45b597da0743ed2c117a8eb33dc11a9163a10a2255c7df7c9611c9cb26fccc32

Summary

Architecture IMAGE_FILE_MACHINE_I386
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date 2026-Jan-02 11:55:49
Detected languages English - United States
FileDescription Setup/Uninstall
FileVersion 51.1054.0.0
Comments This installation was built with Inno Setup.
CompanyName
LegalCopyright ©2026 Softonic--International (SA)
OriginalFileName
ProductName Softonic--International (SA)
ProductVersion 4.0.2.0

Plugin Output

Info Matching compiler(s): Borland Delphi v6.0 - v7.0
Suspicious PEiD Signature: BobSoft Mini Delphi -> BoB / BobSoft
Suspicious Strings found in the binary may indicate undesirable behavior: Contains references to system / monitoring tools:
  • regsvr32.exe
May have dropper capabilities:
  • CurrentVersion\Run
Contains another PE executable:
  • This program cannot be run in DOS mode.
Miscellaneous malware strings:
  • cmd.exe
Contains domain names:
  • https://www.innosetup.com
  • https://www.innosetup.com/
  • https://www.remobjects.com
  • https://www.remobjects.com/ps
  • innosetup.com
  • remobjects.com
  • www.innosetup.com
  • www.remobjects.com
Info Cryptographic algorithms detected in the binary: Uses constants related to CRC32
Uses constants related to MD5
Uses constants related to SHA1
Uses constants related to SHA256
Uses constants related to SHA512
Suspicious The PE is possibly packed. Unusual section name found: .itext
Unusual section name found: .didata
Malicious The PE contains functions mostly used by malware. [!] The program may be hiding some of its imports:
  • LoadLibraryA
  • LoadLibraryExW
  • GetProcAddress
  • LoadLibraryW
Functions which can be used for anti-debugging purposes:
  • FindWindowW
  • SwitchToThread
Code injection capabilities (PowerLoader):
  • GetWindowLongW
  • FindWindowW
Can access the registry:
  • RegSetValueExW
  • RegQueryInfoKeyW
  • RegUnLoadKeyW
  • RegSaveKeyW
  • RegReplaceKeyW
  • RegCreateKeyExW
  • RegLoadKeyW
  • RegEnumKeyExW
  • RegDeleteKeyW
  • RegOpenKeyExW
  • RegDeleteValueW
  • RegFlushKey
  • RegQueryValueExW
  • RegEnumValueW
  • RegCloseKey
  • RegRestoreKeyW
Possibly launches other programs:
  • ShellExecuteW
  • CreateProcessW
Can create temporary files:
  • GetTempPathW
  • CreateFileW
Uses functions commonly found in keyloggers:
  • CallNextHookEx
  • MapVirtualKeyW
  • GetForegroundWindow
Memory manipulation functions often used by packers:
  • VirtualProtect
  • VirtualAlloc
Has Internet access capabilities:
  • WinHttpGetIEProxyConfigForCurrentUser
  • WinHttpSetTimeouts
  • WinHttpSetStatusCallback
  • WinHttpConnect
  • WinHttpReceiveResponse
  • WinHttpQueryAuthSchemes
  • WinHttpGetProxyForUrl
  • WinHttpReadData
  • WinHttpCloseHandle
  • WinHttpQueryHeaders
  • WinHttpOpenRequest
  • WinHttpAddRequestHeaders
  • WinHttpOpen
  • WinHttpWriteData
  • WinHttpSetCredentials
  • WinHttpQueryDataAvailable
  • WinHttpSetOption
  • WinHttpSendRequest
  • WinHttpQueryOption
Functions related to the privilege level:
  • AdjustTokenPrivileges
  • OpenProcessToken
Enumerates local disk drives:
  • GetVolumeInformationW
  • GetDriveTypeW
Manipulates other processes:
  • OpenProcess
Can take screenshots:
  • GetDC
  • GetDCEx
  • FindWindowW
  • BitBlt
  • CreateCompatibleDC
Reads the contents of the clipboard:
  • GetClipboardData
Can shut the system down or lock the screen:
  • ExitWindowsEx
Malicious The PE is possibly a dropper. Resource HELPER_EXE_AMD64 detected as a PE Executable.
Suspicious The file contains overlay data. 1868 bytes of data starting at offset 0x4358b4.
Suspicious No VirusTotal score. This file has never been scanned on VirusTotal.

Hashes

MD5 db7b7d5a053a1635f60dca3ae357ad83
SHA1 23f9b76f787aa44bbe6723c9a0917f840be85623
SHA256 45b597da0743ed2c117a8eb33dc11a9163a10a2255c7df7c9611c9cb26fccc32
SHA3 be842328163267a21808482bee38bf9a0f17ecda8e482148d1e8238d3926daa1
SSDeep 49152:Axc3XuPemRzmSMmG0tS95lC4EiuyeLSZqqsRWvpPVozvRLg333B:Axc3XuPw550piuyeLSZPN+JM333
Imports Hash 5dc260b92d0617d4bcaf0f586084de6f

DOS Header

e_magic MZ
e_cblp 0x50
e_cp 0x2
e_crlc 0
e_cparhdr 0x4
e_minalloc 0xf
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0x1a
e_oemid 0
e_oeminfo 0
e_lfanew 0x100

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_I386
NumberofSections 11
TimeDateStamp 2026-Jan-02 11:55:49
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xe0
Characteristics IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_EXECUTABLE_IMAGE

Image Optional Header

Magic PE32
LinkerVersion 2.0
SizeOfCode 0x3aa600
SizeOfInitializedData 0x79200
SizeOfUninitializedData 0
AddressOfEntryPoint 0x003AB668 (Section: .itext)
BaseOfCode 0x1000
BaseOfData 0x3ac000
ImageBase 0x520000
SectionAlignment 0x1000
FileAlignment 0x1000
OperatingSystemVersion 6.1
ImageVersion 0.0
SubsystemVersion 6.1
Win32VersionValue 0
SizeOfImage 0x436000
SizeOfHeaders 0x1000
Checksum 0
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x100000
SizeofStackCommit 0x4000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 d179072beb69cba9ba79f57140990e26
SHA1 9b81e541534144c1a58a4a0b57439c6d794dc3dd
SHA256 f9125cf587790edd930d4dc6a5e1f61341fc3738c4efa47761584d3de7ba1cfb
SHA3 ec3ea20898a4adc35a9b31dd1c41451e318a545bce6ad00ca452040e07e980d7
VirtualSize 0x39fda0
VirtualAddress 0x1000
SizeOfRawData 0x39fda0
PointerToRawData 0x1000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.46967

.itext

MD5 5f0c264a87ab80276ae446baf0951ccd
SHA1 a6fa6095a48581f362470e584247580f60b829fc
SHA256 4a1131785c5d37a37d4fbee03fa4153522c78431d49e17f73ca8ef607b9d192b
SHA3 db6c31e3f9bc6a0c64c19dd50fec5fa2740fe925472f9cdde1954c6fc6df8c27
VirtualSize 0xa684
VirtualAddress 0x3a1000
SizeOfRawData 0xa684
PointerToRawData 0x3a1000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.1318

.data

MD5 3d8344b544ff8de3b1efc06bd9dc0940
SHA1 2ceba994b89b4fdb242c847cb17e3d8433a01d6e
SHA256 6fa1d43a59ce33f8a134b5b9d6f591dbb351238fc0c64e4c62d0a7fd2bb0b8b6
SHA3 546e5bb38bd0021447c18d11459a487ccfd14b81878f520ff4908eb6b282d97d
VirtualSize 0xb6a0
VirtualAddress 0x3ac000
SizeOfRawData 0xb6a0
PointerToRawData 0x3ac000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 6.44376

.bss

MD5 31acec9950187462983e7662c366de7a
SHA1 33caff09c768d258099bb79927215a3021de3840
SHA256 044b143fc6cd5ea99be69c85be0fba7d52321092fd71480ee1ec8a194a90bb6b
SHA3 a558bc9b45b6dfc7242a47c0630702d8d2485273f30bb075fec9e8ec4138086a
VirtualSize 0xb3cc
VirtualAddress 0x3b8000
SizeOfRawData 0xb3cc
PointerToRawData 0x3b8000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 2.54653

.idata

MD5 e6ce2ec0b65bc95291915c8c9cb49dfd
SHA1 25ec6b13e37c3913d0dcedbdfdfa8cbb2b0ce0d8
SHA256 a7dd78e098e5a12667602b7fa34c61f5089f58e69ba4d779e1b7d5d8b4630c59
SHA3 61531e45eb37913357a37eff0d73ba36489462da131d16e3ad4286b9445577d6
VirtualSize 0x4216
VirtualAddress 0x3c4000
SizeOfRawData 0x4216
PointerToRawData 0x3c4000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 5.55075

.didata

MD5 ba921e799e527550f3dc441350163d6d
SHA1 3187401b40c673853e6bf9015d9d316b5a453a52
SHA256 02a70f3fda1d75f5b8cac5eab88cad7a4143ba1ea1c55ca5dc877d1f9d65d915
SHA3 9782e317a34ae5b2480868e80cbf33bcc7f0b68ecd5062ee4e659a094f29d4e8
VirtualSize 0xf34
VirtualAddress 0x3c9000
SizeOfRawData 0xf34
PointerToRawData 0x3c9000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 4.54537

.edata

MD5 12db0468106a5be57ef2904a27b3567d
SHA1 d2dae04bc4da4276689eaaae1e2b1a552e3210f3
SHA256 8e62a82b237d8106bc7bc232a176a4079c4825512ea38af04009176afb1f611f
SHA3 a03453e162b395fb4debd1e600c694121d5e1581785e01fcf36cf5cd1af41ad1
VirtualSize 0x6e
VirtualAddress 0x3ca000
SizeOfRawData 0x6e
PointerToRawData 0x3ca000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 4.07906

.tls

MD5 534d78034b774b6266f2189576f8c6e3
SHA1 836f19cb3de11d49cf00781f211e535fb9dba1f3
SHA256 62b14867e4e79d50673d2f7474335229f54c478f56d2a910235e1953c6d29206
SHA3 7becf30d534432649d4e6b49c67ca2b36d1369f2681b4ba10a5707d0621e084f
VirtualSize 0x5c
VirtualAddress 0x3cb000
SizeOfRawData 0x5c
PointerToRawData 0x3cb000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 0

.rdata

MD5 f584d8ce5d8e949856b9adaa1e8c413e
SHA1 002107af256a83e471751f186b6acb90cc453ef1
SHA256 b1b8adfbe08aae72f75f4b531604047ddd6c9753f24f31ba2d39c0a1001a2f5d
SHA3 faa3deca2073d0abb489edc6f6de1ffc660d3cb7f95ef2d97fd15335ea53adad
VirtualSize 0x5d
VirtualAddress 0x3cc000
SizeOfRawData 0x5d
PointerToRawData 0x3cc000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 4.81793

.reloc

MD5 3ca69e9eefbb69665e13eb5e28cf9019
SHA1 6dd1522f8119f6fbf019d37ea10afa2a6850fbbf
SHA256 8e9ac32fcaee582facff6fc63be9ada3db2865b32fff31ff36176b05abd94ca8
SHA3 afe925cebc73020f2862c03c5b32db8c013a19c1302f0d7ae408652a1df6368f
VirtualSize 0x4c664
VirtualAddress 0x3cd000
SizeOfRawData 0x4c664
PointerToRawData 0x3cd000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy 6.72932

.rsrc

MD5 958056af733af9615dd3f68fc5b423b7
SHA1 e6a4444b8bedc309dfcc080c9d7db3aea454a52f
SHA256 10c91b98b71796e7ec1982330531b198856ad0acd5d6ac5083224c4b0b26ad91
SHA3 284a9b0c9779a0f1f4e1b5a150eae2897e5c30104e327900e137f5110a127b5c
VirtualSize 0x1b8b4
VirtualAddress 0x41a000
SizeOfRawData 0x1b8b4
PointerToRawData 0x41a000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 4.91399

Imports

mpr.dll WNetEnumResourceW
WNetGetUniversalNameW
WNetGetConnectionW
WNetCloseEnum
WNetOpenEnumW
shlwapi.dll SHAutoComplete
winspool.drv DocumentPropertiesW
ClosePrinter
OpenPrinterW
GetDefaultPrinterW
EnumPrintersW
comdlg32.dll GetSaveFileNameW
GetOpenFileNameW
comctl32.dll ImageList_GetImageInfo
FlatSB_SetScrollInfo
InitCommonControls
ImageList_DragMove
ImageList_Destroy
_TrackMouseEvent
ImageList_DragShowNolock
ImageList_Add
FlatSB_SetScrollProp
ImageList_GetDragImage
ImageList_Create
ImageList_EndDrag
ImageList_DrawEx
ImageList_SetImageCount
FlatSB_GetScrollPos
FlatSB_SetScrollPos
InitializeFlatSB
ImageList_Copy
FlatSB_GetScrollInfo
ImageList_Write
ImageList_DrawIndirect
ImageList_SetBkColor
ImageList_GetBkColor
ImageList_BeginDrag
ImageList_GetIcon
ImageList_Replace
ImageList_GetImageCount
ImageList_DragEnter
ImageList_GetIconSize
ImageList_SetIconSize
ImageList_Read
ImageList_DragLeave
ImageList_LoadImageW
ImageList_Draw
ImageList_Remove
ImageList_ReplaceIcon
ImageList_SetOverlayImage
shell32.dll SHGetFileInfoW
SHChangeNotify
Shell_NotifyIconW
SHAppBarMessage
ShellExecuteW
ShellExecuteExW
user32.dll MoveWindow
CopyImage
SetMenuItemInfoW
GetMenuItemInfoW
DefFrameProcW
ScrollWindowEx
GetDlgCtrlID
FrameRect
RegisterWindowMessageW
GetMenuStringW
FillRect
SendMessageA
EnumWindows
ShowOwnedPopups
GetClassInfoW
GetScrollRange
SetActiveWindow
GetActiveWindow
DrawEdge
GetKeyboardLayoutList
OemToCharBuffA
LoadBitmapW
EnumChildWindows
SendNotifyMessageW
GetScrollBarInfo
UnhookWindowsHookEx
SetCapture
GetCapture
ShowCaret
CreatePopupMenu
GetMenuItemID
CharLowerBuffW
PostMessageW
SetWindowLongW
IsZoomed
SetParent
DrawMenuBar
GetClientRect
IsChild
IsIconic
CallNextHookEx
ShowWindow
GetWindowTextW
SetForegroundWindow
IsDialogMessageW
DestroyWindow
RegisterClassW
EndMenu
CharNextW
GetFocus
GetDC
SetFocus
ReleaseDC
ExitWindowsEx
GetClassLongW
CharToOemBuffA
SetScrollRange
DrawTextW
PeekMessageA
MessageBeep
SetClassLongW
SetRectEmpty
RemovePropW
GetSubMenu
DestroyIcon
IsWindowVisible
DispatchMessageA
UnregisterClassW
GetTopWindow
SendMessageW
SendMessageTimeoutW
LoadStringW
CreateMenu
CharLowerW
SetWindowRgn
SetWindowPos
GetMenuItemCount
GetSysColorBrush
GetWindowDC
DrawTextExW
ReplyMessage
GetScrollInfo
SetWindowTextW
GetMessageExtraInfo
GetSysColor
EnableScrollBar
TrackPopupMenu
DrawIconEx
GetClassNameW
GetMessagePos
GetIconInfo
SetScrollInfo
GetKeyNameTextW
GetDesktopWindow
SetCursorPos
GetCursorPos
SetMenu
GetMenuState
GetMenu
SetRect
GetKeyState
ValidateRect
GetCursor
KillTimer
WaitMessage
TranslateMDISysAccel
GetWindowPlacement
CreateIconIndirect
CreateWindowExW
GetMessageW
GetDCEx
PeekMessageW
MonitorFromWindow
GetUpdateRect
SetTimer
WindowFromPoint
BeginPaint
RegisterClipboardFormatW
MapVirtualKeyW
OffsetRect
IsWindowUnicode
DispatchMessageW
CreateAcceleratorTableW
DefMDIChildProcW
WaitForInputIdle
GetSystemMenu
SetScrollPos
GetScrollPos
InflateRect
DrawFocusRect
ReleaseCapture
LoadCursorW
ScrollWindow
GetLastActivePopup
GetSystemMetrics
CharUpperBuffW
SetClipboardData
GetClipboardData
ClientToScreen
SetWindowPlacement
GetMonitorInfoW
CheckMenuItem
CharUpperW
DefWindowProcW
GetForegroundWindow
EnableWindow
GetWindowThreadProcessId
RedrawWindow
EndPaint
MsgWaitForMultipleObjectsEx
LoadKeyboardLayoutW
ActivateKeyboardLayout
GetParent
MonitorFromRect
InsertMenuItemW
GetPropW
MessageBoxW
SetPropW
UpdateWindow
MsgWaitForMultipleObjects
DestroyMenu
SetWindowsHookExW
EmptyClipboard
AdjustWindowRectEx
IsWindow
DrawIcon
EnumThreadWindows
InvalidateRect
GetKeyboardState
ScreenToClient
DrawFrameControl
SetCursor
CreateIcon
RemoveMenu
AppendMenuW
GetKeyboardLayoutNameW
OpenClipboard
TranslateMessage
MapWindowPoints
EnumDisplayMonitors
CallWindowProcW
CloseClipboard
DestroyCursor
CopyIcon
PostQuitMessage
ShowScrollBar
LoadImageW
EnableMenuItem
HideCaret
FindWindowExW
MonitorFromPoint
LoadIconW
SystemParametersInfoW
GetWindow
GetWindowLongW
GetWindowRect
InsertMenuW
IsWindowEnabled
IsDialogMessageA
FindWindowW
GetKeyboardLayout
DeleteMenu
version.dll GetFileVersionInfoSizeW
VerQueryValueW
GetFileVersionInfoW
oleaut32.dll SafeArrayPutElement
LoadTypeLib
GetErrorInfo
VariantInit
VariantClear
SysFreeString
SafeArrayAccessData
SysReAllocStringLen
SafeArrayCreate
SafeArrayGetElement
GetActiveObject
SysAllocStringLen
SafeArrayUnaccessData
SafeArrayPtrOfIndex
VariantCopy
SafeArrayGetUBound
SafeArrayGetLBound
RegisterTypeLib
VariantCopyInd
VariantChangeType
WTSAPI32.DLL WTSUnRegisterSessionNotification
WTSRegisterSessionNotification
advapi32.dll ConvertStringSecurityDescriptorToSecurityDescriptorW
RegSetValueExW
RegConnectRegistryW
OpenThreadToken
GetUserNameW
RegQueryInfoKeyW
RegUnLoadKeyW
RegSaveKeyW
EqualSid
RegReplaceKeyW
GetTokenInformation
RegCreateKeyExW
SetSecurityDescriptorDacl
RegLoadKeyW
RegEnumKeyExW
AdjustTokenPrivileges
RegDeleteKeyW
LookupPrivilegeValueW
RegOpenKeyExW
OpenProcessToken
AllocateAndInitializeSid
FreeSid
RegDeleteValueW
RegFlushKey
RegQueryValueExW
RegEnumValueW
ConvertSidToStringSidW
RegCloseKey
InitializeSecurityDescriptor
RegRestoreKeyW
msvcrt.dll memcpy
memset
winhttp.dll WinHttpGetIEProxyConfigForCurrentUser
WinHttpSetTimeouts
WinHttpSetStatusCallback
WinHttpConnect
WinHttpReceiveResponse
WinHttpQueryAuthSchemes
WinHttpGetProxyForUrl
WinHttpReadData
WinHttpCloseHandle
WinHttpQueryHeaders
WinHttpOpenRequest
WinHttpAddRequestHeaders
WinHttpOpen
WinHttpWriteData
WinHttpSetCredentials
WinHttpQueryDataAvailable
WinHttpSetOption
WinHttpSendRequest
WinHttpQueryOption
kernel32.dll SetFileAttributesW
SetFileTime
GetACP
GetExitCodeProcess
CloseHandle
LocalFree
GetCurrentProcessId
SizeofResource
VirtualProtect
TerminateThread
QueryPerformanceFrequency
SetHandleInformation
IsDebuggerPresent
FindNextFileW
GetFullPathNameW
VirtualFree
GetProcessHeap
ExitProcess
HeapAlloc
WriteProfileStringW
GetCPInfoExW
CompareStringOrdinal
GetLongPathNameW
RtlUnwind
SetFilePointerEx
GetCPInfo
EnumSystemLocalesW
GetStdHandle
GetTimeZoneInformation
FileTimeToLocalFileTime
GetModuleHandleW
FreeLibrary
TryEnterCriticalSection
HeapDestroy
CompareFileTime
ReadFile
CreateProcessW
TransactNamedPipe
GetLastError
GetModuleFileNameW
SetLastError
GlobalAlloc
GlobalUnlock
FindResourceW
OpenMutexW
CreateThread
CompareStringW
CopyFileW
GetFileSizeEx
CreateMutexW
LoadLibraryA
GetVolumeInformationW
ResetEvent
MulDiv
FreeResource
GetDriveTypeW
GetVersion
RaiseException
MoveFileW
GlobalAddAtomW
GetSystemTimeAsFileTime
FormatMessageW
OpenProcess
SwitchToThread
GetExitCodeThread
GetCurrentThread
GetLogicalDrives
LocalFileTimeToFileTime
SetNamedPipeHandleState
LoadLibraryExW
TerminateProcess
LockResource
FileTimeToSystemTime
GetShortPathNameW
GetCurrentThreadId
UnhandledExceptionFilter
MoveFileExW
PeekNamedPipe
GlobalFindAtomW
VirtualQuery
GlobalFree
VirtualQueryEx
Sleep
EnterCriticalSection
SetFilePointer
ReleaseMutex
FlushFileBuffers
LoadResource
SuspendThread
GetTickCount
WritePrivateProfileStringW
GetTempFileNameW
GlobalDeleteAtom
GetStartupInfoW
GetFileAttributesW
GetCurrentDirectoryW
SetCurrentDirectoryW
InitializeCriticalSection
GetSystemWindowsDirectoryW
GetThreadPriority
GetCurrentProcess
GlobalLock
SetThreadPriority
VirtualAlloc
GetTempPathW
GetCommandLineW
GetSystemInfo
DuplicateHandle
LeaveCriticalSection
GetProcAddress
ResumeThread
GetVersionExW
VerifyVersionInfoW
HeapCreate
GetWindowsDirectoryW
DeviceIoControl
LCMapStringW
GetDiskFreeSpaceW
VerSetConditionMask
FindFirstFileW
GetUserDefaultUILanguage
lstrlenW
QueryPerformanceCounter
SetEndOfFile
lstrcmpW
HeapFree
WideCharToMultiByte
FindClose
MultiByteToWideChar
LoadLibraryW
SetEvent
CreateFileW
GetLocaleInfoW
EnumResourceNamesW
GetSystemDirectoryW
DeleteFileW
FormatMessageA
GetEnvironmentVariableW
GetLocalTime
WaitForSingleObject
GetFileInformationByHandle
WriteFile
SetFileInformationByHandle
CreateNamedPipeW
ExitThread
CreatePipe
DeleteCriticalSection
GetDateFormatW
TlsGetValue
SetErrorMode
GetComputerNameW
IsValidLocale
TlsSetValue
CreateDirectoryW
GetOverlappedResult
GetSystemDefaultUILanguage
EnumCalendarInfoW
GetProfileStringW
LocalAlloc
GetUserDefaultLangID
RemoveDirectoryW
CreateEventW
GetPrivateProfileStringW
WaitForMultipleObjectsEx
GetThreadLocale
SetThreadLocale
ole32.dll StgCreateDocfileOnILockBytes
CoCreateInstance
CLSIDFromString
CoUninitialize
IsEqualGUID
OleInitialize
CoFreeUnusedLibraries
CreateILockBytesOnHGlobal
CLSIDFromProgID
CoInitializeEx
OleUninitialize
CoDisconnectObject
CoInitialize
CoTaskMemFree
CoTaskMemAlloc
StringFromCLSID
gdi32.dll Pie
SetBkMode
CreateCompatibleBitmap
GetEnhMetaFileHeader
RectVisible
AngleArc
ResizePalette
SetAbortProc
SetTextColor
StretchBlt
RoundRect
SelectClipRgn
RestoreDC
SetRectRgn
GetTextMetricsW
RemoveFontResourceW
GetWindowOrgEx
CreatePalette
PolyBezierTo
CreateICW
CreateDCW
GetStockObject
CreateSolidBrush
Polygon
MoveToEx
PlayEnhMetaFile
Ellipse
StartPage
GetBitmapBits
StartDocW
AbortDoc
GetSystemPaletteEntries
GetEnhMetaFileBits
AddFontResourceW
GetEnhMetaFilePaletteEntries
CreatePenIndirect
CreateFontIndirectW
PolyBezier
EndDoc
GetObjectW
GetWinMetaFileBits
SetROP2
GetEnhMetaFileDescriptionW
ArcTo
Arc
SelectPalette
ExcludeClipRect
MaskBlt
SetWindowOrgEx
EndPage
DeleteEnhMetaFile
Chord
SetDIBits
SetViewportOrgEx
CreateRectRgn
RealizePalette
SetDIBColorTable
GetDIBColorTable
CreateBrushIndirect
PatBlt
LineDDA
SetEnhMetaFileBits
Rectangle
SaveDC
DeleteDC
BitBlt
FrameRgn
GetDeviceCaps
GetTextExtentPoint32W
GetClipBox
IntersectClipRect
Polyline
CreateBitmap
SetWinMetaFileBits
CombineRgn
GetStretchBltMode
CreateDIBitmap
SetStretchBltMode
GetDIBits
CreateDIBSection
LineTo
GetRgnBox
EnumFontsW
CreateHalftonePalette
SelectObject
DeleteObject
ExtFloodFill
UnrealizeObject
CopyEnhMetaFileW
SetBkColor
CreateCompatibleDC
GetBrushOrgEx
GetCurrentPositionEx
GetNearestPaletteIndex
GetTextExtentPointW
ExtTextOutW
SetBrushOrgEx
GetPixel
GdiFlush
SetPixel
EnumFontFamiliesExW
StretchDIBits
GetPaletteEntries
ntdll.dll _allshl
_aullshr
kernel32.dll (delay-loaded) SetFileAttributesW
SetFileTime
GetACP
GetExitCodeProcess
CloseHandle
LocalFree
GetCurrentProcessId
SizeofResource
VirtualProtect
TerminateThread
QueryPerformanceFrequency
SetHandleInformation
IsDebuggerPresent
FindNextFileW
GetFullPathNameW
VirtualFree
GetProcessHeap
ExitProcess
HeapAlloc
WriteProfileStringW
GetCPInfoExW
CompareStringOrdinal
GetLongPathNameW
RtlUnwind
SetFilePointerEx
GetCPInfo
EnumSystemLocalesW
GetStdHandle
GetTimeZoneInformation
FileTimeToLocalFileTime
GetModuleHandleW
FreeLibrary
TryEnterCriticalSection
HeapDestroy
CompareFileTime
ReadFile
CreateProcessW
TransactNamedPipe
GetLastError
GetModuleFileNameW
SetLastError
GlobalAlloc
GlobalUnlock
FindResourceW
OpenMutexW
CreateThread
CompareStringW
CopyFileW
GetFileSizeEx
CreateMutexW
LoadLibraryA
GetVolumeInformationW
ResetEvent
MulDiv
FreeResource
GetDriveTypeW
GetVersion
RaiseException
MoveFileW
GlobalAddAtomW
GetSystemTimeAsFileTime
FormatMessageW
OpenProcess
SwitchToThread
GetExitCodeThread
GetCurrentThread
GetLogicalDrives
LocalFileTimeToFileTime
SetNamedPipeHandleState
LoadLibraryExW
TerminateProcess
LockResource
FileTimeToSystemTime
GetShortPathNameW
GetCurrentThreadId
UnhandledExceptionFilter
MoveFileExW
PeekNamedPipe
GlobalFindAtomW
VirtualQuery
GlobalFree
VirtualQueryEx
Sleep
EnterCriticalSection
SetFilePointer
ReleaseMutex
FlushFileBuffers
LoadResource
SuspendThread
GetTickCount
WritePrivateProfileStringW
GetTempFileNameW
GlobalDeleteAtom
GetStartupInfoW
GetFileAttributesW
GetCurrentDirectoryW
SetCurrentDirectoryW
InitializeCriticalSection
GetSystemWindowsDirectoryW
GetThreadPriority
GetCurrentProcess
GlobalLock
SetThreadPriority
VirtualAlloc
GetTempPathW
GetCommandLineW
GetSystemInfo
DuplicateHandle
LeaveCriticalSection
GetProcAddress
ResumeThread
GetVersionExW
VerifyVersionInfoW
HeapCreate
GetWindowsDirectoryW
DeviceIoControl
LCMapStringW
GetDiskFreeSpaceW
VerSetConditionMask
FindFirstFileW
GetUserDefaultUILanguage
lstrlenW
QueryPerformanceCounter
SetEndOfFile
lstrcmpW
HeapFree
WideCharToMultiByte
FindClose
MultiByteToWideChar
LoadLibraryW
SetEvent
CreateFileW
GetLocaleInfoW
EnumResourceNamesW
GetSystemDirectoryW
DeleteFileW
FormatMessageA
GetEnvironmentVariableW
GetLocalTime
WaitForSingleObject
GetFileInformationByHandle
WriteFile
SetFileInformationByHandle
CreateNamedPipeW
ExitThread
CreatePipe
DeleteCriticalSection
GetDateFormatW
TlsGetValue
SetErrorMode
GetComputerNameW
IsValidLocale
TlsSetValue
CreateDirectoryW
GetOverlappedResult
GetSystemDefaultUILanguage
EnumCalendarInfoW
GetProfileStringW
LocalAlloc
GetUserDefaultLangID
RemoveDirectoryW
CreateEventW
GetPrivateProfileStringW
WaitForMultipleObjectsEx
GetThreadLocale
SetThreadLocale

Delayed Imports

Attributes 0x1
Name kernel32.dll
ModuleHandle 0x3c91e0
DelayImportAddressTable 0x3c921c
DelayImportNameTable 0x3c9394
BoundDelayImportTable 0x3c950c
UnloadDelayImportTable 0x3c964c
TimeStamp 1970-Jan-01 00:00:00

dbkFCallWrapperAddr

Ordinal 1
Address 0x3bb648

__dbk_fcall_wrapper

Ordinal 2
Address 0x13100

1

Type RT_CURSOR
Language English - United States
Codepage Latin 1 / Western European
Size 0x134
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.6633
MD5 ff4e5862f26ea666373e5fab2bddfb11
SHA1 cfa13c0ab30f1bbd566900dee3631902f9b6451c
SHA256 b8e6fc93d423931acbddae3c27dd3c4eb2a394005d746951a971cb700e0ee510
SHA3 91dae12a9f43c5443e0661091a336f882fa1482f75fa9a57c9298d1d70c8ae69

2

Type RT_CURSOR
Language English - United States
Codepage Latin 1 / Western European
Size 0x134
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.80231
MD5 2e87b3c111e3073a841775c1f8ec5a90
SHA1 20292304fa2ef1bfdc4a1000e90a1c16d4765a96
SHA256 ce19ace18e87b572e6912306776226af5b8e63959c61cde70a8ff05b3bbdcc41
SHA3 9527f09e739c2064835800a7e5c317cb422bdd7237f00fca079a1c62f58a2612

3

Type RT_CURSOR
Language English - United States
Codepage Latin 1 / Western European
Size 0x134
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.00046
MD5 a04c3c368cb37c07bd5f63e7e6841ebd
SHA1 699300bceaa1256818c43fecfc8cad93a59156b2
SHA256 ee1c9c194199c320c893b367602ccc7ee7270bd4395d029f727e097634f47f8c
SHA3 58722e3138aad1382e284c1605ecd665ced536de4906749ac8d6e11252cc9558

4

Type RT_CURSOR
Language English - United States
Codepage Latin 1 / Western European
Size 0x134
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.56318
MD5 9929115b21c2c59348058d4190392e75
SHA1 626fba1825d572ea441d36363307c9935de3c565
SHA256 9d9edf87ca203ecc60b246cc783d54218dd0ce77d3a025d0bafc580995a4abd8
SHA3 fea156e872544252c625076a6bf3baa733ee5b3d5399716e156734af7a841369

5

Type RT_CURSOR
Language English - United States
Codepage Latin 1 / Western European
Size 0x134
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.6949
MD5 f321ad13d1c3f35a05d67773b4bc27d6
SHA1 30aded8525417e2531d5eb88bf2f868172945baa
SHA256 99676c52310db365580965ea646ece86c62951bfd97ec0aae9f738a202a90593
SHA3 04c839da98a8c50a36697076af5bc6d527560a69153b2f718f065908fd4fe3ad

6

Type RT_CURSOR
Language English - United States
Codepage Latin 1 / Western European
Size 0x134
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.62527
MD5 5ca217e52bdc6f23b43c7b6a23171e6e
SHA1 d99dc22ec1b655a42c475431cc3259742d0957a4
SHA256 11726dcf1eebe23a1df5eb0ee2af39196b702eddd69083d646e4475335130b28
SHA3 b358d8a5b0f400dd2671956ec45486ae1035556837b5289df5f418fe69348b3f

7

Type RT_CURSOR
Language English - United States
Codepage Latin 1 / Western European
Size 0x134
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.91604
MD5 6be7031995bb891cb8a787b9052f6069
SHA1 487eb59fd083cf4df02ce59d9b079755077ba1b5
SHA256 6f938aab0a03120de4ef8b27aff6ba5146226c92a056a6f04e5ec8d513ce5f9d
SHA3 0f1c6c0378a3646c9fbf3678bbeeccf929d32192f02d1ea9d6ba0be5c769e6ab

14

Type RT_ICON
Language English - United States
Codepage Latin 1 / Western European
Size 0x4228
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 1.05344
MD5 d5713882a8b6f713df1c8aa6762f83be
SHA1 befebb6517352cfd8c21d8ab2249fea3f0dff28c
SHA256 7e853df706ecefdc4ad8b97685119ae61115ca8911672ff3a0757d38fb7a569c
SHA3 99278911ebcb21da5cc6c41b059af7fce1bad4e4dfb8b6d222c315d96b4c4104

15

Type RT_ICON
Language English - United States
Codepage Latin 1 / Western European
Size 0x25a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 1.45638
MD5 2986557d8e8c923f1db3b41056be89d0
SHA1 51b1f09a77ebb315bc606af35bfbd8aa9f1e6a21
SHA256 dc546c3aea3e73773bbb992eb17f4f965b87003c3902d49d4eb440532e2832a0
SHA3 20c6460fa091d47cff1a30d6682a4ab858dfd231a6fbf26a91c04d898b9af7ff

16

Type RT_ICON
Language English - United States
Codepage Latin 1 / Western European
Size 0x10a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 1.0902
MD5 d1751213557a1a2cc6500a58c25693a9
SHA1 7efa6a56e03f04e892697d2204ffa03f9599c693
SHA256 16b5b33af995ba6f7ba17a0ed8a30570b24f257422c7475f5c1e3fc30bd77306
SHA3 7a56be9c3564f02b871679525fcef8540c698c1ffc8e68ba30c2b21f70f67749

100

Type RT_ICON
Language English - United States
Codepage Latin 1 / Western European
Size 0x9f5
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.80525
Detected Filetype PNG graphic file
MD5 0734f9f193cae11cd3102f40fb42e307
SHA1 a46c9f18b377423c18aab22ea1704660d09dcf3c
SHA256 4e227e15e4ec88c22585d6ea470068153c6ddbb50e76e0c6a06f09cd5483f8fa
SHA3 32736824df6eb251242ec3c91f3deeefc50e5f29a464a31eee1c72e46a542687

4066

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x81c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.28018
MD5 3fc39b5b717d53ebc0ef967356933aca
SHA1 fa7aaaeec3d2c5a5ad9ab33bb13a0ee9a3c1f7d1
SHA256 b4b0960009e864722a00aea1b36a3afaffa45585411d5c47e49d02907d19335d
SHA3 08ec9c7209cd060868662b68a498bb99b861771fd656c1340609dcbe1f7292f8

4067

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0xad0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.26658
MD5 a601e2f517cb12c6285f7414d78a7a1b
SHA1 4852907c4038a2130416ca5a515f60e9c4577380
SHA256 75b4e54d4a8bbec0f1f44a250c149c53c7d8cb365427a6c9166cf2cf7c4419ff
SHA3 8774ed7bc54b2793fdead11bfafeeee36bb79f984fba3a14ff8c8de734579ab0

4068

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x2a0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.31456
MD5 b67a62a61d743dc15156194d3a4a67c0
SHA1 6edc126e4e84cd16c34b8319a942785b7e7257bf
SHA256 3d1f031cd8105e6ce60723cde841e5f83567550ecaafed32f56e6111d09b8105
SHA3 a1c2ba85d93f90694b3d54d4f23fc978bc5ca8adb2d56b8412ff42af6bb952f6

4069

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x218
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.3863
MD5 d2c946a2409f84d19cf578d38c9abd4f
SHA1 9d5421713ae31d27c780232d3511a5653231ef82
SHA256 dda3a4bfc6785021a6dce1166a6f6404b3e3bb5d9d19f46f78dff0b539dffff6
SHA3 2b977b8b9224ff6663bcac2d3478a5b0f9ae88cd52751d2e3e32774fa6d7725b

4070

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x360
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.34152
MD5 0273d351861cf1b4e4151c07b865dbb8
SHA1 f142ad7967bf152cc3f3814f83b1b870259f4b1d
SHA256 d04156b52deed7a929bac108287f5b67dfc9ed8ada2c7ee775728f9c0176e3c4
SHA3 114b1202c230b6e4809a4616d8fee2b6ef07daa82fc7a7c60941ef5d913625a7

4071

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x42c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.28346
MD5 ff11271a95571e6f4965875cb9d6b116
SHA1 de6568423bc60c8f7b1473011fe49d217d6f676e
SHA256 f3ac5e5b32deb2f25bce78831b921604122da2cc59dbdd38ccf2ee4f5ae91cb4
SHA3 14c7bfedde3623edd8e37e746bf7c4ead118e3f4fb70fa0b390f7147e9023a17

4072

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x4b8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.34501
MD5 7552aecd13b7cd9039a538be60b6a317
SHA1 cb11c7ef3cbbe8ba7a8785e07a1e9532d0eaeb01
SHA256 38d1a0b721b385efd876c77f81ef1a0f8d5d38f6cc11fdc28439abcb3c437f62
SHA3 fd7f8ccddfc1c78767cfcd55cfad5dc9542b1924aab0f81ecf5fbc7f7c3fae88

4073

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x398
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.18862
MD5 3dec8a8fc2112f1b522c27b633a14b99
SHA1 3e815ae95cbd040ffadb8feb2dfb33fc08e0184f
SHA256 6161a82da2a07fee6b5d039b9efda45b96e9ce4f8f0c85aa1e47a3dbd4c5b562
SHA3 a2d11d01cd078c9c4398fcc557bfc42338e88b72bee7407a09b636ea2ade6a07

4074

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x3a0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.34082
MD5 13d1a889ff8b49e913b18b677f539ddb
SHA1 81dbbf78807c0b8a993ea0801dbc1cf7a4aa0259
SHA256 41caa8e8a09de5403edac0c271fa3b702cb2fb9e144008246a0ae7faccc8ef82
SHA3 adc9bf26e60fc4bab198d3822c39422ee32772a7da8957dde8ef7ff7eae7d1bc

4075

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x2b8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.31095
MD5 39785ac96922e4ddda606e4842fc2fed
SHA1 9305d53f4d85b0132828d8bdda771b9fa1fdef80
SHA256 9e1885717551e18fb625c565011b10b5b7061e84e377288fff56a6f54c2788c2
SHA3 5fbba68be48f17ae6304ed4bb3589d79431ac4f7c028256636a5230746dbf1f6

4076

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0xbc
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.48379
MD5 f3d34521fcb7b6517853412f01fdaf1b
SHA1 906364b239f9dc8e320a7c872dee6a483adcec97
SHA256 45b2c7a2c3f36ebc21ebf6dcd3424722970f3f183b704cf0e1adf00a0ce8f3ee
SHA3 6ed1011ceadd13b01574e1975f3f2fb7708a951519a61e8c2e8667b7753cf156

4077

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0xfc
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.48702
MD5 f09129856bc06350c3cf136d50722917
SHA1 f92347b17397b121cbeaacca9fada741f43d5853
SHA256 46d3fd0ce3ada4ff2b73c35fbe472dadc5f53b2d6c66121f82bfee9e93bd12a6
SHA3 2edcb0cf28fb3af248d1832f00bafa006d62214c9839bd3d161f008d17115378

4078

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x3e8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.23911
MD5 898a281e18f513064b0ca44c8add4f16
SHA1 58dc33a5a3116c3858d945c667ad0ec76f7c7223
SHA256 38625ea45a0a7acc1f1c97cc50e4116c87149b3aa692bc506d614ec1a668ce4e
SHA3 f0a4d1bfeeb622851aaf75335e8443594429cf95a33bf78591e33094702e9001

4079

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x3fc
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.33292
MD5 4d21267bfb885b48d593abf8bbdd43e5
SHA1 42fdbe1d3a2c8e2079f88e22ddd4ce6ceb19e7ed
SHA256 16a12c0e1e981afe8c3b818a1021f9aadb49a8c0093c341ce0c0304d0d3391a0
SHA3 ff0dccbba6ed0aa4fa3d1e5b5c34af38fb0c0c8939cb36bf9afb203fdcb5727f

4080

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x394
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.34188
MD5 2fef4b7dd48d29812bfb1ff93b125a94
SHA1 aa1cdf0f3d8e089d3f295e4ce1be3399b2b4ed77
SHA256 62006fd8024eb3c4011ee22f9acf72a675aa9289eb4c460d8b940dccec2e4c9f
SHA3 f1a238f2bc99d5ca5f8d9d63257e64acae6895def5a27e6b4daa1d3f0e283a71

4081

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x578
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.28039
MD5 4f22013432ec1b5313b680b87fc00021
SHA1 93dbbef772e75787939489ad652e7ae529353962
SHA256 75f6086995328ef43ae35ac59421c771208d7db10c3c6a729a3c4615b7fb4932
SHA3 eb908e51a7824fc20ace0815f25ced78fbb5e63b9bbf952829fc91dd76cbd179

4082

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x310
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.33435
MD5 c76e3587f3ceb050b20c3c691406bcca
SHA1 c324f89149420cd16e7045f47ec0882dc95bfc99
SHA256 9dc5bab3c1ff60955330fbc1b237f193d1c239fefd3cb1376d97f529c4f1e7d1
SHA3 1f1a6612ed2db275483f78983d8d96a0aa97e008a1b919029ea32de5d308d6df

4083

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x3d8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.51661
MD5 295b8e307c2792e6d7869455346b8612
SHA1 60e9d36a460e94f250b283fc4ba8584ff5c0e67c
SHA256 593378aa6aca8101c548fc113e395dae4e3212f4fda2ace1ae1803b632c502ba
SHA3 a196037b3542beafc9dfdfd75c68118ad681490ca016856dc0d4d4d74f83a077

4084

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x388
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.28094
MD5 468ceec3d4d29a03bdb0d78aed7f4f80
SHA1 3c4c945c89c1adedd83b0c05dc46c1a04e14cb4e
SHA256 ee60ad90cff33124f7a3b34c65d4aabf5b8b25ec48e878771dc51e9648b4dc49
SHA3 306d080bc91caba6f5ff80d4eacadcb080a3b70942ce9710f215c9e42e1f135c

4085

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x520
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.31443
MD5 8b3fc70bf97c3ee1ce5f468a4c7f896d
SHA1 c89b596256a0961d41e44933c177297314a5bd9f
SHA256 af90082f3aab326b1d4c6843ec789c8f50ade834e18b9c90720cd7a29c407159
SHA3 ae2a56721d061aeae7233e236a086f7550c1857aedd9d084647f6056a1537f33

4086

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x4c0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.26067
MD5 5f7f1162c474d4f0f5a1202c5e8f5348
SHA1 0d8314add4eb01a676ce5621cdcb7968d93b5567
SHA256 6c8989a921904a87e0defc60ceb3c93a33319f023b205637243dd8bec7e80b9a
SHA3 32ebed3dc1d9fe4778ff9023df3b6789d6cf1b83e0044c1bc54d8827d9c2b427

4087

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x378
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.26408
MD5 d573af986caffce8236cafbd105c219f
SHA1 3d89795dd70b5301e9048574123b3cebec494798
SHA256 6063e0de4369f8fa364ca527c963a95cda945f40501fca5707bff8c344468814
SHA3 a42012f074989ba89048c3f27efed4f51956a762bbf0bb997ad9babc4a70f69a

4088

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x3a4
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.29999
MD5 1ae6048c2074cae53bf08e034dfd01cf
SHA1 1a2b5e53736c0575ade646c6c868df1fb8cd8b78
SHA256 18f4de227b196853891e8623d188a8d540dd04b73b245c77d88b6b34a9f6e3d0
SHA3 405bc2a6a1e2b2c9af4230ed8518d7799d464729fe12718aa5a320b42e6aaada

4089

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x43c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.32572
MD5 b50c6bd62c4dbad2d64a6b05720f862a
SHA1 c1aac2eb287c027df5bc8134fc31d08dabbbcef3
SHA256 3ff1f54cd964f42d791ede63f4b19d5d05cf189946fe73411330745835e3a16a
SHA3 b2470b111049ce09d87c0433e31cf2dc59540ec5faa69251a79e45bb1bc46b29

4090

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0xe8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.23392
MD5 c82c5bd41f34467617721afba76f3941
SHA1 5a9d07eb437d2bd3defbbb25216eb000b19ee64e
SHA256 fe86f912026ade5d1862e4f3e706c6ce1cf2ce1a41371d9ae5c9e1e9a8ee2a28
SHA3 a761387a82620c650e42951341e00bb51657ec8fa21650a882b8af728c95f357

4091

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0xc4
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.34269
MD5 62810907e7b23a396bd760ac66e05fff
SHA1 770c9eaee9795b7a88330d03f4237ea99fff17c1
SHA256 125ebf3d2ac46fce44b67cf20f794c2e00469b914797b7f0f4a4493ffee6f032
SHA3 9db19dd09d08b97172a4dba0186da341ed05b6d21741f42f88c0a4c70f44ef6e

4092

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x274
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.37656
MD5 eac6176077049b6cef3bd12bcdabc2c4
SHA1 d45fa6f8932c69d611c9b5e2df0e986d19914c73
SHA256 3fac74b62406d176e43e477b835cc16c309038c1cb63f926a310793cc41ba6cf
SHA3 c6ce0465c283ad02eeec9ba17bdb82e3309855503079498f8d2788ed3e101a58

4093

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x414
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.32985
MD5 841394712bdddbb9ab326971df10ba5c
SHA1 2e14a56e86eff2c643166f8a11bce2115607d7be
SHA256 a994360204f893513d5d8bf822748f74103155283d449c5c21457ad419ca607a
SHA3 9d5598522c98251f996ef21b17fdae90797f2ea2a3392eb5053b9fe5e15f8dc6

4094

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x37c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.33165
MD5 58435d9e3b56fea1cca741c7e22e62ff
SHA1 20dfdca4ca26f476b854393517912b1e9054e103
SHA256 fe1d67858c63d7aeecdd970c7768c9371586116778d688505e1cd5e71643ba79
SHA3 8813ce458900cbfba3e8614d41330487f9a42ee1d487a8c492919aae0856b5d4

4095

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x2ec
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.29074
MD5 04b914d9c0ed093e8b510b576b1a9881
SHA1 aeb5887cba5a8c919fbb673f12ba2e60fbb21ab9
SHA256 9451e219e58ee6293cb3bc533b231b45c71f6876ceeccd9f935d9186b0ab7f91
SHA3 be1dc190b7c85d4a3d34b1d4e4ab7c12586a334c3e29c002a90ff29fbb86a63d

4096

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x300
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.26783
MD5 1fd8a5a4e36cf57426403ffa1ee43706
SHA1 82c254864853d7a1896160e5f2bfb012d2669a7c
SHA256 72ad458e849fef28b490e14801cbd5990d1cd2bdcd848e3d5421410b3f2fc90e
SHA3 2da30e47bff548e0c29b4d52e11f8b7c8a358d5d306b5217d920e93df26a412f

DVCLAL

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x10
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4
MD5 d8090aba7197fbf9c7e2631c750965a8
SHA1 04f73efb0801b18f6984b14cd057fb56519cd31b
SHA256 88d14cc6638af8a0836f6d868dfab60df92907a2d7becaefbbd7e007acb75610
SHA3 a5a67ad8166061d38fc75cfb2c227911de631166c6531a6664cd49cfb207e8bb

HELPER_EXE_AMD64

Type RT_RCDATA
Language English - United States
Codepage Latin 1 / Western European
Size 0x1800
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.72037
Detected Filetype PE Executable
MD5 e4211d6d009757c078a9fac7ff4f03d4
SHA1 019cd56ba687d39d12d4b13991c9a42ea6ba03da
SHA256 388a796580234efc95f3b1c70ad4cb44bfddc7ba0f9203bf4902b9929b136f95
SHA3 711ebd07a2e4a2820eb2cbc94d8e731ecf51b395755a3b3747b2a932581b9df9

MSG_ERROR

Type RT_RCDATA
Language English - United States
Codepage Latin 1 / Western European
Size 0x148b
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.93139
Detected Filetype PNG graphic file
MD5 50ea148a8b3f8e6e0bcf6b37918f4a93
SHA1 4d4a0a69e7f3f1a234cf4edcf3a897e18531b07e
SHA256 e74432afd4c7fe4cfb0cf8425ae298fcf425e0f0437510bde8546dbd02da0a2d
SHA3 de40febb93ab240fba58daff4f662e8f6889974a0fbadb23d2009c6efa445253

MSG_INFO

Type RT_RCDATA
Language English - United States
Codepage Latin 1 / Western European
Size 0x111e
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.90721
Detected Filetype PNG graphic file
MD5 51ffac6dde5a49e226a5435dc08656a0
SHA1 2d4a625ab8c1c45ed5f0e2a4e4138077d5ee89e6
SHA256 25e3ec43b207e22a0ee7701b9525975043ec2817e492dd07eb40306b944374c4
SHA3 becc7f28397fc80e9d96cdd13bb0a732ea8935cbde51c448e367e6bdbcbf464e

MSG_WARNING

Type RT_RCDATA
Language English - United States
Codepage Latin 1 / Western European
Size 0xd8c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.89203
Detected Filetype PNG graphic file
MD5 481232c3ddd70cc57011d3d8ed8191ca
SHA1 8722e588f04dab44a4ec94e248d74d058f269220
SHA256 636f368c9f42323b69cdf2463823eadd363e91df7f37a9d0eb863708a7f3fb83
SHA3 1efc85d96c9733bb8129189eb537e3c4658563f0336bb33eba34707378eb9205

PACKAGEINFO

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0xfc8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.31593
MD5 94e7fad8acead53e77cef513a403dfad
SHA1 d10e19725d254afb35f7312bf01c3352fc5dfecf
SHA256 604e95c61ea0374e743b8e64f3034a86b58bbfccb3e0e6fa451385f0a5749ed0
SHA3 5981cd3331fb1d58814adc5db73d8c70985e9f345d36e4d7ac4b1adcb7f3ccbf

TNEWDISKFORM

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x479
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.5275
MD5 f6bfdd1843e38cb20447b43933217681
SHA1 8db28960d93f3f4631b3399adf8b8dd2ea0aa517
SHA256 9ef4a1349bc893050921474ddef03d459a473b436a03d8ec8818e1b6fc1a22f3
SHA3 b698d333aadaa3918a9b4bd51d373d36c2322d9a2931e63409fb65e986b63c2e

TSELECTFOLDERFORM

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x3f9
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.48915
MD5 a49ace10800f1933b84676ae618090b4
SHA1 cc9c699cfcf6105782e6face3256a3620d589b5a
SHA256 c61ee474c32c75ad73b957b4ecbc86dba1bd7cf00d16edfd105f14fdf13b8bd0
SHA3 77be1a20c5d0ed8253bb0bbaf9883675cd2ea75085eedeab7e996a023223ddfa

TSELECTLANGUAGEFORM

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x4b5
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.49788
MD5 9dac8948402fbf21c84395c7f9822412
SHA1 760166ff50044bb72203df9410a4def596ffd1d5
SHA256 f365f114398d7979872e3db26354aa309aa90efdd3733c4a141e88cf43dd97b3
SHA3 26066fc6411dc534720a583cdeea78180f34d6090cc08a71ffc00e5e09cb1cd0

TUNINSTALLPROGRESSFORM

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x7e5
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.50579
MD5 b358d47e45d29a318b0fd5ef0ab0050b
SHA1 41a6c056b375eb61ff8921df5973b88a0e2595a6
SHA256 9c4b25447532431a9c943f68e8f76664bb920a9bfeac235b380d95ab7f67aff1
SHA3 9c69ce2b0efbbf6571c005cf795bfe2719a4b588c55057503accb09b3d711e23

TUNINSTALLSHAREDFILEFORM

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x557
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.47826
MD5 d6c65331637b9076541bcff69e203d1e
SHA1 f85bee5a8808171eea4a3f377de05da483ab62cb
SHA256 82a9784b9a486e50293803591c0ed49294ded1eb91a5ff04907b79f7b3d15afd
SHA3 eb6352e026207af40666839c11c0090762e27ba1f5f356aa40e33268574f7418

TWIZARDFORM

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x2a77
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.50362
MD5 9148fa3e7546cce65516921e44703f9d
SHA1 c28dd869d1fb4bbe4f813356e5a54eaa1af3d718
SHA256 95be63c04e7a088d7ceae3b73487d3c1065e205e016e5e6527d2a951c121670a
SHA3 dbadb9440a0f5ef0afe90fdd6a51b656562eecce79b0ad377aecd991a8721d18

32761

Type RT_GROUP_CURSOR
Language English - United States
Codepage Latin 1 / Western European
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 1.83876
Detected Filetype Cursor file
MD5 a2baa01ccdea3190e4998a54dbc202a4
SHA1 e8217df98038141ab4e449cb979b1c3bbea12da3
SHA256 c53efa8085835ba129c1909beaff8a67b45f50837707f22dfff0f24d8cd26710
SHA3 8874564c406835306368adf5e869422e1bb97109b97c1499caa8af219990e8dc
Preview

32762

Type RT_GROUP_CURSOR
Language English - United States
Codepage Latin 1 / Western European
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 1.91924
Detected Filetype Cursor file
MD5 aff0f5e372bd49ceb9f615b9a04c97df
SHA1 e3205724d7ee695f027ab5ea8d8e1a453aaad0dd
SHA256 b07e022f8ef0a8e5fd3f56986b2e5bf06df07054e9ea9177996b0a6c27d74d7c
SHA3 9cb042121a5269b80d18c3c5a94c0e453890686aedade960097752377dfa9712
Preview

32763

Type RT_GROUP_CURSOR
Language English - United States
Codepage Latin 1 / Western European
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.01924
Detected Filetype Cursor file
MD5 48e064acaba0088aa097b52394887587
SHA1 310b283d52aa218e77c0c08db694c970378b481d
SHA256 43f40dd5140804309a4c901ec3c85b54481316e67a6fe18beb9d5c0ce3a42c3a
SHA3 38753084b0ada40269914e80dbacf7656dc94764048bd5dff649b08b700f3ed5
Preview

32764

Type RT_GROUP_CURSOR
Language English - United States
Codepage Latin 1 / Western European
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.01924
Detected Filetype Cursor file
MD5 1ae28d964ba1a2b1b73cd813a32d4b40
SHA1 8883cd93b8ef7c15928177de37711f95f9e4cd22
SHA256 ff47a48c11c234903a7d625cb8b62101909f735ad84266c98dd4834549452c39
SHA3 a85dadd416ce2d22aa291c0794c45766a0613b853c6e3b884a2b05fc791427b8
Preview

32765

Type RT_GROUP_CURSOR
Language English - United States
Codepage Latin 1 / Western European
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.01924
Detected Filetype Cursor file
MD5 0893f6ba80d82936ebe7a8216546cd9a
SHA1 0754cbdf56c53de9ed7fbd47859d20b788c6f056
SHA256 a0adcedb82b57089f64e2857f97cefd6cf25f4d27eefc6648bda83fd5fef66bb
SHA3 ce6148ade08ef9b829f83cb13b4c650d9d4a7012bfd1ab697a7870a05f4104f8
Preview

32766

Type RT_GROUP_CURSOR
Language English - United States
Codepage Latin 1 / Western European
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.01924
Detected Filetype Cursor file
MD5 dcaa3c032fe97281b125d0d8f677c219
SHA1 58fe36409f932549e2f101515abee7a40cf47b2c
SHA256 6e1e7738a1b6373d8829f817915822ef415a1727bb5bb7cfe809e31b3c143ac5
SHA3 02ef292e1b4a70e439e362af6b4fa213e3816ade45222b78dabab712b6afba54
Preview

32767

Type RT_GROUP_CURSOR
Language English - United States
Codepage Latin 1 / Western European
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.01924
Detected Filetype Cursor file
MD5 a95c7c78d0a0b30b87e3c4976e473508
SHA1 b19f3999f1b302a2d28977cb18a3416c918d486c
SHA256 326c048595bbc72e3f989cb3b95fbf09dc83739ced3cb13eb6f03336f95d74f1
SHA3 8157b4e6afa7ed2e2ffc174d655bec9fb81db609e4c5864faa5ead931ff60689
Preview

MAINICON

Type RT_GROUP_ICON
Language English - United States
Codepage Latin 1 / Western European
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.0815
Detected Filetype Icon file
MD5 649fcbbdae0be598e22b8aff3aef708b
SHA1 b60e2630b811eb69a0584983b00f082eff515e58
SHA256 7fc6e497c94ee05815d5a0aa398094cd4a27249ec64f7dc5bef338596562ccb3
SHA3 dcbb364d3b99fb20db2a273acab69111d3c1fba9ff2af193aaec11d7026713a4

Z_GROUPICON

Type RT_GROUP_ICON
Language English - United States
Codepage Latin 1 / Western European
Size 0x30
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.59109
Detected Filetype Icon file
MD5 385cc21eaf20afcff5b3d979058aa923
SHA1 16535d9e11e3895a35d68f635b585c0cfb5e106e
SHA256 c58998b93f811c11c2d058d80cbbf38a68e5bbdc603db6d7080535ffaade94c7
SHA3 15e80be7cbd3a21026669102e727c4d2407216897a50b23e22a917c7d5e42dbe

1 (#2)

Type RT_VERSION
Language English - United States
Codepage Latin 1 / Western European
Size 0x514
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.85634
MD5 2a2ae6d43499811dbf0058ea4fb23b45
SHA1 8e25912b4831214dcc60823828a4cae24b977eb9
SHA256 bf50aa56d72401fffd7e022ac9b2ca6d36e5d52e6ee06315d2b9fa31cdcce135
SHA3 94ab39bcd09fa9dca29dd4cbd1e673bd3463d2587dea868aa4b4190960ff7b57

1 (#3)

Type RT_MANIFEST
Language English - United States
Codepage Latin 1 / Western European
Size 0x7a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.19236
MD5 44ebd323d850f47e3767f1a9c1e78d7a
SHA1 c8a5269dfccb1d75fbd291d594d8af8b4058b4bc
SHA256 5b7e2d01e742ba2eebeffb94fa98154542180fe721c73dc573e0abc840e4eb03
SHA3 5ec674311c810d44c867649470d894a4bcce84d3d0c47a51dbb7754b12654e2d

String Table contents

The chunks must be compatible to be assigned.
This "Portable Network Graphics" image is invalid because the decoder found an unexpected end of the file.
This "Portable Network Graphics" image contains no data.
The program tried to add a existent critical chunk to the current image which is not allowed.
It's not allowed to add a new chunk because the current image is invalid.
The png image could not be loaded from the resource ID.
Some operation could not be performed because the system is out of resources. Close some windows and try again.
Setting bit transparency color is not allowed for png images containing alpha value for each pixel (COLOR_RGBALPHA and COLOR_GRAYSCALEALPHA)
This operation is not valid because the current image contains no valid header.
The new size provided for image resizing is invalid.
The "Portable Network Graphics" could not be created because invalid image type parameters have being provided.
The "Portable Network Graphics" image could not be loaded because it uses an invalid image bit depth.
Nil interface
Unknown method
Expected return address at stack base
This "Portable Network Graphics" image is not valid because it contains invalid pieces of data (crc error)
The "Portable Network Graphics" image could not be loaded because one of its main piece of data (ihdr) might be corrupted
This "Portable Network Graphics" image is invalid because it has missing image parts.
Could not decompress the image because it contains invalid compressed data.
Description:
The "Portable Network Graphics" image contains an invalid palette.
The file being read is not a valid "Portable Network Graphics" image because it contains an invalid header. This file may be corrupted, try obtaining it again
This "Portable Network Graphics" image is not supported or it might be invalid.
(IHDR chunk is not the first)
This "Portable Network Graphics" image is not supported because either its width or height exceeds the maximum size of 65535 pixels.
There is no such palette entry.
This "Portable Network Graphics" image contains an unknown critical part which could not be decoded.
This "Portable Network Graphics" image is encoded with an unknown compression scheme which could not be decoded.
This "Portable Network Graphics" image uses an unknown interlace scheme which could not be decoded.
This "Portable Network Graphics" image uses an unknown color type which could not be decoded.
Out of Record Fields Range
Null Pointer Exception
Null variant error
Out Of Memory
Interface not supported
Unknown error
Invalid array
Unknown procedure
Not enough parameters
Invalid parameter
Too many parameters
Out of string range
Cannot cast an interface
Cannot cast an object
Capacity < Length
Can only remove last item from stack
Invalid Type
Internal error
Invalid Header
Invalid Opcode
Invalid Opcode Parameter
no Main Proc
Out of Global Vars range
Out of Proc Range
Out Of Range
Out Of Stack Range
Type Mismatch
Unexpected End Of File
Version error
divide by Zero
Math error
Could not call proc
Error adding header: (%d) %s
Error removing header: (%d) %s
Error reading data: (%d) %s
Error setting timeout for the request: (%d) %s
Error opening certificate file: (%d) %s
Certificate is not found in file: (%d) %s
Pair of extension and mime type already exists
Mime type cannot be empty
Value name cannot be empty
Quality weight is out of range
Invalid float
Unknown Identifier
Exception: %s
[Invalid]
No Error
Cannot Import %s
Parameter "%s" not found
Invalid relative URL path: "%s"
Maximum number of redirections (%d) exceeded
Error getting Server Certificate
Server Certificate Invalid or not present
Server Certificate not accepted
Empty certificate list
Unspecified certificate from client
Client rejected the certificate
Execution of request terminated with unknown error
Error querying headers: (%d) %s
Error obtaining session handle
Error sending data: (%d) %s
Error receiving data: (%d) %s
Error connecting to server: %s
Error opening request: (%d) %s
Cannot call BeginInvoke on a control with no parent or window handle
CardPanel card index is out of range
CardPanel.ActiveCard cannot be nil
OLE error %.8x
Method '%s' not supported by automation object
Variant does not reference an automation object
Dispatch methods do not support more than 64 parameters
Scheme "%s" already registered for %s
Scheme "%s" is not registered
Credential without user and password
Platform-dependant function not implemented
Scheme-dependant function not implemented
Method already assigned
URL already assigned
Parameter index (%d) out of range (%d..%d)
Invalid URL: "%s"
Caption cannot be empty
Unable to load style '%s'
Unable to load styles: %s
Style '%s' already registered
Style class '%s' already registered
Style '%s' not found
Style class '%s' not found
Invalid style handle
Invalid style format
Class '%s' is already registered for '%s'
Class '%s' is not registered for '%s'
%s parameter cannot be nil
Feature not supported by this style
Style '%s' is not registered
Cannot unregister the system style
Style not registered
Error removing control from dock tree
- Dock zone not found
- Dock zone has no control
Error loading dock zone from the stream. Expecting version %d, but found %d.
Length of value array must be >= length of prompt array
Prompt array must not be empty
&Username
&Password
&Domain
Login
Error setting %s.Count
Listbox (%s) style must be virtual in order to set Count
Cannot remove shell notification icon
%s requires Windows Vista or later
Button%d
RadioButton%d
Down
Ins
Del
Shift+
Ctrl+
Alt+
Value must be between %d and %d
All
Unable to insert a line
Clipboard does not support Icons
Cannot open clipboard: %s
Text exceeds memo capacity
Operation not supported on selected printer
There is no default printer currently selected
Menu '%s' is already being used by another form
Docked control must have a name
&All
N&o to All
Yes to &All
&Close
BkSp
Tab
Esc
Enter
Space
PgUp
PgDn
End
Home
Left
Up
Right
Enhanced Metafiles
Icons
Bitmaps
TIFF Images
Warning
Error
Information
Confirm
&Yes
&No
OK
Cancel
&Help
&Abort
&Retry
&Ignore
Menu index out of range
Menu inserted twice
Sub-menu is not in menu
Not enough timers available
Printer is not currently printing
Printing in progress
Printer index out of range
Printer selected is not valid
%s on %s
GroupIndex cannot be less than a previous menu item's GroupIndex
Cannot create form. No MDI forms are currently active
Can only modify an image if it contains a bitmap
A control cannot have itself as its parent
Control '%s' is used on a not main thread
Cannot drag a form
Metafiles
Unable to Replace Image
Unable to Insert Image
Invalid ImageList Index
Failed to read ImageList data from stream
Failed to write ImageList data to stream
Error creating window device context
Error creating window class
Cannot focus a disabled or invisible window
Control '%s' has no parent window
. Path:
%s
Parent given is not a parent of '%s'
Cannot hide an MDI Child Form
Cannot change Visible in OnShow or OnHide
Cannot make a visible window modal
Scrollbar property out of range
%s property out of range
Icon image is not valid
Metafile is not valid
Invalid pixel format
Invalid image
Scan line index out of range
Cannot change the size of an icon
Cannot change the size of a WIC Image
Unknown picture file extension (.%s)
Unsupported clipboard format
Unsupported stream format
Out of system resources
Canvas does not allow drawing
Text format flag '%s' not supported
Invalid image frame index %d: there are %d frames (0-%d)
Invalid image size
Invalid ImageList
No single cast observer with ID %d was added to the observer collection
No multi cast observer with ID %d was added to the observer collection
Observer is not available
MD5: Cannot update a finalized hash
SHA1: Cannot update a finalized hash
SHA2: Cannot update a finalized hash
Error decoding URL style (%%XX) encoded string at position %d
Invalid URL encoded character (%s) at position %d
Cannot construct an ITask in this manner
At least one task in array nil
Cannot start a task that has already completed
One or more tasks were cancelled
One or more errors occurred
Must wait on at least one event
Cannot call BeginInvoke on a TComponent in the process of destruction
Bitmap image is not valid
Windows XP
Windows Server 2003
Windows Server 2003 R2
Windows Server 2012
Windows Server 2012 R2
Windows Server 2016
Windows Server 2019
Windows Server 2022
Windows 8
Windows 8.1
Windows 10
Windows 11
Cannot create instance of class %s
Observer is not supported
Cannot have multiple single cast observers added to the observers collection
The object does not implement the observer interface
Type '%s' is not declared in the interface section of a unit
VAR and OUT arguments must match parameter type exactly
Property '%s' is read-only
Property '%s' is write-only
RTTI objects cannot be manually destroyed by application code
Specified Login Credential Service not found
%s (Version %d.%d, Build %d, %5:s)
%s Service Pack %4:d (Version %1:d.%2:d, Build %3:d, %5:s)
32-bit Edition
64-bit Edition
Windows
Windows Vista
Windows Server 2008
Windows 7
Windows Server 2008 R2
Windows 2000
Invalid Timespan format
Timespan element too long
No context-sensitive help installed
No help found for context %d
Unable to open Index
Unable to open Search
Unable to find a Table of Contents
No topic-based help system installed
No help found for %s
Argument out of range
Argument must not be nil
Unbalanced stack or queue operation
Item not found
Duplicates not allowed
Insufficient RTTI available to support this operation
Parameter count mismatch
Length of Strings and Objects arrays must be equal
Source and Destination arrays must not be the same
Class %s is not intended to be constructed
Invalid Timeout value: %s
SpinCount out of range. Must be between 0 and %d
Invalid Reset Count: %d
Invalid Count: %d
Invalid Decrement Count: %d
Invalid Increment Count: %d
Decrement amount will cause invalid results: Count: %d, CurCount: %d
Count already max: Amount: %d, CurCount: %d
Countdown already reached zero (0)
Timespan too long
The duration cannot be returned because the absolute value exceeds the value of TTimeSpan.MaxValue
Value cannot be NaN
Negating the minimum value of a Timespan is invalid
Stream write error
Thread creation error: %s
Thread Error: %s (%d)
Cannot terminate an externally created thread
Cannot wait for an externally created thread
Cannot call Start on a running or suspended thread
Cannot call CheckTerminated on an externally created thread
Cannot call SetReturnValue on an externally create thread
Parameter %s cannot be nil
Parameter %s cannot be a negative value
Input buffer exceeded for %s = %d, %s = %d
Invalid characters in path
?
The given "%s" local time is invalid (situated within the missing period prior to DST).
No help viewer that supports filters
Invalid argument
List index out of bounds (%d)
. %s range is 0..%d
. %s is empty
Out of memory while expanding memory stream
%s has not been registered as a COM class
Error reading %s%s%s: %s
Stream read error
Property is read-only
Failed to create key %s
Failed to get data for '%s'
Failed to set data for '%s'
Resource %s not found
%s.Seek not implemented
Operation not allowed on sorted list
%s not in a class registration group
Property %s does not exist
Class %s not found
A class named %s already exists
List does not allow duplicates ($0%x)
A component named %s already exists
String list does not allow duplicates
Cannot create file "%s". %s
Cannot open file "%s". %s
Invalid stream format
'%s' is an invalid mask at (%d)
''%s'' is not a valid component name
Invalid property value
Invalid property path
Invalid property value
Invalid data type for '%s'
List capacity out of bounds (%d)
List count out of bounds (%d)
Invalid destination array
Character index out of bounds (%d)
Start index out of bounds (%d)
Invalid count (%d)
Invalid destination index (%d)
Invalid code page
Invalid encoding name
No mapping for the Unicode character exists in the target multi-byte code page
Invalid StringBaseIndex
Operation Cancelled
Ancestor for '%s' not found
Cannot assign a %s to a %s
Bits index out of range
Can't write to a read-only resource stream
Can't write to a read-only aggregate stream
CheckSynchronize called from thread $%x, which is NOT the main thread
December
Sun
Mon
Tue
Wed
Thu
Fri
Sat
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
Invalid source array
Aug
Sep
Oct
Nov
Dec
January
February
March
April
May
June
July
August
September
October
November
Monitor support function not initialized
%d exception(s):
Feature not implemented
Method called on disposed object
%s (%s, line %d)
Abstract Error
Access violation at address %p in module '%s' (offset %x). %s of address %p
System Error. Code: %d.
%s%s
A call to an OS function failed
Jan
Feb
Mar
Apr
May
Jun
Jul
Custom variant type (%s%.4x) is out of range
Custom variant type (%s%.4x) already used by %s
Custom variant type (%s%.4x) is not usable
Too many custom variant types have been registered
Could not convert variant of type (%s) into type (%s)
Overflow while converting variant of type (%s) into type (%s)
Variant overflow
Invalid argument
Invalid variant type
Operation not supported
Unexpected variant error
External exception %x
Assertion failed
Interface not supported
Exception in safecall method
Object lock not owned
Exception %s in module %s at %p.
%s%s
Application Error
Format '%s' invalid or incompatible with argument
No argument for format '%s'
Variant method calls not supported
Read
Write
Execution
Invalid access
Error creating variant or safe array
Variant or safe array index out of bounds
Variant or safe array is locked
Invalid variant type conversion
Invalid variant operation
Invalid NULL variant operation
Invalid variant operation (%s%.8x)
%s
Invalid numeric input
Division by zero
Range check error
Integer overflow
Invalid floating point operation
Floating point division by zero
Floating point overflow
Floating point underflow
Invalid pointer operation
Invalid class typecast
Access violation at address %p. %s of address %p
Access violation
Stack overflow
Control-C hit
Privileged instruction
Operation aborted
<unknown>
'%s' is not a valid integer value
'%s' is not a valid integer value for %s type
'%s' is not a valid date and time
'%d.%d' is not a valid timestamp
'%s' is not a valid GUID value
Invalid argument to time encode
Invalid argument to date encode
Out of memory
I/O error %d
File not found
Invalid filename
Too many open files
File access denied
Read beyond end of file
Disk full

Version Info

Signature 0xfeef04bd
StructVersion 0x10000
FileVersion 51.1054.0.0
ProductVersion 4.0.2.0
FileFlags (EMPTY)
FileOs VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
FileType VFT_APP
Language UNKNOWN
FileDescription Setup/Uninstall
FileVersion (#2) 51.1054.0.0
Comments This installation was built with Inno Setup.
CompanyName
LegalCopyright ©2026 Softonic--International (SA)
OriginalFileName
ProductName Softonic--International (SA)
ProductVersion (#2) 4.0.2.0
Resource LangID English - United States

TLS Callbacks

StartAddressOfRawData 0x8eb000
EndAddressOfRawData 0x8eb05c
AddressOfIndex 0x8ccc30
AddressOfCallbacks 0x8ec010
SizeOfZeroFill 0
Characteristics IMAGE_SCN_TYPE_REG
Callbacks (EMPTY)

Load Configuration

RICH Header

Errors

Leave a comment

No comments yet.