749378bc5a5e0cd2d350bb3ce7d0f994

Summary

Architecture IMAGE_FILE_MACHINE_I386
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date 2023-Jun-02 03:13:36
Detected languages Chinese - Taiwan
English - United States
Italian - Italy
FileDescription HP Flash Utility (3.55 Build 06021)
FileVersion 3.55
InternalName HPWINGUI
LegalCopyright Copyright (C) American Megatrends International LLC.
OriginalFilename HPWINGUI.exe
ProductName HPWINGUI
ProductVersion 3.55

Plugin Output

Info Matching compiler(s): Microsoft Visual C++ v6.0 DLL
Microsoft Visual C++ 6.0 - 8.0
MASM/TASM - sig1(h)
Suspicious Strings found in the binary may indicate undesirable behavior: Contains references to system / monitoring tools:
  • RUNDLL32.EXE
  • schtask
Accesses the WMI:
  • ROOT\CIMV2
  • ROOT\WMI
  • root\CIMV2
Contains domain names:
  • format.com
  • http://www.ami.com
  • www.ami.com
Info Cryptographic algorithms detected in the binary: Uses constants related to SHA1
Uses constants related to SHA256
Malicious The PE contains functions mostly used by malware. [!] The program may be hiding some of its imports:
  • LoadLibraryW
  • LoadLibraryExW
  • LoadLibraryA
  • GetProcAddress
Can access the registry:
  • RegSetValueExA
  • RegEnumKeyExA
  • RegEnumValueA
  • RegQueryValueA
  • RegEnumKeyA
  • RegDeleteValueA
  • RegDeleteKeyA
  • RegQueryValueExA
  • RegCreateKeyExA
  • RegCloseKey
  • RegOpenKeyExA
Possibly launches other programs:
  • ShellExecuteA
  • CreateProcessA
Can create temporary files:
  • CreateFileW
  • CreateFileA
  • GetTempPathA
Uses functions commonly found in keyloggers:
  • GetAsyncKeyState
  • GetForegroundWindow
  • MapVirtualKeyA
  • CallNextHookEx
Memory manipulation functions often used by packers:
  • VirtualAlloc
  • VirtualProtect
Functions related to the privilege level:
  • AdjustTokenPrivileges
  • OpenProcessToken
Interacts with services:
  • OpenServiceA
  • OpenSCManagerA
  • DeleteService
  • CreateServiceA
  • ControlService
Enumerates local disk drives:
  • GetDriveTypeW
  • GetVolumeInformationA
  • GetDriveTypeA
Can take screenshots:
  • GetDC
  • CreateCompatibleDC
  • BitBlt
Can shut the system down or lock the screen:
  • ExitWindowsEx
Suspicious The file contains overlay data. 11599904 bytes of data starting at offset 0x269c00.
The overlay data has an entropy of 7.99924 and is possibly compressed or encrypted.
Overlay data amounts for 82.0929% of the executable.
Safe VirusTotal score: 0/72 (Scanned on 2024-06-24 05:12:27) All the AVs think this file is safe.

Hashes

MD5 749378bc5a5e0cd2d350bb3ce7d0f994
SHA1 1b1016424828314e391b11da02e758ce1b8eeb0d
SHA256 24c6555092da19338cb6248559e7ee5d163061f60741485009a639f7e320cd72
SHA3 1dcbb43f27b9550659cdc4b7783eccea3e6d6bb6138d02fb4158ddc9602d6290
SSDeep 393216:rVIxFF/1m1xnuh8qD0P3JlTz3I1fKfZQG:rVIxjtYO8W0P3XTz48R
Imports Hash 346ed2cb0176bc5793747309467b59f8

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0x120

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_I386
NumberofSections 5
TimeDateStamp 2023-Jun-02 03:13:36
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xe0
Characteristics IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_EXECUTABLE_IMAGE

Image Optional Header

Magic PE32
LinkerVersion 12.0
SizeOfCode 0x1b0c00
SizeOfInitializedData 0xb8c00
SizeOfUninitializedData 0
AddressOfEntryPoint 0x001869D8 (Section: .text)
BaseOfCode 0x1000
BaseOfData 0x1b2000
ImageBase 0x400000
SectionAlignment 0x1000
FileAlignment 0x200
OperatingSystemVersion 6.0
ImageVersion 0.0
SubsystemVersion 6.0
Win32VersionValue 0
SizeOfImage 0x281000
SizeOfHeaders 0x400
Checksum 0x2750ce
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x100000
SizeofStackCommit 0x1000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 689e29f1a539db8279841d4d71e3599a
SHA1 0398e197370a6299a06b1baaf25ed496e3c29243
SHA256 bfdc21487cdba06c23312c69c5de815be9d9e6e3948c35a4e5f06026310f22bf
SHA3 44169d433261e777a0cfb66199b498cae3bbe710b8dbbecf8f899b0083c345d8
VirtualSize 0x1b0bdc
VirtualAddress 0x1000
SizeOfRawData 0x1b0c00
PointerToRawData 0x400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.57809

.rdata

MD5 3808d686b7d19f73a4fc9d577201b6a3
SHA1 c6d944ceb72dadcb5bbcea4f04dc0bbea0c1ee73
SHA256 bcdec461d32243539ce2d258c926a800c00bad0314b6f309d5584c07f9e064cf
SHA3 9374f05fd7c99f90aba6100d73a3ac08f0d8a6ad6078cbeffea3d82e01ed7641
VirtualSize 0x57b4c
VirtualAddress 0x1b2000
SizeOfRawData 0x57c00
PointerToRawData 0x1b1000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 5.32734

.data

MD5 a75a836828fcb82fb4705b4313fdafe5
SHA1 383fae6db2cf61f8eed5437197202843243dc958
SHA256 b0322e221abac6854fd5f2bc23ac41adedadb60c7d3c1acf324689bf7984aa4d
SHA3 01920acf9b79d03cb839199f64606aaec436ff4808d02e700e57a6d8b2dadf3f
VirtualSize 0x1bd28
VirtualAddress 0x20a000
SizeOfRawData 0x7200
PointerToRawData 0x208c00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 4.95786

.rsrc

MD5 fa51e22efefbc156ef69a1ab1699e5f9
SHA1 08b5518be0839ca409e167b292708683b79ee37c
SHA256 312b9d8f7b1d5bc3f07dbc94427ddb32b23e4c7620a9977fec69b0836ba66440
SHA3 9f9106fba55e7dd9c5ae4b6ebcbbb5c010190b9297d9015dc1205f08b75639e5
VirtualSize 0x36340
VirtualAddress 0x226000
SizeOfRawData 0x36400
PointerToRawData 0x20fe00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 4.83665

.reloc

MD5 84e17d1242fa58da733035b55366b268
SHA1 00b68076eb4695b4ab605dd67ad457d53f17d8ea
SHA256 e8b740d7f4b1e5492276c8b43b2ddb7f69449716c534d4b0aeb33d3cfa958e47
SHA3 b65da2bf571928bc365403fee74e76e151c9077fc53c6476ab6d435f61f819c0
VirtualSize 0x2391c
VirtualAddress 0x25d000
SizeOfRawData 0x23a00
PointerToRawData 0x246200
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy 6.58207

Imports

SHELL32.dll SHAppBarMessage
SHGetDesktopFolder
SHGetSpecialFolderLocation
DragFinish
DragQueryFileA
SHGetFileInfoA
SHGetFolderPathA
SHGetPathFromIDListA
SHBrowseForFolderA
ShellExecuteA
KERNEL32.dll FindResourceExW
RtlUnwind
IsDebuggerPresent
IsProcessorFeaturePresent
GetModuleHandleExW
AreFileApisANSI
GetSystemTimeAsFileTime
GetCommandLineA
GetSystemInfo
VirtualAlloc
VirtualQuery
ExitThread
HeapQueryInformation
SetStdHandle
GetFileType
GetConsoleCP
SearchPathA
UnhandledExceptionFilter
SetUnhandledExceptionFilter
TerminateProcess
GetStartupInfoW
GetStdHandle
GetUserDefaultLCID
SetFilePointerEx
ReadConsoleW
GetTimeZoneInformation
QueryPerformanceCounter
GetEnvironmentStringsW
FreeEnvironmentStringsW
GetDriveTypeW
GetStringTypeW
LCMapStringW
IsValidLocale
EnumSystemLocalesW
WriteConsoleW
OutputDebugStringW
GetCurrentDirectoryW
CreateFileW
SetEnvironmentVariableA
GetProfileIntA
GetTickCount
SetConsoleMode
ReadConsoleInputA
lstrlenA
IsValidCodePage
VirtualProtect
GetTempFileNameA
GetFileTime
GetFileSizeEx
GetFileAttributesExA
GetCPInfo
GetOEMCP
GetFileAttributesA
VerifyVersionInfoA
lstrcpyA
VerSetConditionMask
GetACP
lstrcmpiA
DuplicateHandle
UnlockFile
SetFilePointer
SetEndOfFile
LockFile
GetFullPathNameA
GetFileSize
FlushFileBuffers
GetUserDefaultUILanguage
GetSystemDefaultUILanguage
GetLocaleInfoW
CompareStringW
GlobalFlags
LocalReAlloc
LocalAlloc
GlobalHandle
GlobalReAlloc
TlsFree
TlsSetValue
TlsGetValue
TlsAlloc
InitializeCriticalSection
SetErrorMode
FileTimeToSystemTime
FindNextFileA
FindFirstFileA
FindClose
FileTimeToLocalFileTime
GlobalGetAtomNameA
GlobalFindAtomA
lstrcmpW
GetSystemDirectoryW
EncodePointer
InitializeCriticalSectionAndSpinCount
FindResourceA
LoadLibraryW
GetModuleFileNameW
FreeResource
OutputDebugStringA
ResumeThread
SetThreadPriority
GlobalAddAtomA
WritePrivateProfileStringA
GetPrivateProfileStringA
GetPrivateProfileIntA
GetModuleHandleW
CompareStringA
lstrcmpA
GlobalDeleteAtom
LoadLibraryExW
GetCurrentThreadId
GetCurrentThread
CopyFileA
FormatMessageA
MulDiv
GlobalFree
GlobalUnlock
GlobalLock
GlobalSize
GlobalAlloc
SetLastError
GetCurrentProcessId
MultiByteToWideChar
CreatePipe
RemoveDirectoryA
GetStartupInfoA
FindNextVolumeA
GetDiskFreeSpaceExA
FindFirstVolumeA
GetVolumePathNamesForVolumeNameA
CreateProcessA
SetVolumeMountPointA
GetVolumeInformationA
GetDriveTypeA
GetLogicalDrives
WaitForSingleObject
SetFirmwareEnvironmentVariableA
FindVolumeClose
SetVolumeLabelA
ExitProcess
DeleteCriticalSection
DecodePointer
LockResource
EnterCriticalSection
HeapSize
RaiseException
InitializeCriticalSectionEx
LeaveCriticalSection
SizeofResource
GetFirmwareEnvironmentVariableA
WideCharToMultiByte
GetProcessHeap
HeapFree
DeleteVolumeMountPointA
HeapAlloc
LoadResource
FindResourceW
HeapReAlloc
SetCurrentDirectoryA
GetSystemPowerStatus
GetSystemFirmwareTable
CreateNamedPipeA
WriteFile
ReadFile
LocalFree
CreateThread
GetWindowsDirectoryA
GetSystemDirectoryA
CreateFileA
DeviceIoControl
CloseHandle
SetConsoleCtrlHandler
GetTempPathA
LoadLibraryA
SetThreadExecutionState
GetProcAddress
GetModuleHandleA
GetModuleFileNameA
FreeLibrary
GetVersionExA
GetCurrentProcess
CreateMutexA
GetLastError
DeleteFileA
CreateDirectoryA
GetCurrentDirectoryA
Sleep
GetConsoleMode
USER32.dll GetWindowRgn
GetUpdateRect
IsClipboardFormatAvailable
TranslateMDISysAccel
DefMDIChildProcA
DefFrameProcA
DrawMenuBar
FrameRect
CharUpperBuffA
MapVirtualKeyExA
IsCharLowerA
PostThreadMessageA
GetComboBoxInfo
RegisterClipboardFormatA
ModifyMenuA
SetMenuDefaultItem
CopyIcon
GetDoubleClickTime
SetClassLongA
LockWindowUpdate
SetParent
SetRect
SetCursorPos
GetSystemMenu
LoadMenuW
IsZoomed
TrackMouseEvent
CopyAcceleratorTableA
DestroyAcceleratorTable
CreateAcceleratorTableA
LoadAcceleratorsW
ToAsciiEx
GetKeyboardState
GetKeyboardLayout
NotifyWinEvent
InvertRect
HideCaret
GetMenuDefaultItem
ReuseDDElParam
UnpackDDElParam
InsertMenuItemA
CreatePopupMenu
LoadMenuA
TranslateAcceleratorA
LoadAcceleratorsA
BringWindowToTop
GetMenuItemInfoA
MonitorFromPoint
EnableScrollBar
DestroyMenu
GetAsyncKeyState
UpdateLayeredWindow
IsMenu
UnionRect
SetWindowRgn
DrawFrameControl
DrawEdge
LoadImageW
DrawStateA
EmptyClipboard
SetClipboardData
CloseClipboard
OpenClipboard
EnumDisplayMonitors
SetLayeredWindowAttributes
IntersectRect
CharUpperA
LoadCursorW
WaitMessage
DeleteMenu
RealChildWindowFromPoint
GetSysColorBrush
IsDialogMessageA
SetWindowTextA
CheckDlgButton
GetDlgItemTextA
MoveWindow
ShowWindow
GetMonitorInfoA
DestroyCursor
WinHelpA
GetScrollInfo
SetScrollInfo
UnhookWindowsHookEx
GetWindow
GetTopWindow
GetClassNameA
GetClassLongA
SetWindowLongA
EqualRect
MapWindowPoints
AdjustWindowRectEx
GetWindowRect
GetWindowTextLengthA
GetWindowTextA
RemovePropA
GetPropA
SetPropA
ShowScrollBar
GetScrollRange
SetScrollRange
GetScrollPos
SetScrollPos
ScrollWindow
SetForegroundWindow
GetForegroundWindow
TrackPopupMenu
SetMenu
GetMenu
GetCapture
SetFocus
GetDlgCtrlID
EndDeferWindowPos
DeferWindowPos
BeginDeferWindowPos
SetWindowPlacement
GetWindowPlacement
SetWindowPos
IsChild
GetClassInfoExA
GetClassInfoA
RegisterClassA
CallWindowProcA
GetMessageTime
GetMessagePos
RegisterWindowMessageA
GetIconInfo
DrawIconEx
CopyImage
LoadImageA
DestroyIcon
LoadIconA
PtInRect
IsRectEmpty
OffsetRect
InflateRect
SetRectEmpty
DrawFocusRect
MessageBoxA
wsprintfA
ExitWindowsEx
SystemParametersInfoA
BlockInput
WindowFromPoint
InvalidateRect
ReleaseCapture
SetCapture
GetNextDlgGroupItem
FillRect
GetSysColor
ScreenToClient
ClientToScreen
EndPaint
BeginPaint
GetWindowDC
TabbedTextOutA
GrayStringA
DrawTextExA
DrawTextA
SendDlgItemMessageA
CopyRect
ReleaseDC
GetDC
MapVirtualKeyA
GetKeyNameTextA
SetActiveWindow
GetNextDlgTabItem
GetDlgItem
EndDialog
CreateDialogIndirectParamA
DestroyWindow
MapDialogRect
CreateMenu
MonitorFromWindow
SubtractRect
GetMessageA
TranslateMessage
DispatchMessageA
DefWindowProcA
RegisterClassExA
CreateWindowExA
UnregisterClassA
LoadCursorA
EnableWindow
UpdateWindow
GetSystemMetrics
PostMessageA
GetDesktopWindow
RedrawWindow
PeekMessageA
LoadIconW
SendMessageA
GetClientRect
DrawIcon
KillTimer
IsIconic
PostQuitMessage
SetTimer
SetCursor
IsWindowEnabled
GetWindowLongA
GetParent
GetWindowThreadProcessId
GetLastActivePopup
GetMenuStringA
GetMenuState
GetSubMenu
GetMenuItemID
GetMenuItemCount
InsertMenuA
AppendMenuA
RemoveMenu
GetFocus
CheckMenuItem
EnableMenuItem
SetMenuItemBitmaps
GetMenuCheckMarkDimensions
SetMenuItemInfoA
LoadBitmapW
ShowOwnedPopups
IsWindowVisible
GetActiveWindow
GetKeyState
ValidateRect
GetCursorPos
SetWindowsHookExA
CallNextHookEx
IsWindow
MessageBeep
GDI32.dll GetTextMetricsA
CombineRgn
SetRectRgn
DPtoLP
CreateCompatibleBitmap
CreateDIBitmap
EnumFontFamiliesA
GetTextCharsetInfo
RealizePalette
SetPixel
StretchBlt
CreateDIBSection
SetDIBColorTable
CreateEllipticRgn
Ellipse
GetBkColor
GetTextColor
CreatePolygonRgn
Polygon
Polyline
Rectangle
CreatePalette
GetNearestPaletteIndex
GetPaletteEntries
GetSystemPaletteEntries
CreateRoundRectRgn
GetRgnBox
OffsetRgn
CreateFontIndirectA
EnumFontFamiliesExA
RoundRect
ExtFloodFill
SetPaletteEntries
FillRgn
FrameRgn
GetBoundsRect
PtInRegion
GetWindowOrgEx
LPtoDP
GetViewportOrgEx
SetPixelV
GetTextFaceA
MoveToEx
GetObjectA
GetTextExtentPoint32A
ScaleWindowExtEx
ScaleViewportExtEx
OffsetWindowOrgEx
OffsetViewportOrgEx
SetWindowOrgEx
SetWindowExtEx
SetViewportOrgEx
SetViewportExtEx
ExtTextOutA
CreateRectRgn
CreatePatternBrush
CreatePen
CreateHatchBrush
CreateCompatibleDC
BitBlt
PatBlt
CreateRectRgnIndirect
CreateBitmap
GetDeviceCaps
CreateDCA
CopyMetaFileA
CreateFontA
DeleteDC
SetTextAlign
SetTextColor
SetROP2
SetPolyFillMode
GetLayout
SetLayout
SetMapMode
SetBkMode
SetBkColor
SelectPalette
SelectObject
ExtSelectClipRgn
SelectClipRgn
SaveDC
RestoreDC
RectVisible
PtVisible
LineTo
IntersectClipRect
GetWindowExtEx
GetViewportExtEx
GetStockObject
GetPixel
GetObjectType
GetClipBox
ExcludeClipRect
Escape
DeleteObject
CreateSolidBrush
TextOutA
MSIMG32.dll TransparentBlt
AlphaBlend
WINSPOOL.DRV OpenPrinterA
DocumentPropertiesA
ClosePrinter
ADVAPI32.dll RegSetValueExA
RegEnumKeyExA
RegEnumValueA
RegQueryValueA
RegEnumKeyA
RegDeleteValueA
RegDeleteKeyA
RegQueryValueExA
CloseServiceHandle
RegCreateKeyExA
RegCloseKey
RegOpenKeyExA
LookupPrivilegeValueA
AdjustTokenPrivileges
OpenProcessToken
StartServiceA
OpenServiceA
OpenSCManagerA
DeleteService
CreateServiceA
ControlService
COMCTL32.dll InitCommonControlsEx
SHLWAPI.dll PathRemoveFileSpecW
PathStripToRootA
PathIsUNCA
PathFindFileNameA
PathFindExtensionA
StrFormatKBSizeA
UxTheme.dll GetThemePartSize
GetWindowTheme
DrawThemeText
DrawThemeParentBackground
OpenThemeData
GetThemeSysColor
IsThemeBackgroundPartiallyTransparent
CloseThemeData
DrawThemeBackground
GetThemeColor
GetCurrentThemeName
IsAppThemed
ole32.dll OleLockRunning
DoDragDrop
CreateStreamOnHGlobal
CoDisconnectObject
CoInitialize
CoCreateGuid
ReleaseStgMedium
CoTaskMemFree
CoTaskMemAlloc
CoInitializeEx
CoInitializeSecurity
CoUninitialize
CoSetProxyBlanket
CoCreateInstance
OleCreateMenuDescriptor
OleDestroyMenuDescriptor
OleTranslateAccelerator
IsAccelerator
OleDuplicateData
RevokeDragDrop
RegisterDragDrop
CoLockObjectExternal
OleGetClipboard
OLEAUT32.dll VariantInit
SafeArrayGetElement
SafeArrayPutElement
SysFreeString
SysAllocStringByteLen
SysAllocStringLen
VariantChangeType
SysStringLen
SystemTimeToVariantTime
VariantTimeToSystemTime
SafeArrayCreate
VariantCopy
VarBstrFromDate
LoadTypeLib
SafeArrayDestroy
VariantClear
SysAllocString
gdiplus.dll GdipSetInterpolationMode
GdipCreateFromHDC
GdipCreateBitmapFromHBITMAP
GdipDrawImageI
GdipDeleteGraphics
GdipBitmapUnlockBits
GdipBitmapLockBits
GdipCreateBitmapFromScan0
GdipCreateBitmapFromStream
GdipGetImagePaletteSize
GdipGetImagePalette
GdipGetImagePixelFormat
GdipGetImageHeight
GdipGetImageWidth
GdipGetImageGraphicsContext
GdipDisposeImage
GdipCloneImage
GdiplusStartup
GdipFree
GdipAlloc
GdiplusShutdown
GdipDrawImageRectI
OLEACC.dll CreateStdAccessibleObject
AccessibleObjectFromWindow
LresultFromObject
IMM32.dll ImmGetContext
ImmGetOpenStatus
ImmReleaseContext
WINMM.dll PlaySoundA

Delayed Imports

8

Type RT_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x134
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.02695
MD5 cab67e9ca149fb79ab4473998412b951
SHA1 2e793d35537bfb5d3f042ed0626d3b119d50519a
SHA256 fbeb3be87e80cb8e1d2af3d8140796c1bb80c6c7056f60897088ff9e355c3867
SHA3 0e72f5537421764effb2ed98e536358bb7e86eed7b0936e606e8d45559685684

9

Type RT_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0xb4
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.74274
MD5 9fa8a914823ac7e5370652146901f4f1
SHA1 eb3224109abb341b6e464d2606fdbed1a7160bc6
SHA256 f64ccc0582bc7c66af8b40049e485e8e241335261ec95ace909293ba50b2e4a3
SHA3 bb348af06514e27cd1fa21ad524dfd037edcd3b36ef4cc6ab24c4a8ec38995ff

10

Type RT_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x134
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.34038
MD5 d78a341fa7444ba9ccb74ad0c943d0ac
SHA1 a3fdcb001587c47b72f06441087455e8027baca1
SHA256 652988945185cf5d604d9b48de66288d82d8ed0acdd134398e90d002d2d9fc72
SHA3 2ddf8193c735adcec9a83d3a9032dc70796778b1d0c967a43789f1a6bb3da15f

11

Type RT_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x134
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.34004
MD5 07618c451f53db89991c3fb7c567a568
SHA1 0d5cd2bb85bb88024b832f68bdbadd1e69938138
SHA256 0b0e16c38a3d5a85566e67b1d9a7e720e4dee27e163b06099d3d7dfa5dbed9ee
SHA3 f4d98de638008ce348a7ef0cb3feb13207cf5b3eaea4f1ee1d71b3a22397fba4

12

Type RT_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x134
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.51649
MD5 9936fbf67a1d9f755c37852015d09527
SHA1 426016ba6a10cc2634ab7357e4223793c51aa304
SHA256 368f9cb089d206a8b61251f0c85eeda97ee08a56b33be8579246e964d3af6169
SHA3 6bdb1e7d667efe7812e162384a6341edec73311ee7dfcb122adf0cc0f08e7a8f

13

Type RT_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x134
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.45401
MD5 ffacff1dbee315221fd131e951d8e151
SHA1 d2eb9800a1f60d3ea7225fec706d809cf477885b
SHA256 6440c3a38dcfb81d45bc6be31b776fdae116dd7a2933b407b67132f6cfa0e6eb
SHA3 dbe125dd582d83c13a62c87798c900fdc43d97b581935e320c14f9cc761a3868

14

Type RT_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x134
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.34864
MD5 fa681900dd51c997aa67a2c5a4704099
SHA1 b48ebfd25835cb260b5e4f8e7085ea3da102c48a
SHA256 9882a8462ce9de3cc9a5d0ca48c8c4f7ca97f1f846f0c10e6655e33c9734b152
SHA3 157fb750ffc808227ced340c81ed1c1c1e15b05dd0e831678b871515870e0a8b

15

Type RT_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x134
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.34505
MD5 0a12283479aa8a8677dd27bb0f584a34
SHA1 63679153c4d14fc591d1286cc98ff5044a5b589d
SHA256 322e92d75b3fec9e16b81466f4cf111d298b80812d5b238f4ee032c025a02050
SHA3 d6fc5e08b9d51b2cc80c1a2a34ca495e28edd0ca1bc65f317958b773c675de7e

16

Type RT_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x134
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.34864
MD5 d0293b6f84ea96f2662fa2f8e2fd44de
SHA1 240ad776d40208f067dda60701affa3d162cb3bb
SHA256 8db6df648274a0fc3d28430367216e1c17c364ca613066cbb0e133637e92ba62
SHA3 d92c1c2bfba803073152e14d6846474d13ccef3f04aa8670540389efa7c7d995

17

Type RT_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x134
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.31114
MD5 49ca9d25ceb458297ddf84fff64c8d55
SHA1 fbd6d992b7e2a59c9e24372ea8d30a5dcdbd46f9
SHA256 f9c81ce9b4176b305c554a15f0ca2b98b11be76c1f13ef22169999aa07e9612f
SHA3 03f7002b636940864ef7d399ba60fb8de3f455da32f311ee39cdf6602c5d348b

18

Type RT_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x134
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.33609
MD5 27fc5529ad790189bbf410c7e3a70fb7
SHA1 ea2456c9b26f884a7f7abb051f460ec98cb9451c
SHA256 601635482a9b1864ea0c61ce0282c5c9fe1d014aa95dbb4f60770f1c2b6df3da
SHA3 24ab306744896452b2a7f7055c97671ab0aad3965342b3d0cead7a6cb640238d

19

Type RT_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x134
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.81313
MD5 858a63dc597812b0885e8a8f9689227c
SHA1 0a816cd0e6f10038f43bde278eb613f1c7281b33
SHA256 2bf742d2beb4c56dd6eb68347dd8ee28da85bed9e6d165b36c6edb91da01d5d6
SHA3 6974d714fd124f0de87b6f088039e52bcf3123b5e6ae24c7c61864b70b894963

20

Type RT_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x134
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.81491
MD5 ff43eaab521694d0356618a92cd83b55
SHA1 f1ed8d456a5a3d87d1a8349e992c99e22bf3624e
SHA256 cfc4ff9e46fbb61f61b68f36adc6593b137233d1cbaa50fe37e5653f0cb20396
SHA3 7069692bfbe0c043b33390a40f8033c3d0aa3092c3b1ca1b01fc899dc760ec48

21

Type RT_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x134
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.10016
MD5 4bfaa5ad112338fc90bf84b1ba21859d
SHA1 f175fb276720b4f98bc75dd3edc8c53ed563bdf4
SHA256 c4a6e3a7a346baecb09a0c49268eb44f388382a7866a4e912b53d48fa3b34c26
SHA3 eb1f5efadebebc4b756ef49661343ee08641f53184ad8ee83e33d6665028a00d

22

Type RT_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x134
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 1.97052
MD5 654a61b5fd300aaf86c52a3c48035005
SHA1 e16bdc1b4309abd682e2d0b52aaf370a77ad6a86
SHA256 f273e554605a89aa0994c9d42bc2569be3db5b19b2900dacb30f3218ed1174a0
SHA3 50582dc2bd6d1a2632564b2d3c6fdc1877e401924754069bc2dfccf3e2896340

23

Type RT_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x134
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.22699
MD5 b6946159ef4680b2b03d58bdf3dc83f6
SHA1 b949690a6e071a1fe43cb83a15d5104d1fa9fe0d
SHA256 ebaf4bcc0f0d7ca9a3458ea52520d2dd10811069241940b9b2e79ac1a4c3ca5c
SHA3 4b1152fe0fd4581cc8716682bff8f14d7c903ab6b5414d52876bd37fc58eb0c5

130

Type RT_BITMAP
Language Chinese - Taiwan
Codepage Latin 1 / Western European
Size 0x1fc
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.15798
MD5 35c2acd91b4182a6e0049e59606ce0de
SHA1 16a87ea0142907130e7569fc786e4abdeaa59e1f
SHA256 6bb0833589473312c545270be69132e2502054acf5f3f6418c344d912c020f6c
SHA3 078d06a4ef6b619451950c252772d41fa1cb93516a0fad77f1c731ff92f8bad8
Preview

131

Type RT_BITMAP
Language Chinese - Taiwan
Codepage Latin 1 / Western European
Size 0x10ba8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.29864
MD5 4d11d54fd9d900c74a51f595670980d5
SHA1 31949b4e0f2a4eb31bd007c19b18aaeba5a8a59c
SHA256 50890298acdb7f7bd7c167ad52673c4bf26d820ec98472a723fabca1190399fd
SHA3 948cf550e324fab2de8e1acf11e59de3753d2f4ff591f55473ae5b4864650404
Preview

132

Type RT_BITMAP
Language Chinese - Taiwan
Codepage Latin 1 / Western European
Size 0x32a0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.23385
MD5 8096e042c00066fdc92c69acf1b91a2f
SHA1 5f9936b955d764e8ff30494a3f3e03810cf23011
SHA256 e29fa3b86db980cc1a05682eff26d03be0656c6e6b076013961eb22e4a716ee6
SHA3 2d1b8fd2efa9caac99eb625846afb5d90f0130719105d8a758a8fa8774bf98bf
Preview

133

Type RT_BITMAP
Language Chinese - Taiwan
Codepage Latin 1 / Western European
Size 0x256c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.35319
MD5 89d5249c391849fa8bb5f796f9bc75e2
SHA1 b5cd3a5cd1f6cc3b4f13e9fb0ea8d89015f8fa5c
SHA256 be13ae3ea079790bc7f413a2c352e8acf825290dc12c4fa0cb557537e4ba1fc6
SHA3 368a8126565af4baa65a16d35f58d126cbd8bad76343437f12da862e50d2ff7d
Preview

134

Type RT_BITMAP
Language Chinese - Taiwan
Codepage Latin 1 / Western European
Size 0x17c8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.28943
MD5 297c607359d5a064407a48b001debe2e
SHA1 3f7e9611b56a17168e5072c5f7b717992038b684
SHA256 9555922d67ccd11f9e4eaca38f0da5262e1992e89a417f394fd27ef2ace6f141
SHA3 ebd2b8be5b53202c4fd05bdb0c01aa3d8f4d859209f20c637a617afbf99f838e
Preview

135

Type RT_BITMAP
Language Chinese - Taiwan
Codepage Latin 1 / Western European
Size 0x24e0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 1.23121
MD5 80656d5aaa7b648b4a14eb604486d8da
SHA1 2649ba82e9a7eb30d22da8cff06a887652415f91
SHA256 027a80e0556547555086505b5783ce2824a798f013d37ea88c1cf336bbc30097
SHA3 0a7359d81a458c23f1bbdf7efd14003753ab404d6dcf7a010692ac7b491d3fb5
Preview

501

Type RT_BITMAP
Language Chinese - Taiwan
Codepage Latin 1 / Western European
Size 0x1810
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.00949
MD5 d010d3096cf686f2a47a151d198e303b
SHA1 960ff4c2021b6c24f34f4a958d99535ef649eebb
SHA256 349335fce00b9c3115b17fa5527995d092372de7911c4508e9aa8e8f2e77c3fb
SHA3 9e50403574a45b261f23c00538f50b7cc3d00966fc79847c05825e617fae9adf
Preview

502

Type RT_BITMAP
Language Chinese - Taiwan
Codepage Latin 1 / Western European
Size 0x4a8c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.91119
MD5 35b647cb3e5f2a0dc991df149e385d11
SHA1 a47806e69904f667e574469fbd2556bdb9e4019d
SHA256 ee08a7b3c48cadc964e4a67d5e533b130f0f26ef0e456f14371c88182a0e3098
SHA3 75c7c3e402824de24970bda06c8864dea5b540a64b03467d47f00bdc570ef13b
Preview

30994

Type RT_BITMAP
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0xb8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.23666
MD5 8cf65be17e506ff24c2177078f88b56e
SHA1 3e397dc7597caeb844df0ea760b64231c8ce3dbf
SHA256 e7c0005285d1ab59732d5f99f77a9bdd6342b01cf44437ebd7a07611a227e272
SHA3 7da4c7aab356574679f0f9107740f01647864c846c04f699deef67577fd6aded
Preview

30996

Type RT_BITMAP
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x144
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.87621
MD5 5a9c81cdbf480cf01daa71ba0e233c5f
SHA1 28e04c01584654e1974347d1baa462b2784e9c47
SHA256 abdf36bde89a26349f5741c17c235dacea88d441d8662ba16a598dc50c3c4864
SHA3 99dec83590ac444359a5a6f8924dae5615d93f4df527e10a8a61319ce3a5beaf
Preview

1

Type RT_ICON
Language Chinese - Taiwan
Codepage Latin 1 / Western European
Size 0x8a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.82681
MD5 39a41e9bf01d2fef6ea3689202b2ccf1
SHA1 c99073ee159b34948e708cdcc4a1011b28d35c6a
SHA256 f446405cf2ebf0a6caea5f5592c717bbfe564da5aafe5d639ed86a44102dcbd0
SHA3 11c5af68c4d74ce3d9310293b3666d7142b959a032e882595d1300eec8db180d

2

Type RT_ICON
Language Chinese - Taiwan
Codepage Latin 1 / Western European
Size 0x6c8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.20241
MD5 11931cc722f6bff116e80fd202c86a15
SHA1 8afd723aa1e6f4eaf05b147dc7675aeb426f76ff
SHA256 efc4e69185917715d5ece5cbdba41d283a21b66eda7c3e0db59784572492d70a
SHA3 05b60d3bdb43d5c6afdf713410ee335d724ead54b2c13534444832278eea2fb9

3

Type RT_ICON
Language Chinese - Taiwan
Codepage Latin 1 / Western European
Size 0x568
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.08084
MD5 62da96089d78d2260981bd64631fb151
SHA1 d2c8ab1bfb72ce9914479acf7ce76edaef32a8d0
SHA256 497f13aa89d5e3155f2cc014c6bbfe286a5d068e209da3432be28420c68a4127
SHA3 c21f8710f9ac00271fabfc4fc49a2dbeca67ec3b4c67ac2b4dab955bc4b3101a

4

Type RT_ICON
Language Chinese - Taiwan
Codepage Latin 1 / Western European
Size 0x1ca8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.29492
MD5 3b263cff215dc026cc055de12c37058f
SHA1 23d09d851ab03ebaced0989771a681fe5440a118
SHA256 b8484ec1012e4a315b05e5cf6744b5429a73c7943db0df99fee4808b0084abdb
SHA3 a77cb6f76f6f45b37feee1172cf9263b30966ea5d74a085a26651dc0eaeea9c3

5

Type RT_ICON
Language Chinese - Taiwan
Codepage Latin 1 / Western European
Size 0x94a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.63807
MD5 e445c699b95343d817cfe8d73570920f
SHA1 c44add3fdc662d669094cb4b678d6524d32494d1
SHA256 7919abb4ac0b04b03e24c84b2bc638d06fe1024415003e26fc69186b5a200587
SHA3 d15f3d3091565fae268c54e3b6c68cf476a09cf37d6f3ede59eb8b80273a6ffc

6

Type RT_ICON
Language Chinese - Taiwan
Codepage Latin 1 / Western European
Size 0x1a68
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.7387
MD5 e303310b87d95419157eb402801c63d5
SHA1 76ea4ce8d3a7abbf1fc1ebdf5b7e811b4264e32c
SHA256 9169dcf81a86725e7adbd7f0a2fa51074a9fe28fbe59da10584ab47b5173d65d
SHA3 94599878c8007dfeca393b4c3cd27ac1286b7989a0dbbf61a8f604a655827291

7

Type RT_ICON
Language Chinese - Taiwan
Codepage Latin 1 / Western European
Size 0xca8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.8882
MD5 de8042ddc5a7bdbfd9a0ca5013a600d9
SHA1 cfda7c626baea16fa54f5386b1dd5b75e794854f
SHA256 95b175734de4a590cc78cd74044ed21f110d47b7bff011bf28a7e3c99913479a
SHA3 ee8e3f6f7dd2acd608d84954c97cef7b9fb49be6177f7e6655882258f86b99c3

102

Type RT_DIALOG
Language English - United States
Codepage Latin 1 / Western European
Size 0x263c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.54235
MD5 42082b3b7a849651d1b4d0c8cfece2d0
SHA1 f980c7d0faca647985955fb51e17fe37182ef7d5
SHA256 8dbeab55aeb13b04b97e6f62ee0315d8805f009423237c09f4fd93183cda8301
SHA3 27e94410539c443399dbef7f9edd6fc7bdd9e47b88104e3d29f98c17b2400818

103

Type RT_DIALOG
Language English - United States
Codepage Latin 1 / Western European
Size 0x3f2
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.34432
MD5 b1d1eb7a1f446dd99ff2baa4c5c5c875
SHA1 6b6770ce78223dc74b4d98a08c9fe251becd5076
SHA256 c1ba931b3f04306668c97e571afd07806507c7b182e51dd934921c9a465931bd
SHA3 c7258a8a8a7893628a4b387d1bd13672a50ec9d6e1020e7254600bfd255b0531

30721

Type RT_DIALOG
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0xe8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.06676
MD5 ad7b15160c8bf80910606d417f40fef5
SHA1 9752acb8e012635c4356f7f2a20191d656b53faf
SHA256 6e113fd8e9f3156ae68251c6076beb9b59fe29e589d06398e7019802521f69d3
SHA3 50c74f1eeba91cb4ecc237c0b18cd2f6c0e2b6064e8d13ce1a779160c03b5d48

30734

Type RT_DIALOG
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x34
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.41669
MD5 72723d63b211c60717138184c1675b66
SHA1 ecd2be6587bb32a080e51b5c3f3a816e8b637c85
SHA256 4cf716efaf68e0cb2ec45ec55d291050b5712b05653cae68edbb999f803d2a98
SHA3 6031fa1100e39d04c89ed42890fe9833adb0503fe1857940533b7356aec9d306

3841

Type RT_STRING
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x82
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.81705
MD5 8bb814f43734537868736a6df5dcc012
SHA1 3ae7a8f8678bc2aed76f745960730097032389b6
SHA256 d91dc4e26fd86def5ee907c72f32457bea07d21fa618012245f641d08501548d
SHA3 73fabbc3aad03738eda288b6d45b076e7f94f1ff8de37df5ac4d6e7dc7a48f98

3842

Type RT_STRING
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x2a
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 0.960953
MD5 0131ce1c2237957b6926d5097b0af63d
SHA1 2ce37b98065cc4de92e99eb0777e0e1159102068
SHA256 05e0d5787611ed4f643733e3e6e62d00f426422b5d3e443ceebac22e9d294bc4
SHA3 9ee7bcb02f48332a4fac72465297312ef9c765b03edf2ab24a4b3de0840bda6c

3843

Type RT_STRING
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x184
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.08634
MD5 58655591099de216feb4cc512012d318
SHA1 4001db00e1535b26b506e6d033e9759351ae6874
SHA256 9665348f07508c6c2a568fc90ec4c04736668adc3521e311a4c7659973d92313
SHA3 296c00546a67204c06806ff85a9e3e065559b2b85b22fec4166afc19cad4b6f9

3857

Type RT_STRING
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x4e6
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.25779
MD5 3c0e880ffca8f519b51579c8c0825858
SHA1 24a521aba0485f373d4d8993d704c86e556bcbf1
SHA256 0519d7704cb64bab3aeca7c3b96affd55641099a2a162e88537cb1b8dbfcd540
SHA3 6d04d7acb581fbf887f75a077583ce66c949d3f197bfb8445aab6ff2ba93fc01

3858

Type RT_STRING
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x264
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.11275
MD5 3dbecd982474b9072ecd4aefe7406857
SHA1 ee81b0d03aebe1cde90de59031771f416d29eef2
SHA256 eaa0b4fe4704e193dd2ed1f8de1cb20e1001034fdb30307ee44aa664966d4ffc
SHA3 9053da012393a18a8a9012e2ab17735c7c864f0463086c9439c3a74a37ed7ee7

3859

Type RT_STRING
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x2da
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.16694
MD5 9e3221160c33e15054ff236daf2263d7
SHA1 cf41e0cdd3377698f819c4ef95ab56de40c57a5a
SHA256 cffcd4956911b3d50eef378cb051e598baba0db48246b07780af03b01c67c64d
SHA3 663e17de8922b049f83fdeca37a68d626bb83566bc377d85be42c653707a2b74

3860

Type RT_STRING
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x8a
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.71087
MD5 5988b72b85cd1c121906b20e7526fdf2
SHA1 45efa4995e9c25a32e3f47a15b63a813cc6e8fc4
SHA256 35b5abb90316b4017d5531e031cbf15bae6e8dd46f6dd221701693a22a7795be
SHA3 afa115b83c9f9b2f16ce1e14424b4e2cf6216cbcee84835e0b5cec4a23510a93

3865

Type RT_STRING
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0xac
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.63903
MD5 5fbbd2a5f564e043553889eec9147920
SHA1 2ddafabdf2bf5b62090419f07f731c4d02f0d987
SHA256 1b8660b0c53b94f3e029de58e56d08c8097a080244e9dc65d4155a9b603820d8
SHA3 1a90cf149f1fc5cfa9cd3f82f9a079ec48c7f7ce76dc4be601e538ae5c052ab9

3866

Type RT_STRING
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0xde
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.87807
MD5 a0838b75a6ffc345212d18178663bb7d
SHA1 a90a0eccdf4cc4c50f430195695a3b65adefe5e8
SHA256 31bff9afbf08a8869318cd946a1d73a4425afefc5693c6e06671bde1e86de1dc
SHA3 ad576d2bedb8e173fb207310f244bee3ad8c898a2101cb67da930fadf80ec7d0

3867

Type RT_STRING
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x4a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.24671
MD5 7e0e2d984d6d743b4d90b04758507505
SHA1 bec6af6197b875caf3064c7e053b64044904c1bb
SHA256 2b5551644093e58a4af74928fb744bd735fa2ef5f99824e6918ff9f6a33a3803
SHA3 08f040ebd50cc1809f91378999331d0d19e7364612041db3805a0ff1d37050e5

3868

Type RT_STRING
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x228
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.10695
MD5 cd11e247927c7360d3447bbb2e01d326
SHA1 0e6b76a1cf9824dac91fad3a346388589987cb9a
SHA256 e9212b16f2d3292d0b0eb67134a70778ff1b0aede4918831e5bdba3f950db2a7
SHA3 7a0a3e741ea89b752fca14451f1e9b9ac5600d99a7408d04c7835e30688f8fcf

3869

Type RT_STRING
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x2c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 1.07875
MD5 4b18eed800e2806db8e0aacb95fd54f2
SHA1 8b09634f818d6823f6466717f3863cbb466d97c1
SHA256 0714c554acd308b38c3d6319f7e470f76a16d712f696545eacac2bdc725dfb95
SHA3 067dea0fda55e331beab407da1e0e79a9d71fe8a8d0c965384d459ce0a8d499a

3887

Type RT_STRING
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x53c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.1767
MD5 cd0805e3f678d1d1724b84e06da333ba
SHA1 a7b6b955cd17037b33390496d03d63dd711dada2
SHA256 267abecc36a0c7b614732ee6bc26b05abdb3f53fe4d6e09691543c4ca0bc8f20
SHA3 fbeeb4f33a2d05328ae98cf762fd2b242c8251e95cc009d68c83f18604293e4c

30977

Type RT_GROUP_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x22
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.25451
Detected Filetype Cursor file
MD5 668bb13684a50ab0280c49c2deac6598
SHA1 9de73e80f493e1030dc2c13a136ce63e56644aed
SHA256 116650d4d09067d5a1812fd5a9c8150da5be27340ea606ad0b6f4775a73a11f2
SHA3 e41053e104929d348081d0ac72aba87b63a11d818081bafd662130c3a0a462db
Preview

30998

Type RT_GROUP_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.01924
Detected Filetype Cursor file
MD5 1cd71148c4a650e298e26668e22c3733
SHA1 5aeaabee3ae2ad999e9ed91c85119a42c83473c6
SHA256 4ecc7f2578fd7b137c04f85ffcbd67d6eab0bc8b1df4246cebd2a2aa517f3c60
SHA3 89ccb4ca5392e186b8eeb9848f78a12843e40792c3500e104225869bf9be1894
Preview

30999

Type RT_GROUP_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.01924
Detected Filetype Cursor file
MD5 e6a3323fcb21bc5b90ee077f41a24061
SHA1 91e468b891f8306afeb6ac33bc31d67efb2cbe9d
SHA256 a92f60b25322592e7ddd13d88e4006c097666f4d87c8cb0c21ffdccd53b31d78
SHA3 ffc4266780334ccca3790e5f703fab0a138d252e16d1ad1145c1929f51d31d38
Preview

31000

Type RT_GROUP_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.01924
Detected Filetype Cursor file
MD5 446e8ff2a515c84d93ca4cbcf405d300
SHA1 98de0236185240e011430a5dd8e262ed8f991ec2
SHA256 ef309b720f166673cad840a88e7636e9161ad91415cc7c176010cebba07757e5
SHA3 d345fed6ee7f3afa40aba48106f47450bde6ac4c3d47db78cbfb11e4368be613
Preview

31001

Type RT_GROUP_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.01924
Detected Filetype Cursor file
MD5 22a9b94eda22d068a6823a72268fdada
SHA1 7923c0aa606f67498391ecdb828292fcc3bc3ed6
SHA256 a2f0549cca7170ae03ba042464efe62365fba38c20049e439871c9e5ce0f914f
SHA3 565227501bdf04ce5d2afeb14e48062d4cdd6de7b76c62d26a15f6e4a34ba5c1
Preview

31002

Type RT_GROUP_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.01924
Detected Filetype Cursor file
MD5 79bc23c45190436b2c51ff2941fa8720
SHA1 0a8234176fad8831709703a0a34337a08987a983
SHA256 b328fe22a904a2e7e1341a95dbf00e2fdffc9ab350bc64c5ee348d3007c2b479
SHA3 b897f30ec85dad865a74be84cd616e0066da486befd0983d87e2b6f5d66a6c6b
Preview

31003

Type RT_GROUP_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.01924
Detected Filetype Cursor file
MD5 d1c93cf23f34157f8c97800528b9bb99
SHA1 ab9e40c42ad0de11e11fdde5de49bd0adaa9bc2b
SHA256 8a495f17bc472bfc5e6923d9efa687848fac027ad60694f9c3f10a4f7b194924
SHA3 10b44e07ad4f8d644f73b4d71370ae8c337e8bfdac89efebff20378ad61e0758
Preview

31004

Type RT_GROUP_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.01924
Detected Filetype Cursor file
MD5 8e242da1769c2307f276e393dec0e7d9
SHA1 da604259954e8cda5931a679e081bfad9a9fd772
SHA256 ee63d4681e7622067fd29005c6cc67b456031eb723c7239f05f1cb097af0ef98
SHA3 e6021bdef60731a607f9445b3c004fcdac812f44b42aeb8e32fee72204be4572
Preview

31005

Type RT_GROUP_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.01924
Detected Filetype Cursor file
MD5 5df05404b0dab444d7bc0fe0bee0d519
SHA1 ecbc2591eaf234bcc87df4731b5e26266728ff6d
SHA256 28b8110695851e5280ff55cb78507b03e8b74dd370b8e122179c82b56f7e5f37
SHA3 f18323f0f4e67af79d43a527df26273c9f7e53e73b1ba51cd426cff3412927d2
Preview

31006

Type RT_GROUP_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.01924
Detected Filetype Cursor file
MD5 1529a8ec9965ecf3256d6d4550712406
SHA1 9bd0fc7e667f3d49f5098ecc2bff01987f3e1503
SHA256 12a5b9052dd16bed260343bc4352d436167c991c54497c5af441304646549386
SHA3 0799f15ab0007d5497ea80dbae86635472c9d085ffbb6c095b71d1e8acebc81b
Preview

31007

Type RT_GROUP_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.01924
Detected Filetype Cursor file
MD5 87f676ebb80763bfd77a413c2fb00f0d
SHA1 23736a18a1d4330cb9ea762fb7deaef881b6ec2c
SHA256 da738753c27f2708bd2257f8cac3385a4ccb0df1341b76acfda07fa980cfb4bd
SHA3 d90e5655540ffc0671429e2c3ff78ba0f7a100727622de4185f897a4aa996c3b
Preview

31008

Type RT_GROUP_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.01924
Detected Filetype Cursor file
MD5 8408eef234acfcac8a26e706cc35d85c
SHA1 5ecdc1e1be3f1e941b1ca11b45943aafe135c517
SHA256 3f02dcac38fffe306e1825846e2bc0458ee712696310d051e3a69ebda8330cc3
SHA3 0406ff4480e84661d58a225cdf84931c95f7ebf6fea388a3cb6bedbc0343b421
Preview

31009

Type RT_GROUP_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.01924
Detected Filetype Cursor file
MD5 1e219dd609ce399df95ba7af59ef113f
SHA1 436a16dd20d5e3ec42342a4d005a664cd227f517
SHA256 8f51832638675f16ec5f251ab59251b3f85d84e5129025d44c45b3191b331c58
SHA3 9e44adcf523bb484f416a99197d947211027feae6b6665b457883e548218befd
Preview

31010

Type RT_GROUP_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.01924
Detected Filetype Cursor file
MD5 690a20e696fc4e33ffb377a8ef54fb97
SHA1 972159605fa069921dbdee9b7a35879e6f1928a6
SHA256 6c2ef97bca5cdc6aa6de65b1f1ae8328bcb3494a16025eee870231d991e2cd56
SHA3 fd9d56519b5bf976a4ae748fe0c51dcd47ac27ce6a7c271fa2bbb3e00f473b22
Preview

31011

Type RT_GROUP_CURSOR
Language Italian - Italy
Codepage Latin 1 / Western European
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.01924
Detected Filetype Cursor file
MD5 459379b9418ad5b62b1bf409300acb32
SHA1 5363fc84172d6b624542a0b52edbbfe21e2443ae
SHA256 1085b7390dbd2b2006f85619521047c6ca58a8b274196eeed48e74ad8a1b746a
SHA3 2b8f3218d3da7e4ee463a712c6c3b8f5b58cc6799a84f5e582b6a40da38a2bfc
Preview

128

Type RT_GROUP_ICON
Language Chinese - Taiwan
Codepage Latin 1 / Western European
Size 0x68
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.97334
Detected Filetype Icon file
MD5 4fdd10b11be16de7f6cfc838d791b9f0
SHA1 1a5717517851fbebb4a379fab600f1ff1fc9cd4c
SHA256 5dd37694b0171627b5cce2c7e7bf3c843a111bb3b33dbd0f9626d319574cb37b
SHA3 86967cbcee31d53a3052d491af685b7c9d17b442c2eaba57065401cd8a03a88e

1 (#2)

Type RT_VERSION
Language English - United States
Codepage Latin 1 / Western European
Size 0x2e4
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.43336
MD5 d58285bc2f956052044e8338b74a881e
SHA1 c6e24c95fbb87269d44fb1eec88cccad80eb530f
SHA256 7f4a087646df49d52f3488c97eadcf99da70cecad65fc253c5d599da2fa592fd
SHA3 79b6fa0ac16c7a95ea8982a0808012efa706e465822eacfdee2374eff17258fd

1 (#3)

Type RT_MANIFEST
Language English - United States
Codepage Latin 1 / Western European
Size 0x42f
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.15309
MD5 52f23bcd31edd80adb18ca867808eac4
SHA1 767a7cd9c7a8420c6b41bf6d14c94e4137c49e42
SHA256 d5bcce227ccce5d2fc89cc01c0facadbb718a4d227b4fdfc59f57ea6107bda10
SHA3 dae65ab7b63c8bb97e89672aa125a681ecfa72661ec92650828c24f2e58dd46f

String Table contents

Open
Save As
All Files (*.*)
Untitled
an unnamed file
&Hide
No error message is available.
Attempted an unsupported operation.
A required resource was unavailable.
Out of memory.
An unknown error has occurred.
Encountered an improper argument.
Incorrect filename.
Failed to open document.
Failed to save document.
Save changes to %1?
Failed to create empty document.
The file is too large to open.
Could not start print job.
Failed to launch help.
Internal application error.
Command failed.
Insufficient memory to perform operation.
System registry entries have been removed and the INI file (if any) was deleted.
Not all of the system registry entries (or INI file) were removed.
This program requires the file %s, which was not found on this system.
This program is linked to the missing export %s in the file %s. This machine may have an incompatible version of %s.
Enter an integer.
Enter a number.
Enter an integer between %1 and %2.
Enter a number between %1 and %2.
Enter no more than %1 characters.
Select a button.
Enter an integer between 0 and 255.
Enter a positive integer.
Enter a date and/or time.
Enter a currency.
Enter a GUID.
Enter a time.
Enter a date.
Unexpected file format.
%1
Cannot find this file.
Verify that the correct path and file name are given.
Destination disk drive is full.
Unable to read from %1, it is opened by someone else.
Unable to write to %1, it is read-only or opened by someone else.
Encountered an unexpected error while reading %1.
Encountered an unexpected error while writing %1.
%1: %2
Continue running script?
Dispatch exception: %1
Unable to read write-only property.
Unable to write read-only property.
Unable to load mail system support.
Mail system DLL is invalid.
Send Mail failed to send message.
No error occurred.
An unknown error occurred while accessing %1.
%1 was not found.
%1 contains an incorrect path.
Could not open %1 because there are too many open files.
Access to %1 was denied.
An incorrect file handle was associated with %1.
Could not remove %1 because it is the current directory.
Could not create %1 because the directory is full.
Seek failed on %1
Encountered a hardware I/O error while accessing %1.
Encountered a sharing violation while accessing %1.
Encountered a locking violation while accessing %1.
Disk full while accessing %1.
Attempted to access %1 past its end.
No error occurred.
An unknown error occurred while accessing %1.
Attempted to write to the reading %1.
Attempted to access %1 past its end.
Attempted to read from the writing %1.
%1 has a bad format.
%1 contained an unexpected object.
%1 contains an incorrect schema.
pixels
Uncheck
Check
Mixed
One or more auto-saved documents were found.
These are more recently saved than the currently open documents and contain changes that were made before the application closed.
Do you want to recover these auto-saved documents?
Note that if you choose to recover the auto-saved documents, you must explicitly save them to overwrite the original documents. If you choose to not recover the auto-saved versions, they will be deleted.
Recover the auto-saved documents
Open the auto-saved versions instead of the explicitly saved versions
Don't recover the auto-saved documents
Use the last explicitly saved versions of the documents
%s [Recovered]

Version Info

Signature 0xfeef04bd
StructVersion 0x10000
FileVersion 0.3.5.5
ProductVersion 3.55.0.0
FileFlags (EMPTY)
FileOs VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
FileType VFT_APP
Language English - United States
FileDescription HP Flash Utility (3.55 Build 06021)
FileVersion (#2) 3.55
InternalName HPWINGUI
LegalCopyright Copyright (C) American Megatrends International LLC.
OriginalFilename HPWINGUI.exe
ProductName HPWINGUI
ProductVersion (#2) 3.55
Resource LangID English - United States

TLS Callbacks

Load Configuration

Size 0x48
TimeDateStamp 1970-Jan-01 00:00:00
Version 0.0
GlobalFlagsClear (EMPTY)
GlobalFlagsSet (EMPTY)
CriticalSectionDefaultTimeout 0
DeCommitFreeBlockThreshold 0
DeCommitTotalFreeThreshold 0
LockPrefixTable 0
MaximumAllocationSize 0
VirtualMemoryThreshold 0
ProcessAffinityMask 0
ProcessHeapFlags (EMPTY)
CSDVersion 0
Reserved1 0
EditList 0
SecurityCookie 0x60b510
SEHandlerTable 0x5f5790
SEHandlerCount 904

RICH Header

XOR Key 0xe67fc3f1
Unmarked objects 0
C++ objects (65501) 1
Imports (65501) 35
Total imports 821
208 (65501) 2
199 (41118) 4
C++ objects (VS2013 build 21005) 96
ASM objects (VS2013 build 21005) 50
C objects (VS2013 build 21005) 245
209 (65501) 1
C objects (65501) 11
C++ objects (20806) 322
C++ objects (VS2013 UPD4 build 31101) 161
229 (VS2013 UPD4 build 31101) 6
Resource objects (VS2013 build 21005) 1
Linker (VS2013 UPD4 build 31101) 1

Errors

[*] Warning: Raw bytes from section .text could not be obtained.
<-- -->