52a9c8bc5267f7bd41793fe938262cea

Summary

Architecture IMAGE_FILE_MACHINE_I386
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date 2016-Apr-02 03:20:09
Detected languages English - United States
CompanyName Moonware Studios
FileDescription webcamXP 5 Free
FileVersion 5.9.8.7
LegalCopyright © 2016 Moonware Studios

Plugin Output

Info Interesting strings found in the binary: Contains domain names:
  • http://nsis.sf.net
  • http://nsis.sf.net/NSIS_Error
  • nsis.sf.net
Suspicious The PE is an NSIS installer Unusual section name found: .ndata
Suspicious The PE contains functions most legitimate programs don't use. [!] The program may be hiding some of its imports:
  • GetProcAddress
  • LoadLibraryExA
Can access the registry:
  • RegDeleteValueA
  • RegOpenKeyExA
  • RegDeleteKeyA
  • RegEnumValueA
  • RegCloseKey
  • RegCreateKeyExA
  • RegSetValueExA
  • RegQueryValueExA
  • RegEnumKeyA
Possibly launches other programs:
  • CreateProcessA
  • ShellExecuteA
Can create temporary files:
  • CreateFileA
  • GetTempPathA
Changes object ACLs:
  • SetFileSecurityA
Can shut the system down or lock the screen:
  • ExitWindowsEx
Info The PE is digitally signed. Signer: Steve Niquille
Issuer: DigiCert SHA2 Assured ID Code Signing CA
Suspicious VirusTotal score: 1/67 (Scanned on 2020-09-20 02:03:43) VBA32: CIL.HeapOverride.Heur

Hashes

MD5 52a9c8bc5267f7bd41793fe938262cea
SHA1 9242f3409ca7ca8d851558bb679c21513466155d
SHA256 ee0fb64133e8fdd1f2b05f25f2475555dc8a4d94113750589b5ff8a196744e60
SHA3 1f8f95f31f663fb78db5f39f00e58d703684731a98f903bc8f0efa10de2b5042
SSDeep 393216:rJB9f4xXJfiJFgoUGyWoT4rorL81/tJKqW:pf6qbgoUW+Bot9W
Imports Hash 607dd75f08961cd12b1f6ac7fd260c59

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0xc8

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_I386
NumberofSections 5
TimeDateStamp 2016-Apr-02 03:20:09
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xe0
Characteristics IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LINE_NUMS_STRIPPED
IMAGE_FILE_LOCAL_SYMS_STRIPPED
IMAGE_FILE_RELOCS_STRIPPED

Image Optional Header

Magic PE32
LinkerVersion 6.0
SizeOfCode 0x5e00
SizeOfInitializedData 0x1d600
SizeOfUninitializedData 0x400
AddressOfEntryPoint 0x0000326C (Section: .text)
BaseOfCode 0x1000
BaseOfData 0x7000
ImageBase 0x400000
SectionAlignment 0x1000
FileAlignment 0x200
OperatingSystemVersion 4.0
ImageVersion 6.0
SubsystemVersion 4.0
Win32VersionValue 0
SizeOfImage 0x61000
SizeOfHeaders 0x400
Checksum 0xeb9a9e
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x100000
SizeofStackCommit 0x1000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 51e2544a6971f687f7a1241f613014c1
SHA1 1dc9b7d6bb158fee5b9f3b28181b389987a1c350
SHA256 3f5f7b309092988af8c9e92567926a5e523cad3af0051c20bdf29aad00a33510
SHA3 ead501114661f03aac31abc76b71034653f300508cc4ce3d8a5490f65fbe4151
VirtualSize 0x5c74
VirtualAddress 0x1000
SizeOfRawData 0x5e00
PointerToRawData 0x400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.41039

.rdata

MD5 4c84e530bf8db37146334e6c487170bf
SHA1 076dcc532f1c101e21550e104a20a7f8e4c30781
SHA256 3575075347d3cfff06e9f5c296d8c71c30f2fbcc62228eef437e236010397471
SHA3 0eec1a1d948468a2f710745acc56943954e864ce6901ed769f2e04c3dbddd8ea
VirtualSize 0x1196
VirtualAddress 0x7000
SizeOfRawData 0x1200
PointerToRawData 0x6200
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 5.20374

.data

MD5 75d996f724e5e900c022f56b3df3ae1b
SHA1 7b247661a46a3527556a9637ece6c600bf6777ec
SHA256 4a63c7ca63538039a0213c12377fc6b0d36530bb0eecc9d4d24728c851334352
SHA3 9e187facab9fe47c274f1195debae1114b0f20015ddbfe91134d735bc745713a
VirtualSize 0x1b058
VirtualAddress 0x9000
SizeOfRawData 0x600
PointerToRawData 0x7400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 4.13053

.ndata

MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA3 a7ffc6f8bf1ed76651c14756a061d662f580ff4de43b49fa82d80a4b80f8434a
VirtualSize 0x17000
VirtualAddress 0x25000
SizeOfRawData 0
PointerToRawData 0
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_UNINITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE

.rsrc

MD5 c8787ad8187cb07189fc9164cd321426
SHA1 5f3f444776712aeb6c0618d9ff0713774921892d
SHA256 ab0ea4db625db4ae0ed203f3e5fc3f07a5c9d7b45c04f04ecb94128649942897
SHA3 7ccf470c951fa910dbea5f38d2bdc53e79f4cc6f0b931548549abec98a2f59fb
VirtualSize 0x243b0
VirtualAddress 0x3c000
SizeOfRawData 0x24400
PointerToRawData 0x7a00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 7.63433

Imports

KERNEL32.dll GetTickCount
GetShortPathNameA
GetFullPathNameA
MoveFileA
SetCurrentDirectoryA
GetFileAttributesA
SetFileAttributesA
CompareFileTime
SearchPathA
CreateFileA
GetFileSize
GetModuleFileNameA
GetCurrentProcess
CopyFileA
ExitProcess
GetWindowsDirectoryA
Sleep
lstrcmpiA
lstrlenA
GetVersion
SetErrorMode
lstrcpynA
GetDiskFreeSpaceA
GlobalUnlock
GlobalLock
CreateThread
GetLastError
CreateDirectoryA
CreateProcessA
RemoveDirectoryA
GetTempFileNameA
lstrcatA
GetSystemDirectoryA
WaitForSingleObject
SetFileTime
CloseHandle
GlobalFree
lstrcmpA
ExpandEnvironmentStringsA
GetExitCodeProcess
GlobalAlloc
GetCommandLineA
GetTempPathA
GetProcAddress
FindFirstFileA
FindNextFileA
DeleteFileA
SetFilePointer
ReadFile
FindClose
GetPrivateProfileStringA
WritePrivateProfileStringA
WriteFile
MulDiv
MultiByteToWideChar
LoadLibraryExA
GetModuleHandleA
FreeLibrary
USER32.dll SetCursor
GetWindowRect
EnableMenuItem
GetSystemMenu
SetClassLongA
IsWindowEnabled
SetWindowPos
GetSysColor
EndDialog
ScreenToClient
LoadCursorA
CheckDlgButton
GetMessagePos
LoadBitmapA
CallWindowProcA
IsWindowVisible
CloseClipboard
SetForegroundWindow
GetWindowLongA
RegisterClassA
TrackPopupMenu
AppendMenuA
CreatePopupMenu
GetSystemMetrics
SetDlgItemTextA
GetDlgItemTextA
MessageBoxIndirectA
CharPrevA
DispatchMessageA
PeekMessageA
GetDC
EnableWindow
InvalidateRect
SendMessageA
DefWindowProcA
BeginPaint
GetClientRect
FillRect
DrawTextA
SystemParametersInfoA
CreateWindowExA
GetClassInfoA
DialogBoxParamA
CharNextA
ExitWindowsEx
SetTimer
PostQuitMessage
SetWindowLongA
SendMessageTimeoutA
LoadImageA
wsprintfA
GetDlgItem
FindWindowExA
IsWindow
SetClipboardData
EmptyClipboard
OpenClipboard
EndPaint
CreateDialogParamA
DestroyWindow
ShowWindow
SetWindowTextA
GDI32.dll SelectObject
SetBkMode
CreateFontIndirectA
SetTextColor
DeleteObject
GetDeviceCaps
CreateBrushIndirect
SetBkColor
SHELL32.dll SHGetSpecialFolderLocation
SHGetPathFromIDListA
SHBrowseForFolderA
SHGetFileInfoA
SHFileOperationA
ShellExecuteA
ADVAPI32.dll RegDeleteValueA
SetFileSecurityA
RegOpenKeyExA
RegDeleteKeyA
RegEnumValueA
RegCloseKey
RegCreateKeyExA
RegSetValueExA
RegQueryValueExA
RegEnumKeyA
COMCTL32.dll ImageList_AddMasked
ImageList_Destroy
ImageList_Create
#17
ole32.dll OleUninitialize
OleInitialize
CoTaskMemFree
CoCreateInstance

Delayed Imports

110

Type RT_BITMAP
Language English - United States
Codepage UNKNOWN
Size 0x666
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.82633
MD5 b6bf70baab40fe438feff063bfb9ff6f
SHA1 7d4659d43e08d368ddacd31945872461c0b06253
SHA256 0e90a9e4b8f3a5bf990e8aadfd8096ad7aeaf1a4e032ac7b6395ce191d61c142
SHA3 cab98fabaf20118d9a8a4d2bcff4383a7291a0e04ff11a8690e71eed619c75e7
Preview

1

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0xc66c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.98791
Detected Filetype PNG graphic file
MD5 031aa51066b8e35245110465deeaa756
SHA1 3244e78c5b6f9961d5b95251cae45f2b446a9df4
SHA256 95abd3c15a5e1d3884ebded6dea3109c2190f41ccbc8217186b0e4040123136b
SHA3 3118475a9cd54800798907345c333a8f250e1a10a3c71d0c9a44ef5ed539c447

2

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0xaa91
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.98001
Detected Filetype PNG graphic file
MD5 65da293ceea376b549126425ad86d39e
SHA1 c17734af11074f3ce184b720dbd0aa30ada1d669
SHA256 be0bd747015bd443258ed0baa1a5d4e69a172c5fb7d20a9d7cd99201c768926a
SHA3 4917d8abf8894237190e58333c406dd9f9d983af835cdec90fc78c66d6661037

3

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x574f
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.93383
Detected Filetype PNG graphic file
MD5 0099dbaadd6149622c13dc2dcfa3f56a
SHA1 ea3012f83078e3da985d24cd0c35bd62e6dd80db
SHA256 a9ae722edc81318eaeff6727bbafc5489d6c1c7f604ee961866e3c478f0aec36
SHA3 0e7d6691ceb8e3b721a2c8c54faa15dc9dee1646cde61004dd19cb3be009975f

4

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x25a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.21708
MD5 daf8c65a9f4db2e5719851fc25e9c288
SHA1 876bf2cd2afc091a6b2c820116800c9301de8059
SHA256 b0360a5dd1ca913a9470ee96bddbc3e3f1d6d2e16f13894a2b8ee56f65ae911d
SHA3 7a898f083cc216329934094352faa8f8ec9e24cc23d3e91ba2a88f4ae9223d8f

5

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x10a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.25554
MD5 1c8c6c75ac534ae90605a164e3db6bc2
SHA1 3320892402000271480388a4476339b7c9bfbf46
SHA256 2f2e1e7586bfc9f429a40d31e397d2c9644fe8a1b1c04add32f33caa5c338846
SHA3 56ebfb76a481ed90d6d963cb03067b45017eac13c50b69fe5316d03a511cbb0d

6

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0xea8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.2626
MD5 bee2ae33a59b6444852169176e5aa170
SHA1 4e111a50dfe46c2ad5e0b22fcf152e1ea14b9585
SHA256 b5d7d424396507e41e818e937ac3cab917866d7600c366beb68c765e1a9b9a9e
SHA3 4dfe36004a2ef8453b0b17c4a30a528709e61cd4bff12535366296d81e71cd4c

7

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x8a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.79554
MD5 2db9e4906d54ec4d6c8f0a7ee54c8d20
SHA1 91772a13adc56664038c15af47be4caac128e3d8
SHA256 6db34cef28621802ac8e4d449f050dba9b55f94d027c8999bb8bdfe06a8d1638
SHA3 1229eb3926614d07d70d3ffe57f952d2eb2f75d323e870580bdb590ef1aad998

8

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x668
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.50328
MD5 dc3b98e2aa100e832d00207b59ad08f4
SHA1 fe55ecaab03fa37596706eed3cc830fb36117c3c
SHA256 7ce30d51c21b61c1341543e41dbc63e64e0e59812a0b7a1785347b64dd6798c4
SHA3 435aae1e491adae1f97e4bb28785393de05bdf3a0a11ee79f1404716ddf707bd

9

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x568
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.72497
MD5 31d53ecbc2eca87bc6d47296f9624f1f
SHA1 6dcdfc0460f075074d9145a3791b41d24af3f990
SHA256 e356ab47870100824353933c7f3bd0bcc9bd79ae2b41383c8b33b33e7cf0eb15
SHA3 9f33086d6fac21c89b58d902eca2b0d3f777da861c9c2d83b4122e41f9d1db2b

10

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x468
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.56895
MD5 254f05469cb88c031a835930b4b4ee1f
SHA1 80e066321c11a77b1aeb808c23e1c4ea1bba10ac
SHA256 3aecdb34e61dd81c041648ec47ce7e2d7647e8a85e5e145c513c40ae44477e05
SHA3 c228cd819a2ca3b9841c2f80bd12ddb64dd8e334ae5e84a2e7c95ff59feaf4d4

11

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x2e8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.71806
MD5 d73db4e26c174c7c91bde66338ea222d
SHA1 702b412bd3db0115ca816de4bbf4122c382f0e07
SHA256 23fc04a3d10afc636b5b51f81b80ac6ce4bf2c8f3394fa951569461101ce567a
SHA3 0996db1cd8353cc4ef6dc21ef4c8b20d726e454f2db7e6527cb4823a1ea0a2cc

12

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x128
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.16304
MD5 577f6ba7e64b13c9147166be05e40f59
SHA1 86794b2183c1726a5ed6783341d2cb9f930b240d
SHA256 24bc2ace7416f1ab53cb6cbc9b7d750e190dcb5a240720eaeb7ba074b95230ae
SHA3 d3c1b191ff58c9b0662164f40ca04a1c97f0d96ddbd4adedbd34526adca16a40

102

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0xb4
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.71813
MD5 7add80697358fcc3e63354d269ea5ac9
SHA1 72c0a1363b9b4fee0a4acb42b31cd9b5e0664c4c
SHA256 b29c7a1301ddb0e896faf944d8ea8f4e57ff4f3d5fc3e5dc5bf3e64ed6be2fdd
SHA3 40a0e6b6b579b110550a4c3304eb33293a293d9aa288b02b11750143b52423fe

103

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0x120
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.56193
MD5 db6dd0434da4d7cac564518725167e09
SHA1 a65a1367d7cd96450f089a8f8108239bbcea9f5b
SHA256 c50631fc1f8425a95fd1edcc8e730d339e193a38f18d42372c32847a5ad2c016
SHA3 4e3be5455c51e1cb04836e318cb69ecdffd2deadd0f338d4bc985d8f5ca653ff

104

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0x158
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.67866
MD5 693e5fde9e50f9d2b6c4795f5b47f576
SHA1 502c331f05e8ca78ad66dab64fd17a25df2bfbd0
SHA256 ed2f2d936eb10234e9fe3c6f4e7a8172c05281796fdffcd21eb435ab89c656f5
SHA3 372550d961df1a704067fb4e07d96996b047d6973033d425fed1eb611d48753f

105

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0x200
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.67385
MD5 d1a92272fbd597e1aa19021483110d5a
SHA1 9f75072682b37c6c52361d8c988ebd06dd003f63
SHA256 15663576584c947d634dab9848defcc7d8f05eb0b7e7c6d52d81eca695fc7a6e
SHA3 704756797695ae34f6fae500852bca70e5066a1d1993348fe40ccf626235d0d6

106

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0xf8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.91148
MD5 fa83652660409e90e0db9731ad2adb17
SHA1 0a8f0af67723c87fe26ccf676b8e19ec6357b4dc
SHA256 4a55bd714f5d50cd8eabba10e57f0618f1842717dcfa582d73a917b1933cd1d4
SHA3 5b3e1cb25be7a2dbae4f08f0d4794ed23dbd6ea37a3f9702be12dba588f42a7b

107

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0xa0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.52183
MD5 6ffba239dcfcab2080195f23947b70aa
SHA1 bcda1ca8ee9bb9878bde83aa06c670bb5a4d5843
SHA256 a7e5ea849cb343e9b58de221aeb25c9dd4a3748070bfba879a30c4265fc39023
SHA3 a75544b4c3fcbcb32fe4e02d1a631e045b2e58516aa1065bb96cce681aea7030

111

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0xee
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.92787
MD5 5dfa289639a3bcc0497da8db163f01fe
SHA1 6e2c6ea1e2594b66f563fb589276642c127e875f
SHA256 18466509968c3c0bf92ba410fea075def2b257a5a799a113cbc60f13e75f4b01
SHA3 85abdc8c431d91c72f3595a39881c96637ead09a0278d3cec0c1c9a8d873f031

103 (#2)

Type RT_GROUP_ICON
Language English - United States
Codepage UNKNOWN
Size 0xae
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.95198
Detected Filetype Icon file
MD5 74f3b5025f5786162f8f44400e8ac0c7
SHA1 02f2e5c73d13d96a2561579609029ddec16c6f02
SHA256 363feb1109694df836077f2156d21884a154cb4321524c69883948a194095f09
SHA3 3cc4e3c520241473c54a45c9e945ee031e45f7434d64f5a4e5ecc502a6e42c20

1 (#2)

Type RT_VERSION
Language UNKNOWN
Codepage UNKNOWN
Size 0x1ec
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.32749
MD5 94ed7fc0d11da4982fa37d25e9c3639e
SHA1 1090be02cb3ad8e66287e9006a51adb4c8fbabf9
SHA256 9d1541a47adf2858c01588ca0f4825362ac4f9e51889bc5c65c2253747e78af3
SHA3 c0b61d2c6bd1ed61ca5d09406ceaed9263fc86a428f614d095c601899ebd318e

1 (#3)

Type RT_MANIFEST
Language English - United States
Codepage UNKNOWN
Size 0x3be
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.21417
MD5 9c3b88e938f953ecc735c511d7a8facc
SHA1 0d23fc04046aa1fea468a9007ec9909c44667045
SHA256 5ab55ea1740dfd7dbd3104bc63e3c22f2c7ced0ac1b58e0be2535573d55f8402
SHA3 01bc560ae60a565dc11168c900acbebeb190eb4fb21a944fdb6623690dca1999

Version Info

Signature 0xfeef04bd
StructVersion 0
FileVersion 5.9.8.7
ProductVersion 5.9.8.7
FileFlags (EMPTY)
FileOs VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
FileType VFT_APP
Language UNKNOWN
CompanyName Moonware Studios
FileDescription webcamXP 5 Free
FileVersion (#2) 5.9.8.7
LegalCopyright © 2016 Moonware Studios
Resource LangID UNKNOWN

TLS Callbacks

Load Configuration

RICH Header

XOR Key 0xd24651e9
Unmarked objects 0
C objects (VS2003 (.NET) build 4035) 2
Total imports 152
Imports (VS2003 (.NET) build 4035) 15
48 (9044) 10
Resource objects (VS98 SP6 cvtres build 1736) 1

Errors

[*] Warning: Section .ndata has a size of 0!
<-- -->