Architecture |
IMAGE_FILE_MACHINE_I386
|
Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
Compilation Date |
1992-Jun-19 22:22:17
|
Detected languages |
Dutch - Netherlands
English - United States
|
Malicious |
The PE contains functions mostly used by malware. |
[!] The program may be hiding some of its imports:
- LoadLibraryA
- GetProcAddress
Can access the registry:
- RegQueryValueExA
- RegOpenKeyExA
- RegCloseKey
Possibly launches other programs:
Memory manipulation functions often used by packers:
- VirtualAlloc
- VirtualProtect
Functions related to the privilege level:
- OpenProcessToken
- AdjustTokenPrivileges
Can shut the system down or lock the screen:
|
Suspicious |
The PE header may have been manually modified. |
The resource timestamps differ from the PE header:
|
Suspicious |
The file contains overlay data. |
2492972 bytes of data starting at offset 0xd400.
The overlay data has an entropy of 7.99982 and is possibly compressed or encrypted.
Overlay data amounts for 97.8694% of the executable.
|
Suspicious |
No VirusTotal score. |
This file has never been scanned on VirusTotal.
|
MD5 |
38033817db95b1883855809aaef81433
|
SHA1 |
ab65b6d38bd54579519fd6d1372410701c12a433
|
SHA256 |
67aaa5cb71b90d6f931b1bcfe7a7719e626255f6d9d812edc02ec2714c99d70b
|
SHA3 |
63aee649258e96d24ce72dbb50e00ba7de0b8712d45e1a41662134ac9bd76298
|
SSDeep |
49152:VnhzPpWltLPl6Ofmenc2Fi4ZQA+8ys65NxLQqnMjxAFTT6gU:9VPgt5/fBnDs4Omyb56AFT+
|
Imports Hash |
4fb639b17a439bf0efa713bd4c6e715b
|
e_magic |
MZ
|
e_cblp |
0x50
|
e_cp |
0x2
|
e_crlc |
0
|
e_cparhdr |
0x4
|
e_minalloc |
0xf
|
e_maxalloc |
0xffff
|
e_ss |
0
|
e_sp |
0xb8
|
e_csum |
0
|
e_ip |
0
|
e_cs |
0
|
e_ovno |
0x1a
|
e_oemid |
0
|
e_oeminfo |
0
|
e_lfanew |
0x100
|
Signature |
PE
|
Machine |
IMAGE_FILE_MACHINE_I386
|
NumberofSections |
8
|
TimeDateStamp |
1992-Jun-19 22:22:17
|
PointerToSymbolTable |
0
|
NumberOfSymbols |
0
|
SizeOfOptionalHeader |
0xe0
|
Characteristics |
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_BYTES_REVERSED_HI
IMAGE_FILE_BYTES_REVERSED_LO
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LINE_NUMS_STRIPPED
IMAGE_FILE_LOCAL_SYMS_STRIPPED
IMAGE_FILE_RELOCS_STRIPPED
|
Magic |
PE32
|
LinkerVersion |
2.0
|
SizeOfCode |
0x9400
|
SizeOfInitializedData |
0x4600
|
SizeOfUninitializedData |
0
|
AddressOfEntryPoint |
0x00009C40 (Section: CODE)
|
BaseOfCode |
0x1000
|
BaseOfData |
0xb000
|
ImageBase |
0x400000
|
SectionAlignment |
0x1000
|
FileAlignment |
0x200
|
OperatingSystemVersion |
1.0
|
ImageVersion |
6.0
|
SubsystemVersion |
4.0
|
Win32VersionValue |
0
|
SizeOfImage |
0x14000
|
SizeOfHeaders |
0x400
|
Checksum |
0
|
Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
DllCharacteristics |
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
|
SizeofStackReserve |
0x100000
|
SizeofStackCommit |
0x4000
|
SizeofHeapReserve |
0x100000
|
SizeofHeapCommit |
0x1000
|
LoaderFlags |
0
|
NumberOfRvaAndSizes |
16
|
MD5 |
b0290c5e448b4bd1095cd2449a7bb4dc
|
SHA1 |
1757338a6bc93b009a773233604b501bff4e523b
|
SHA256 |
fa04f626055396446c4d1b996bb3edbf2cce796a66e2ef0513b3f6e40865397a
|
SHA3 |
b50c4284bb148cae402ed848a7872042c45db157af270882576aeca4b8afa426
|
VirtualSize |
0x9364
|
VirtualAddress |
0x1000
|
SizeOfRawData |
0x9400
|
PointerToRawData |
0x400
|
PointerToRelocations |
0
|
PointerToLineNumbers |
0
|
NumberOfLineNumbers |
0
|
NumberOfRelocations |
0
|
Characteristics |
IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
|
Entropy |
6.5995
|
MD5 |
5d98c64569668b0235ae89005918165a
|
SHA1 |
5be3c51c125d7d645c3d876c5896cc6e331ae08d
|
SHA256 |
7d0031a0ed6264bf984b8e9f8b407f1721f5a05cae2ce1eae3353e461372791f
|
SHA3 |
3cb8b24b1282a7d2bce3d7742d66b578d96815bf4a74c5d0ca36f6ab20e918e6
|
VirtualSize |
0x24c
|
VirtualAddress |
0xb000
|
SizeOfRawData |
0x400
|
PointerToRawData |
0x9800
|
PointerToRelocations |
0
|
PointerToLineNumbers |
0
|
NumberOfLineNumbers |
0
|
NumberOfRelocations |
0
|
Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
|
Entropy |
2.73731
|
MD5 |
d41d8cd98f00b204e9800998ecf8427e
|
SHA1 |
da39a3ee5e6b4b0d3255bfef95601890afd80709
|
SHA256 |
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
|
SHA3 |
a7ffc6f8bf1ed76651c14756a061d662f580ff4de43b49fa82d80a4b80f8434a
|
VirtualSize |
0xe88
|
VirtualAddress |
0xc000
|
SizeOfRawData |
0
|
PointerToRawData |
0x9c00
|
PointerToRelocations |
0
|
PointerToLineNumbers |
0
|
NumberOfLineNumbers |
0
|
NumberOfRelocations |
0
|
Characteristics |
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
|
MD5 |
bb5485bf968b970e5ea81292af2acdba
|
SHA1 |
40a39d9e8c8cecd5356ab96745d82d2ebfe17cfb
|
SHA256 |
d9ea6e80cc1edfdffa8d534a8c61448b19b74d683845b94ad6d9a543e5ceb8cf
|
SHA3 |
09274dc071547ce3dc33528de99c9ad5a9eb119600e5a61b3127f74cde6dcfbf
|
VirtualSize |
0x950
|
VirtualAddress |
0xd000
|
SizeOfRawData |
0xa00
|
PointerToRawData |
0x9c00
|
PointerToRelocations |
0
|
PointerToLineNumbers |
0
|
NumberOfLineNumbers |
0
|
NumberOfRelocations |
0
|
Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
|
Entropy |
4.43073
|
MD5 |
d41d8cd98f00b204e9800998ecf8427e
|
SHA1 |
da39a3ee5e6b4b0d3255bfef95601890afd80709
|
SHA256 |
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
|
SHA3 |
a7ffc6f8bf1ed76651c14756a061d662f580ff4de43b49fa82d80a4b80f8434a
|
VirtualSize |
0x8
|
VirtualAddress |
0xe000
|
SizeOfRawData |
0
|
PointerToRawData |
0xa600
|
PointerToRelocations |
0
|
PointerToLineNumbers |
0
|
NumberOfLineNumbers |
0
|
NumberOfRelocations |
0
|
Characteristics |
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
|
MD5 |
9ba824905bf9c7922b6fc87a38b74366
|
SHA1 |
f43ee83e6afa1c343ff6db68e13efde43471cbb6
|
SHA256 |
ad44157821ba24c07dd44f66940dd75adee9d6919a0577c5a75aa502637dddaa
|
SHA3 |
370eba5499bce03a18d462f5b9e6ee4598126f2a2243cc5fa1590c7c7245c5d7
|
VirtualSize |
0x18
|
VirtualAddress |
0xf000
|
SizeOfRawData |
0x200
|
PointerToRawData |
0xa600
|
PointerToRelocations |
0
|
PointerToLineNumbers |
0
|
NumberOfLineNumbers |
0
|
NumberOfRelocations |
0
|
Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_SHARED
|
Entropy |
0.204488
|
MD5 |
d41d8cd98f00b204e9800998ecf8427e
|
SHA1 |
da39a3ee5e6b4b0d3255bfef95601890afd80709
|
SHA256 |
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
|
SHA3 |
a7ffc6f8bf1ed76651c14756a061d662f580ff4de43b49fa82d80a4b80f8434a
|
VirtualSize |
0x8b4
|
VirtualAddress |
0x10000
|
SizeOfRawData |
0
|
PointerToRawData |
0
|
PointerToRelocations |
0
|
PointerToLineNumbers |
0
|
NumberOfLineNumbers |
0
|
NumberOfRelocations |
0
|
Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_SHARED
|
MD5 |
ef21cac655bc59accf970ace35b61388
|
SHA1 |
8724ddcc9cdd53090bf9d13f59e9bf631558215c
|
SHA256 |
65264c0b35390c38807d465ff2fc87d7a7ad3cdb95742b7df03c71cc8da058d1
|
SHA3 |
17cccc82c8f2ec160edb4388ec94717279ef4871c25903b53b2ee5f5ce901573
|
VirtualSize |
0x2c00
|
VirtualAddress |
0x11000
|
SizeOfRawData |
0x2c00
|
PointerToRawData |
0xa800
|
PointerToRelocations |
0
|
PointerToLineNumbers |
0
|
NumberOfLineNumbers |
0
|
NumberOfRelocations |
0
|
Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_SHARED
|
Entropy |
4.27999
|
kernel32.dll |
DeleteCriticalSection
LeaveCriticalSection
EnterCriticalSection
InitializeCriticalSection
VirtualFree
VirtualAlloc
LocalFree
LocalAlloc
WideCharToMultiByte
TlsSetValue
TlsGetValue
MultiByteToWideChar
GetModuleHandleA
GetLastError
GetCommandLineA
WriteFile
SetFilePointer
SetEndOfFile
RtlUnwind
ReadFile
RaiseException
GetStdHandle
GetFileSize
GetSystemTime
GetFileType
ExitProcess
CreateFileA
CloseHandle
|
user32.dll |
MessageBoxA
|
oleaut32.dll |
VariantChangeTypeEx
VariantCopyInd
VariantClear
SysStringLen
SysAllocStringLen
|
advapi32.dll |
RegQueryValueExA
RegOpenKeyExA
RegCloseKey
OpenProcessToken
LookupPrivilegeValueA
|
kernel32.dll (#2) |
DeleteCriticalSection
LeaveCriticalSection
EnterCriticalSection
InitializeCriticalSection
VirtualFree
VirtualAlloc
LocalFree
LocalAlloc
WideCharToMultiByte
TlsSetValue
TlsGetValue
MultiByteToWideChar
GetModuleHandleA
GetLastError
GetCommandLineA
WriteFile
SetFilePointer
SetEndOfFile
RtlUnwind
ReadFile
RaiseException
GetStdHandle
GetFileSize
GetSystemTime
GetFileType
ExitProcess
CreateFileA
CloseHandle
|
user32.dll (#2) |
MessageBoxA
|
comctl32.dll |
InitCommonControls
|
advapi32.dll (#2) |
RegQueryValueExA
RegOpenKeyExA
RegCloseKey
OpenProcessToken
LookupPrivilegeValueA
|
Type |
RT_ICON
|
Language |
Dutch - Netherlands
|
Codepage |
UNKNOWN
|
Size |
0x128
|
TimeDateStamp |
2012-Sep-06 16:10:30
|
Entropy |
3.25755
|
MD5 |
c5af786bfd9fd1c53c8fe9f0bd9ce38b
|
SHA1 |
4f6f7d9973b47063aa5353225a2bc5a76aa2a96a
|
SHA256 |
f59f62e7843b3ff992cf769a3c608acd4a85a38b3b302cda8507b75163659d7b
|
SHA3 |
e178a71f02edb18e31bf550d484b2cba8d865e1e9796065addb07855ce5627f9
|
Type |
RT_ICON
|
Language |
Dutch - Netherlands
|
Codepage |
UNKNOWN
|
Size |
0x568
|
TimeDateStamp |
2012-Sep-06 16:10:30
|
Entropy |
3.47151
|
MD5 |
0a451222f7037983439a58e3b44db529
|
SHA1 |
6881cba71174502883d53a8885fb90dad81fd0c0
|
SHA256 |
dc785b2a3e4ea82bd34121cc04e80758e221f11ee686fcfd87ce49f8e6730b22
|
SHA3 |
d5599c242df5383add3fb330d42b31f1751594b36bbf52195e7d1dd564e7f0e3
|
Type |
RT_ICON
|
Language |
Dutch - Netherlands
|
Codepage |
UNKNOWN
|
Size |
0x2e8
|
TimeDateStamp |
2012-Sep-06 16:10:30
|
Entropy |
3.91708
|
MD5 |
90ed3aac2a942e3067e6471b32860e77
|
SHA1 |
b849a2b9901473810b5d74e6703be78c3a7e64e3
|
SHA256 |
ca8fc96218d0a7e691dd7b95da05a27246439822d09b829af240523b28fd5bb3
|
SHA3 |
3f02085a0d69091556ede0b585f45145adce9849e175d8177c2f0fe0891a1bd8
|
Type |
RT_ICON
|
Language |
Dutch - Netherlands
|
Codepage |
UNKNOWN
|
Size |
0x8a8
|
TimeDateStamp |
2012-Sep-06 16:10:30
|
Entropy |
3.76869
|
MD5 |
419561933cb5a72edd33fae65f927f69
|
SHA1 |
f9f6df5e9b538fb6c18a0545b81f59e6f8bbe06e
|
SHA256 |
0b0772c70c131c04c533bddc639c2bece72cf8e67ca8f6da2ad6ca7ec26368d7
|
SHA3 |
d75ea11d06fc1e7852ce4811e303b746851258a0f1f094f0cfb188d3be515427
|
Type |
RT_STRING
|
Language |
UNKNOWN
|
Codepage |
UNKNOWN
|
Size |
0x2f2
|
TimeDateStamp |
2012-Sep-06 16:10:30
|
Entropy |
3.81015
|
MD5 |
f24aad3687cdd9e971b2709c8a779f3a
|
SHA1 |
4e7d52c57a0e704b05db5c94bd91876c0093156b
|
SHA256 |
2ede21eb52f77be8275679e85813dc142d271c71786a0e3a8ea2a1587ee4b1ed
|
SHA3 |
a8b8110f1da9b4e9730192e5cc5d83f0a323af97136ea693bbab70affb279ea8
|
Type |
RT_STRING
|
Language |
UNKNOWN
|
Codepage |
UNKNOWN
|
Size |
0x30c
|
TimeDateStamp |
2012-Sep-06 16:10:30
|
Entropy |
3.13392
|
MD5 |
fc1c6b7d46ab5c8710188c3e990cfd5c
|
SHA1 |
6f6fe919956dedd476e79d463a12df0ef549a0ac
|
SHA256 |
22e60f64b7ddf73a810a16f7d427829887153e81aa3566c8b3d193f95b83bca7
|
SHA3 |
21be1e215d40fe33290cad2e43f55539548c11a0cdf1c4616d1dcfa18abce17c
|
Type |
RT_STRING
|
Language |
UNKNOWN
|
Codepage |
UNKNOWN
|
Size |
0x2ce
|
TimeDateStamp |
2012-Sep-06 16:10:30
|
Entropy |
3.65657
|
MD5 |
7fe1a17a41ac22b7b361205f3923cc98
|
SHA1 |
f9b37d7bf07aad2fb94634b918cd6c1a29a140c0
|
SHA256 |
824b55d4ac983b60690ba4a16161fd9080c05eb2da32559035c4fb77dfc16167
|
SHA3 |
530b16866a7a0c17e572ae9de0024d6b5f3259f6621e79277246ea8359060d0f
|
Type |
RT_STRING
|
Language |
UNKNOWN
|
Codepage |
UNKNOWN
|
Size |
0x68
|
TimeDateStamp |
2012-Sep-06 16:10:30
|
Entropy |
2.62837
|
MD5 |
70313672df2a025c110154fd5ebcd5c9
|
SHA1 |
7a898b20cda174331cf8c5d17e5e968b409123f3
|
SHA256 |
cb6e662a2303761250230f7d3d6c085d1b64a50c9e84b8bb8c91e093b4c7d131
|
SHA3 |
15edee0e1a1a5aec0b9b3ff0114fa4d855e857dbdf0e3fb6782eaa72fb1142e6
|
Type |
RT_STRING
|
Language |
UNKNOWN
|
Codepage |
UNKNOWN
|
Size |
0xb4
|
TimeDateStamp |
2012-Sep-06 16:10:30
|
Entropy |
2.74307
|
MD5 |
55354ed23eb2c13f39a419f9598da0fe
|
SHA1 |
2729f12435d6ce527fa0e6685f3cbe5cc9d5f5cd
|
SHA256 |
29d8037601632110c9bba744ecf0fbbe1148366f75b2bc5054b810af160d2b91
|
SHA3 |
320cd529b1bb6aea29c7d9bec6e9b65dbcf78809e21fc0fc8d0cfefcf46a2465
|
Type |
RT_STRING
|
Language |
UNKNOWN
|
Codepage |
UNKNOWN
|
Size |
0xae
|
TimeDateStamp |
2012-Sep-06 16:10:30
|
Entropy |
3.28906
|
MD5 |
5bb68c527a25212c5a9c8b9ab66b253c
|
SHA1 |
65fe3e097b0816ed044936e0993c9c1a93d9c6c8
|
SHA256 |
27edf30ba27fca8d447ffa751dbcd1d91e8ee205e36eab42f8effb16431164f8
|
SHA3 |
970ffad02cbf8d527718d86a9b23f1f0db8daae5a0493ec8e27b42d1712ee3e7
|
Type |
RT_RCDATA
|
Language |
UNKNOWN
|
Codepage |
UNKNOWN
|
Size |
0x2c
|
TimeDateStamp |
2012-Sep-06 16:10:30
|
Entropy |
2.67598
|
MD5 |
e7cdde114aa576fd2eb5825532a0c20a
|
SHA1 |
65174c3742da47a83a8adb23681206df97cba701
|
SHA256 |
11aad5755e79fd291f671cc5b1e827ccf270db495fa57cf919ad809b040873e3
|
SHA3 |
5a29820514f816c147fa4acec15b1c321515dc1bc86b9b5bf1c83dbc567d6d1a
|
Type |
RT_GROUP_ICON
|
Language |
English - United States
|
Codepage |
UNKNOWN
|
Size |
0x3e
|
TimeDateStamp |
2012-Sep-06 16:10:30
|
Entropy |
2.84775
|
MD5 |
3b2a6443b291964f94ee55aea2427f5d
|
SHA1 |
f8ff19c2ed49742c9f2d4fe9d39c71c1e094d149
|
SHA256 |
2d833800066d2e2c576a4986bf8acc1adbfcf5469de6c402898e331ecf67c911
|
SHA3 |
91a9b05f49292c22ae0e3e1aed71ea26a37647e932290b1893a6c79b82d33cc6
|
Type |
RT_VERSION
|
Language |
English - United States
|
Codepage |
UNKNOWN
|
Size |
0x4b8
|
TimeDateStamp |
2012-Sep-06 16:10:30
|
Entropy |
3.30925
|
MD5 |
01809252e8d99b31ba8b5f01d1b118c6
|
SHA1 |
efff405fa9292573f373fe291a86e4eb0ef846d2
|
SHA256 |
ad6120343ba43b6e98b30ebf3e1b2467a09ff96734735564957aeaf08fbe8e48
|
SHA3 |
c826ffc4caa570b6fa42684d2da1ba1eb7c185b4ec92d3567689435b847b696b
|
Type |
RT_MANIFEST
|
Language |
English - United States
|
Codepage |
UNKNOWN
|
Size |
0x5a4
|
TimeDateStamp |
2012-Sep-06 16:10:30
|
Entropy |
3.6134
|
MD5 |
ea48845f5a63648817115008d15b8a84
|
SHA1 |
d833bc0bbf7bec1f36c83267c4d5124a8ac63ae4
|
SHA256 |
f342ce059d9ba7e99e2050a1ce77cc0f3a32b1273f4314f94ef5b8c385cf5f8c
|
SHA3 |
d5f559a3bdd08455018b72f44299f06c044c221c542548c4577fa9570a18db51
|
! '!烀⃀缀À缀À㼀À㼀À㽠À㽠À㼀À㼀À̀ÀĀÀ À À À À Ā ĀøĀüĀþĀÿĀĀĀĀĀĀĀĀﳿ̀!'%s' is not a valid integer value('%s' is not a valid floating point value'%s' is not a valid date'%s' is not a valid time!'%s' is not a valid date and tim |
Invalid argument to time encodeInvalid argument to date encode |
Out of memoryI/O error %dFile not |
oundInvalid filenameToo many open filesFile access deniedRead beyond end of file Disk fullInvalid |
numeric input Division by zero |
ange check errorInteger overflow Invalid floating point operationFloating point |
ivision by zeroFloating point overflowFloating point underflowInvalid pointer operationInvalid c |
ass typecast0Access violation at address %p. %s of address %pStack overflow |
Control-C hitPrivileged instru |
tionOperation aborted%Exception %s in module %s at %p. |
%s%sApplication Error1Format '%s' invalid |
r incompatible with argumentNo argument for format '%s'Invalid variant type conversionInvalid variant operat |
on"Variant method calls not supportedReadWrite)Format result longer than 4096 charactersFormat string |
oo longError creating variant arrayVariant is not an array!Variant array index out of boundsExternal exception %x |
Jan |
StartAddressOfRawData |
0x40e000
|
EndAddressOfRawData |
0x40e008
|
AddressOfIndex |
0x40c3d0
|
AddressOfCallbacks |
0x40f010
|
SizeOfZeroFill |
0
|
Characteristics |
IMAGE_SCN_TYPE_REG
|
Callbacks |
(EMPTY)
|
[!] Error: Could not read a VS_FIXED_FILE_INFO!
[*] Warning: Section BSS has a size of 0!
[*] Warning: Section .tls has a size of 0!
[*] Warning: Section .reloc has a size of 0!
[!] Error: Could not read a VS_FIXED_FILE_INFO!
[*] Warning: Could not parse a VERSION_INFO resource!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[*] Warning: Couldn't convert a string from a RT_STRING resource to UTF-8!
[!] Error: The number of ICON_DIRECTORY_ENTRIES is bigger than the number of resources in the file.
[*] Warning: Resource 0 is empty!