496ea9344137e8b
SHA1 5c3eb80066420002bc3dcc7ca4ab6efad7ed4ae5
SHA256 076a27c79e5ace2a3d47f9dd2e83e4ff6ea8872b3c2218f66c92b89b55f36560
SHA3 622de1e1568ddef36c4b89b706b05201c13481c3575d0fc804ff8224787fcb59
VirtualSize 0x4
VirtualAddress 0x7a4000
SizeOfRawData 0x200
PointerToRawData 0x7a2600
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 0

.pdata

MD5 13e2d50f7e9b000cba8db52d8c5782bb
SHA1 801cd98e661136f072b54fb3c4ec95d5d271afe1
SHA256 cda0b2fadf2e8344512717ac7f768ffbbd67bff6d9506cb587532fb6fb6e8e3d
SHA3 b8b9ae02a680e15c8b79da1490642d961cf0d70c1456280fdf8020d777673931
VirtualSize 0x5d84
VirtualAddress 0x7a5000
SizeOfRawData 0x5e00
PointerToRawData 0x7a2800
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 5.4016

.xdata

MD5 f60c285b26bf26a389fcc779bf55ec19
SHA1 4082c9bfeee98235f868221ae95ff54c8771d308
SHA256 904ac1a16c677b8fb010dfc6b5fcba8d65b9f6636d83dd89b27d0d4aa91152a7
SHA3 c900bc8c721ecedaaebe0f4ca51e7cd39dbf5eab02f2e5238f9d993c7e971e4d
VirtualSize 0x33c
VirtualAddress 0x7ab000
SizeOfRawData 0x400
PointerToRawData 0x7a8600
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 3.40651

.bss

MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA3 a7ffc6f8bf1ed76651c14756a061d662f580ff4de43b49fa82d80a4b80f8434a
VirtualSize 0x49d10
VirtualAddress 0x7ac000
SizeOfRawData 0
PointerToRawData 0
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_UNINITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE

.edata

MD5 573965328be60e64f75b536eb0b67540
SHA1 a3a291765e911cc0fe51655b10611d7f66a78522
SHA256 6ce8dc4d4f51f02d254b63ed0a9bd23e3aae71cd70b624874caf59db2e5a123c
SHA3 7d8553d7c2e75fe708e9cafcf8c61796596f6e3fde294c115383b874d2df4cdf
VirtualSize 0x115
VirtualAddress 0x7f6000
SizeOfRawData 0x200
PointerToRawData 0x7a8a00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 3.13929

.idata

MD5 f33640f851d0d3da908ffc4abb5889e2
SHA1 778e521e9fc8fa0e83539e99283322a97783922e
SHA256 8cc0750a49cc001e00347f04bdcb32d238b78859f3d09665d98875d9252981e5
SHA3 851af490602abce1cbb50088d5cff4d7acc65debb946356dc237b8354df51c39
VirtualSize 0xd80
VirtualAddress 0x7f7000
SizeOfRawData 0xe00
PointerToRawData 0x7a8c00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 4.36436

.tls

MD5 bf619eac0cdf3f68d496ea9344137e8b
SHA1 5c3eb80066420002bc3dcc7ca4ab6efad7ed4ae5
SHA256 076a27c79e5ace2a3d47f9dd2e83e4ff6ea8872b3c2218f66c92b89b55f36560
SHA3 622de1e1568ddef36c4b89b706b05201c13481c3575d0fc804ff8224787fcb59
VirtualSize 0x10
VirtualAddress 0x7f8000
SizeOfRawData 0x200
PointerToRawData 0x7a9a00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 0

.reloc

MD5 4d855fb58ac3932f84b7633dd0a8e259
SHA1 3bb241f89690e2a7819edd1f7fd353c5af1c0ac5
SHA256 ea724aee9def556e2058f6e5d36f8a26142ff3f2c3f3376b6c2f7c99142a3e72
SHA3 0d023758fd6da793dd131779ba0bef85de320bcf1a2e3d91380fb9d2ffe35384
VirtualSize 0x4714
VirtualAddress 0x7f9000
SizeOfRawData 0x4800
PointerToRawData 0x7a9c00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy 5.42144

.rsrc

MD5 8f212a9b569482ebf49708e8affcdf4d
SHA1 34bef71797a64d15982918bcbb7f367f1190bf29
SHA256 1359b9e0e2c134735eb21bfd4591b612a7540e1cccf108729f82a7931573bbc7
SHA3 f94bdec53be2c3fc71cc59cfa7a5c4ed4a496fa1cea0650405cc8bf1ed7a33e6
VirtualSize 0x12d76
VirtualAddress 0x7fe000
SizeOfRawData 0x12e00
PointerToRawData 0x7ae400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 7.89877

Imports

KERNEL32.dll AddVectoredContinueHandler
AddVectoredExceptionHandler
CloseHandle
CreateEventA
CreateIoCompletionPort
CreateThread
CreateWaitableTimerExW
DeleteCriticalSection
DisableThreadLibraryCalls
DuplicateHandle
EnterCriticalSection
ExitProcess
FreeEnvironmentStringsW
FreeLibrary
GetConsoleMode
GetCurrentThreadId
GetEnvironmentStringsW
GetErrorMode
GetLastError
GetModuleHandleA
GetModuleHandleW
GetProcAddress
GetProcessAffinityMask
GetQueuedCompletionStatusEx
GetStdHandle
GetSystemDirectoryA
GetSystemInfo
GetThreadContext
InitializeCriticalSection
LeaveCriticalSection
LoadLibraryA
LoadLibraryExW
LoadLibraryW
PostQueuedCompletionStatus
RaiseFailFastException
ResumeThread
RtlLookupFunctionEntry
RtlVirtualUnwind
SetConsoleCtrlHandler
SetErrorMode
SetEvent
SetProcessPriorityBoost
SetThreadContext
SetWaitableTimer
Sleep
SuspendThread
SwitchToThread
TlsAlloc
TlsGetValue
VirtualAlloc
VirtualFree
VirtualProtect
VirtualQuery
WaitForMultipleObjects
WaitForSingleObject
WerGetFlags
WerSetFlags
WriteConsoleW
WriteFile
api-ms-win-crt-heap-l1-1-0.dll calloc
free
malloc
api-ms-win-crt-private-l1-1-0.dll memcpy
api-ms-win-crt-runtime-l1-1-0.dll _beginthread
_errno
_execute_onexit_table
_exit
_initialize_onexit_table
_initterm
_initterm_e
_register_onexit_function
abort
api-ms-win-crt-stdio-l1-1-0.dll __acrt_iob_func
__stdio_common_vfprintf
fwrite
api-ms-win-crt-string-l1-1-0.dll _stricmp
strcmp
strlen
strncmp

Delayed Imports

_cgo_dummy_export

Ordinal 1
Address 0x7f5bd0

curl_easy_cleanup

Ordinal 2
Address 0xda2e0

curl_easy_duphandle

Ordinal 3
Address 0xda310

curl_easy_init

Ordinal 4
Address 0xda1b0

curl_easy_perform

Ordinal 5
Address 0xda290

curl_easy_setopt

Ordinal 6
Address 0xda220

curl_easy_strerror

Ordinal 7
Address 0xda340

curl_plugin_init

Ordinal 8
Address 0xd9da0

1

Type RT_ICON
Language UNKNOWN
Codepage UNKNOWN
Size 0xad77
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.98189
Detected Filetype PNG graphic file
MD5 c5a2667e3b46dff978a6947412b4b969
SHA1 a9d47d7f59191d8569333c694db489bb8b4f92af
SHA256 007f6bf2be456d7469fee7ae769bf1d527214110a3b4ab3b2ecc427fcd0ae5f1
SHA3 202c4a76ed9531f5f96a31a927a4d824034faa2c751fc35d4977065b24fa326c

2

Type RT_ICON
Language UNKNOWN
Codepage UNKNOWN
Size 0x3cc6
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.98112
Detected Filetype PNG graphic file
MD5 2fdfad65185e3281f1f5a6a50e6d21de
SHA1 8c29609868c7180d0d6d4f1e41c14c41dcb5d9ef
SHA256 6f50cd6426038fa050a0b84dca756b0ea4e37ff2d508be69246c179f26d8e3c9
SHA3 ccebc0c4ba78a2617ed69525ad2d1af8035a2f2a174ae073a46b06f54aa090c9

3

Type RT_ICON
Language UNKNOWN
Codepage UNKNOWN
Size 0x14fe
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.93317
Detected Filetype PNG graphic file
MD5 52b914e39040495047e38e404ec15e63
SHA1 c146a130aba999f1dfe466830c22dd8f40897784
SHA256 dd62c71f5cd5da70acb9e5b57175dcb659d625e5ff6aa4575ec6496fb3ef6583
SHA3 918b2912565bc08e687b3cbb086054e7717cdb52813851d025cd80aa7e84e521

4

Type RT_ICON
Language UNKNOWN
Codepage UNKNOWN
Size 0xdb6
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.93907
Detected Filetype PNG graphic file
MD5 99e62aaef1ca7477aeb1a3e1fcf64595
SHA1 efe7e0f51c209ef3506717585d139759e2f95f29
SHA256 e1f81bf624697f4c06ff912a3e4ef649be3a23abf5b70b973f8aefedaea34df8
SHA3 d4df1f8c8739ec6251fe0400ff964fb31101f3e3b74a4e3ff9c3d80682e42c09

5

Type RT_ICON
Language UNKNOWN
Codepage UNKNOWN
Size 0x763
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.8899
Detected Filetype PNG graphic file
MD5 9dd61ea72bd00a3c03f49e581b3a785a
SHA1 c43cdaa1c714d772197546883e9a2df40c5e1f25
SHA256 9d2184fd9af16844dd55488d2de664b52e2f85d0285fe181c6c3441a226fe1f5
SHA3 8eb2ec5aeb9933fa0486eca1627e034674481c61d026a2e82055024c8a856901

6

Type RT_ICON
Language UNKNOWN
Codepage UNKNOWN
Size 0x2c0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.61879
Detected Filetype PNG graphic file
MD5 c0e192a7a2c60296c6d9b8c73d58c510
SHA1 e8c8bcaac2ee53d9e837e6f0c6af32da04e9f169
SHA256 c309f2e569481597308750f44d42beafcf607e502cac8cc7329799bc70c92519
SHA3 ef72a282a4fef05393ea59fdcc5bce71c7e1372cd3bdfe9b2d42fe2b3fd24a04

63

Type RT_STRING
Language Japanese - Japan
Codepage UNKNOWN
Size 0x18c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.18388
MD5 d8e39594ac5aefc5afcec5b90c145b59
SHA1 4dab42fc2931f90918189d958d1230b6cc4cabe0
SHA256 a5d6ca2d65430abfbbecabf1ae63fe3d8b9ae166fc1c3c0f0238aaf38fa29e3b
SHA3 e87a3fd9516eb2360f537a1fccd285eb39f3509b34561b5ddd0359e9818aa930

69

Type RT_STRING
Language Japanese - Japan
Codepage UNKNOWN
Size 0x94
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.86538
MD5 45d186b2cda6831179aef593b7d10a71
SHA1 a090430c24e551d327413e7f67d8b7447d7f1023
SHA256 c6141ac3cc34309cf8ab22a4b74ba72701c3345d77316285d57ec229983436db
SHA3 9ade15ea4f6fea0930764c21b93cd593a1ab76db83af6b1e94b429a2319c5974

70

Type RT_STRING
Language Japanese - Japan
Codepage UNKNOWN
Size 0x84
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.79397
MD5 31a82d99895537729a98c52bc9345fec
SHA1 481fe21bf983b3909150fa8b7b3576ad4232f6fb
SHA256 9b59f4b998385c44805f9a5caf6ab46c75e2d086d0701d6a9d466b96c3bd8964
SHA3 85cfdf6879991e7e488a6a344070c42f74c7843824222f3a1e6623f61da21d0c

126

Type RT_STRING
Language Japanese - Japan
Codepage UNKNOWN
Size 0x154
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.15631
MD5 adb9b75d51c6e087212b47bb2c987452
SHA1 470d5a24317faa41b0a51b9911309d17793a8905
SHA256 04a4c1e660b55d96e3fdc349e3c5efc40e4f678ff5cb563fe21d6f4797be4839
SHA3 561eafd5274d2ab8f9b9476f29156d50197fafe48917ce3f45d0d64a2cb4fe0e

188

Type RT_STRING
Language Japanese - Japan
Codepage UNKNOWN
Size 0xf8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.16522
MD5 6d00beb31d362fcec4f00cf514ea14b6
SHA1 66977b9c8e49f264ae7c84d4f768ce51f217eaf9
SHA256 cad874667e3a3b31f3efbae147c76a5344af2d87feae836694e36037b544af12
SHA3 e1436e108042a1ed322d5d86b639578e6026faddb6a4c0232823b699143d546a

189

Type RT_STRING
Language Japanese - Japan
Codepage UNKNOWN
Size 0x44
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 1.87875
MD5 74c988926ad1723174a79980abebfa78
SHA1 fd13f1d4e5c9be32e0bf130ec6be3d002cb7450f
SHA256 3c752129edce3865cd35a6234628c97ffb65b91383d9aa0c4f5b01121a4d2d52
SHA3 b8a8dcb6b694144dd03a4c537f7baa6c49660e35b3d0503b48e74f2efdbe6a93

251

Type RT_STRING
Language Japanese - Japan
Codepage UNKNOWN
Size 0x128
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.16082
MD5 60a52b8007c6543fabc2d64e31d8fe9a
SHA1 026dd8548353919b046de5902c338343bb064884
SHA256 3965c4b707d1a281cdc8e1fb8038fa1aafe55c29f45e4e39224c3227cb5ef39a
SHA3 2586d683901413c695e8f57d65f2990882f13bb6971f0262f405e82cd2d6d2c9

313

Type RT_STRING
Language Japanese - Japan
Codepage UNKNOWN
Size 0x128
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.12461
MD5 8de5dfdfd9da532271d206378a9a1882
SHA1 7946d9cdaaaebabe86b502b9d2181fcd1a4e5401
SHA256 67c110cd6421ccddb6a75585b12b32f55dc573b57030ee37239af67cf0f633c3
SHA3 e96ce61a582bfa01127aca951100901ff357f5180fedb3c7597244bce21efa16

376

Type RT_STRING
Language Japanese - Japan
Codepage UNKNOWN
Size 0xd8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.90372
MD5 a915101f9f92888ac640f1dc10898412
SHA1 739f56d4f32a361e0532a5bee3d92f25d9dac46d
SHA256 2f7f52fab404b359ba9ad342b2f19bc4ba60a3cdbfca5caf2841e5c0b75daec8
SHA3 f004d663ecaf0a472b30b0536511426886f0113f8fffbf396d887d7a46618eb9

1 (#2)

Type RT_GROUP_ICON
Language UNKNOWN
Codepage UNKNOWN
Size 0x5a
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.84654
Detected Filetype Icon file
MD5 bf9eff5e47b28553ee5063a3df8ec35b
SHA1 11b8334b97ddcfcba49a50e6c9cb91f18ac90a7d
SHA256 f55ce1e946db91c008e31809083791b032d61bd70154d89f8098e766b9a10f65
SHA3 b3ae75257f1186764c1cb8d766246b228b9df4ea6cbebafefd22d7291e387e8e

1 (#3)

Type RT_VERSION
Language Japanese - Japan
Codepage UNKNOWN
Size 0x33c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.38949
MD5 cd4ae01ed5c0f6d06a5b770732521a0a
SHA1 0957195e0fd23e8d37ce38eca80f1760f6f1dac2
SHA256 0be1a6810b687c0a26963cdfc37d8c64b09fa84315cd382c8022855834d7e8f7
SHA3 6052f72d8412b0252e0ed0840b598678d5aa0d33494062e43d309f1b4961ebd4

1 (#4)

Type RT_MANIFEST
Language Japanese - Japan
Codepage UNKNOWN
Size 0x67e
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.20536
MD5 f869484b7b03fcc7a394eabce7f2a866
SHA1 6f0df1d99b38a29777bac9b72ff7749c7efc4c50
SHA256 59b18a0ddf88c96e13319af9236ccfbc14ce66ad42e840b94ac7b8c2f3f94300
SHA3 a24dcb5cdb875f4fd7e29f36a06761269db136647451803e4a91f5e4bfabc29b

String Table contents

Hotkey Viewer
Synchronizes hotkey viewer between applications on the same PC
SpringView Crest Technologies Co.
Version 6.1.9.0
(c) SpringView Crest Technologies Co.. All rights reserved.
Metric exported.
Remote config pulled.
Sync active.
Configure
Firewall active.
User cancelled operation.
Run
Custom
Schema validation failed.
Access is denied.
Hash verification failed.
Item 8517: failed.
Item 1810: failed.
Item 117: failed.
The package signature is invalid.
Item 5080: ready.
Progress: 45%
Item 4892: ready.
Ready
Completed
Progress: 92%
Item 764: ready.
Item 6892: ready.
Item 3095: ready.
Update channel: stable.
Downloading...
Update
Language pack updated.
Billing updated.
Agent updated.
Pending updates: 1.
.NET 8: installed.
Disconnected from network.
Proxy authentication required.
SSL handshake completed.
WireGuard peer connected.
Latency 45 ms.
Disconnected
Enterprise license valid.
Trial expires in 14 days.
Subscription renewed.
Sign in to continue.

Version Info

Signature 0xfeef04bd
StructVersion 0x10000
FileVersion 6.1.9.0
ProductVersion 6.1.9.0
FileFlags (EMPTY)
FileOs VOS_DOS
VOS_DOS_WINDOWS16
VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS_OS232
VOS_OS232_PM32
VOS_WINCE
VOS__WINDOWS32
FileType VFT_APP
Language Japanese - Japan
ProductName Hotkey Viewer
FileDescription Synchronizes hotkey viewer between applications on the same PC
OriginalFilename HotkeyViewer.exe
LegalCopyright (c) SpringView Crest Technologies Co.. All rights reserved.
FileVersion (#2) 6.1.9.0
CompanyName SpringView Crest Technologies Co.
Resource LangID Japanese - Japan

TLS Callbacks

StartAddressOfRawData 0x2d9298000
EndAddressOfRawData 0x2d9298008
AddressOfIndex 0x2d9295c70
AddressOfCallbacks 0x2d9243cd8
SizeOfZeroFill 0
Characteristics IMAGE_SCN_TYPE_REG
Callbacks 0x00000002D8B7A8C0
0x00000002D8B7A979

Load Configuration

RICH Header

Errors

[*] Warning: Section .bss has a size of 0!
Leave a comment

No comments yet.