84a0fa6ee89cb743ec2b3266bc8b7d6af90597d1eee9a3f007b5fa9874488c79

Summary

Architecture IMAGE_FILE_MACHINE_AMD64
Subsystem IMAGE_SUBSYSTEM_WINDOWS_CUI
Compilation Date 2026-Jan-28 22:00:18
Detected languages English - United States
Debug artifacts C:\agent\_work\23\s\Licensing261\LicensingCore\AnsysLi\build\winx64\x64\Release\ansyscl.pdb
CompanyName ANSYS, Inc.
FileDescription Ansys Common Licensing. Modified at Ansys Release 2026 R1.
FileVersion 2026.1.0.0
InternalName ansyscl
LegalCopyright Copyright (C) 2026 Synopsys, Inc. and ANSYS, Inc. All rights reserved.
LegalTrademarks Ansys® is a registered trademark of ANSYS, Inc. and FlexNet Publisher is a trademark of Flexera Software Inc.
OriginalFilename ansyscl.exe
ProductName Ansys Common Licensing
ProductVersion 2026.1.0.0

Plugin Output

Suspicious Strings found in the binary may indicate undesirable behavior: Looks for VMWare presence:
  • VMWARE
  • VMWare
  • VMware
Looks for Qemu presence:
  • QEMU
  • Qemu
Accesses the WMI:
  • ROOT\CIMV2
  • root\cimv2
Contains domain names:
  • ---flexera.com
  • --flexera.com
  • -flexera.com
  • example.com
  • flexera.com
  • https://curl.se
  • openssl.org
Info Cryptographic algorithms detected in the binary: Uses constants related to CRC32
Uses constants related to MD5
Uses constants related to SHA1
Uses constants related to SHA256
Uses constants related to SHA512
Uses constants related to AES
Uses constants related to Blowfish
Uses constants related to DES
Uses known Diffie-Helman primes
Microsoft's Cryptography API
Suspicious The PE is possibly packed. Unusual section name found: .textidx
Malicious The PE contains functions mostly used by malware. [!] The program may be hiding some of its imports:
  • GetProcAddress
  • LoadLibraryA
  • LoadLibraryExA
  • LoadLibraryExW
  • LoadLibraryW
Functions which can be used for anti-debugging purposes:
  • CreateToolhelp32Snapshot
Can access the registry:
  • RegOpenKeyA
  • RegDeleteValueW
  • RegCreateKeyExW
  • RegQueryInfoKeyW
  • RegEnumValueW
  • RegEnumKeyExW
  • RegOpenKeyExW
  • RegQueryInfoKeyA
  • RegEnumKeyExA
  • RegSetValueExW
  • RegSetValueExA
  • RegQueryValueExW
  • RegQueryValueExA
  • RegCreateKeyExA
  • RegOpenKeyExA
  • RegEnumValueA
  • RegDeleteValueA
  • RegCloseKey
Possibly launches other programs:
  • CreateProcessW
  • CreateProcessA
Uses Windows's Native API:
  • ntohl
  • ntohs
Uses Microsoft's cryptographic API:
  • CryptAcquireContextW
  • CryptReleaseContext
  • CryptGetHashParam
  • CryptGenRandom
  • CryptEnumProvidersW
  • CryptSignHashW
  • CryptDecrypt
  • CryptExportKey
  • CryptGetUserKey
  • CryptGetProvParam
  • CryptSetHashParam
  • CryptCreateHash
  • CryptEncrypt
  • CryptImportKey
  • CryptDestroyKey
  • CryptDestroyHash
  • CryptHashData
  • CryptAcquireContextA
  • CryptUnprotectData
  • CryptStringToBinaryA
  • CryptMsgGetParam
  • CryptMsgClose
  • CryptQueryObject
  • CryptDecodeObjectEx
Can create temporary files:
  • GetTempPathW
  • GetTempPathA
  • CreateFileA
  • CreateFileW
Has Internet access capabilities:
  • WinHttpGetProxyForUrl
  • WinHttpCloseHandle
  • WinHttpGetIEProxyConfigForCurrentUser
  • WinHttpOpen
  • InternetCloseHandle
  • InternetQueryOptionA
  • InternetSetOptionW
  • InternetOpenW
  • InternetQueryDataAvailable
  • InternetReadFile
  • InternetConnectW
Leverages the raw socket API to access the Internet:
  • WSASocketW
  • ntohl
  • inet_ntop
  • inet_pton
  • getnameinfo
  • WSASocketA
  • getservbyname
  • getservbyport
  • inet_addr
  • freeaddrinfo
  • InetPtonW
  • getaddrinfo
  • WSAPoll
  • inet_ntoa
  • gethostbyname
  • gethostname
  • WSAStartup
  • sendto
  • recvfrom
  • select
  • __WSAFDIsSet
  • WSASetLastError
  • setsockopt
  • recv
  • WSAWaitForMultipleEvents
  • WSAResetEvent
  • WSAEventSelect
  • socket
  • WSACreateEvent
  • WSACloseEvent
  • send
  • WSAIoctl
  • WSACleanup
  • gethostbyaddr
  • shutdown
  • listen
  • htons
  • htonl
  • getsockopt
  • getsockname
  • getpeername
  • ioctlsocket
  • connect
  • bind
  • accept
  • closesocket
  • WSAEnumNetworkEvents
  • WSAGetLastError
  • ntohs
Functions related to the privilege level:
  • OpenProcessToken
Interacts with services:
  • QueryServiceStatus
  • OpenServiceA
  • OpenSCManagerA
Enumerates local disk drives:
  • GetDriveTypeW
  • GetDriveTypeA
  • GetVolumeInformationA
Manipulates other processes:
  • OpenProcess
  • Process32Next
  • EnumProcesses
  • EnumProcessModules
Interacts with the certificate store:
  • CertOpenSystemStoreW
  • CertOpenStore
  • CertOpenSystemStoreA
  • CertAddCertificateContextToStore
Info The PE is digitally signed. Signer: ANSYS Inc.
Issuer: DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1
Safe VirusTotal score: 0/56 (Scanned on 2026-05-30 00:08:46) All the AVs think this file is safe.

Hashes

MD5 f0d6b87ced23c8f02c441ac21e8b0891
SHA1 afb25c977a6a6f998d78881a062ec0a170275fb5
SHA256 84a0fa6ee89cb743ec2b3266bc8b7d6af90597d1eee9a3f007b5fa9874488c79
SHA3 bb3d9221b95404f541b9ccc8a8205aba1667592682de3c8fb1a03bfcff880006
SSDeep 393216:ON3VGTDckUExw7Rd1CK61L29NzhASexDOmL+6dFNzIFRc:ON3V8JIRbC6FR
Imports Hash f2f9d2b6d26c226977cd868e134819c4

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0x1c8

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_AMD64
NumberofSections 7
TimeDateStamp 2026-Jan-28 22:00:18
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xf0
Characteristics IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE
IMAGE_FILE_RELOCS_STRIPPED

Image Optional Header

Magic PE32+
LinkerVersion 14.0
SizeOfCode 0xe34600
SizeOfInitializedData 0x66ee00
SizeOfUninitializedData 0
AddressOfEntryPoint 0x0000000000BD6DD8 (Section: .text)
BaseOfCode 0x1000
ImageBase 0x140000000
SectionAlignment 0x1000
FileAlignment 0x200
OperatingSystemVersion 6.0
ImageVersion 0.0
SubsystemVersion 6.0
Win32VersionValue 0
SizeOfImage 0x14a8000
SizeOfHeaders 0x400
Checksum 0x12eb39d
Subsystem IMAGE_SUBSYSTEM_WINDOWS_CUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x100000
SizeofStackCommit 0x1000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 9c14bb4791f6fe880ca48637f3d8693d
SHA1 bcdeb4acc4342227f71424800f881f0f2a4fae09
SHA256 8a995a4865d98197533805c21664ac31c171c0d0ea90f02c36b6474badb4d79a
SHA3 65be5be13b8396857b536eabb8a18f32a8f8db0557794303adf03b061a1f4652
VirtualSize 0xc4beb0
VirtualAddress 0x1000
SizeOfRawData 0xc4c000
PointerToRawData 0x400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.54881

.textidx

MD5 c346184f960f27a7836a7872c133d88f
SHA1 3e34ee7cd8305603711afc2cbb569931522a0e62
SHA256 91db6804210b71a9f3835931a76199cdc8640b34b77fb2d3b2956b37237b6d78
SHA3 2d147d3988a6ec303dea507da9b8a0ae1f8abd552548c4f88984a9adf9cf0616
VirtualSize 0x1e858d
VirtualAddress 0xc4d000
SizeOfRawData 0x1e8600
PointerToRawData 0xc4c400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 5.88881

.rdata

MD5 f42d23957948b76bad56a9136de92d26
SHA1 d29ae7db88b62eb49f23ae68dff7f622d1cadea2
SHA256 4ec68b691b920866ccf68566998c4d5259e61032562f99e209cd1935e134f5b6
SHA3 fafce10e1e8d9394a63d5fea80f8b42514bd9a5a9b155d12f7c53a75c39697c8
VirtualSize 0x2d0484
VirtualAddress 0xe36000
SizeOfRawData 0x2d0600
PointerToRawData 0xe34a00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 5.85366

.data

MD5 305d24035ec57186a09994e93040e5e2
SHA1 4f82cffbcdd59fe8c7f829a6285b325c7e623b5c
SHA256 bd8aea2cbcff647cca17ba63efefd502720960c281b04f52ea8957cd9d34e4ad
SHA3 250b0bdfbf9aafb9bc58098983e84eba15e4abcd74ac2999949941496c2d41ab
VirtualSize 0x2a089c
VirtualAddress 0x1107000
SizeOfRawData 0x9b200
PointerToRawData 0x1105000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 6.36865

.pdata

MD5 796d3cf44afa7a9d90971f7a2d2aa714
SHA1 25d9f6eba2b4f9dfc3695e0c1c4f3bd2369f10e8
SHA256 ceaebb34fd7fea262f2e69d871c190017dfe38d46319854924e04ffe5989ebfe
SHA3 de2ea153508f73f45ff2adfee2893176b0d196d64c59a209a454c8b6f9815673
VirtualSize 0x7b498
VirtualAddress 0x13a8000
SizeOfRawData 0x7b600
PointerToRawData 0x11a0200
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 6.72571

_RDATA

MD5 b673d1c38282b9ffe14fc17ea180b869
SHA1 b1016130cd48a6f58bd30215ca690b14ec535368
SHA256 44ec0699d842d3b75b1a076dfc527c57797aa1d8440f175bf837d4f7c289f502
SHA3 bde324c1c9dd0de4955203dd7d0da768df3033e0389b8274947feab6051a412e
VirtualSize 0x15c
VirtualAddress 0x1424000
SizeOfRawData 0x200
PointerToRawData 0x121b800
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 3.33756

.rsrc

MD5 097c3d7824548c3db22db2de8bcb1050
SHA1 72ba07d23d750ba45508b21ecf06a2d63a64db64
SHA256 22786a98e165c1b625a5b886a15747c32aadf728d424e692a1515ac9d51cc92e
SHA3 c9194babffaebd178a744837f40158d856cac3ea6486056d22b7d5ef249977c3
VirtualSize 0x82528
VirtualAddress 0x1425000
SizeOfRawData 0x82600
PointerToRawData 0x121ba00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 3.67627

Imports

WINHTTP.dll WinHttpGetProxyForUrl
WinHttpCloseHandle
WinHttpGetIEProxyConfigForCurrentUser
WinHttpOpen
WS2_32.dll WSASocketW
ntohl
inet_ntop
inet_pton
getnameinfo
WSASocketA
getservbyname
getservbyport
inet_addr
freeaddrinfo
InetPtonW
getaddrinfo
WSAPoll
inet_ntoa
gethostbyname
gethostname
WSAStartup
sendto
recvfrom
select
__WSAFDIsSet
WSASetLastError
setsockopt
recv
WSAWaitForMultipleEvents
WSAResetEvent
WSAEventSelect
socket
WSACreateEvent
WSACloseEvent
send
WSAIoctl
WSACleanup
gethostbyaddr
shutdown
listen
htons
htonl
getsockopt
getsockname
getpeername
ioctlsocket
connect
bind
accept
closesocket
WSAEnumNetworkEvents
WSAGetLastError
ntohs
IPHLPAPI.DLL GetAdaptersInfo
GetExtendedTcpTable
SendARP
GetAdaptersAddresses
ADVAPI32.dll CryptAcquireContextW
CryptReleaseContext
CredFree
CredEnumerateW
RegOpenKeyA
RegDeleteValueW
RegCreateKeyExW
RegQueryInfoKeyW
RegEnumValueW
RegEnumKeyExW
RegOpenKeyExW
OpenProcessToken
GetTokenInformation
IsValidSid
ConvertSidToStringSidW
GetUserNameA
CryptGetHashParam
StartServiceA
ReportEventA
RegisterEventSourceA
RegQueryInfoKeyA
RegEnumKeyExA
RegSetValueExW
RegSetValueExA
RegQueryValueExW
RegQueryValueExA
RegCreateKeyExA
RegOpenKeyExA
RegEnumValueA
IsTextUnicode
RegDeleteValueA
RegCloseKey
CryptGenRandom
CryptEnumProvidersW
CryptSignHashW
CryptDecrypt
CryptExportKey
CryptGetUserKey
CryptGetProvParam
CryptSetHashParam
CryptCreateHash
ReportEventW
RegisterEventSourceW
DeregisterEventSource
QueryServiceStatus
GetUserNameW
OpenServiceA
OpenSCManagerA
CloseServiceHandle
CryptEncrypt
CryptImportKey
CryptDestroyKey
CryptDestroyHash
CryptHashData
CryptAcquireContextA
ole32.dll CoInitializeSecurity
CoSetProxyBlanket
CoCreateInstance
CoQueryProxyBlanket
CoInitializeEx
CoUninitialize
CoTaskMemFree
SHELL32.dll #680
SHGetKnownFolderIDList
SHGetFolderPathA
SHGetPathFromIDListW
USER32.dll wsprintfA
DialogBoxIndirectParamA
CreateDialogIndirectParamA
GetDlgItem
GetParent
GetWindowLongA
ScreenToClient
MessageBeep
GetWindowRect
GetClientRect
SetWindowTextA
SetDlgItemTextA
GetFocus
EndDialog
SetFocus
GetDlgItemTextW
MoveWindow
ShowWindow
SendMessageA
GetSystemMetrics
GetActiveWindow
MessageBoxW
GetUserObjectInformationW
GetProcessWindowStation
MessageBoxA
EnableWindow
GetDlgItemTextA
CRYPT32.dll CertGetIntendedKeyUsage
CertGetEnhancedKeyUsage
CryptUnprotectData
CertGetCertificateContextProperty
CertOpenSystemStoreW
CertOpenStore
CertCloseStore
CertEnumCertificatesInStore
CertFindCertificateInStore
CertFreeCertificateContext
CryptStringToBinaryA
CertOpenSystemStoreA
CryptMsgGetParam
CryptMsgClose
CertDuplicateCertificateContext
CertAddCertificateContextToStore
CertFindExtension
CertGetNameStringA
CryptQueryObject
CertCreateCertificateChainEngine
CertFreeCertificateChainEngine
CertGetCertificateChain
CertFreeCertificateChain
PFXImportCertStore
CryptDecodeObjectEx
NETAPI32.dll Netbios
RPCRT4.dll UuidCreate
WININET.dll InternetCloseHandle
InternetQueryOptionA
HttpSendRequestW
HttpOpenRequestW
InternetSetOptionW
InternetOpenW
InternetQueryDataAvailable
InternetReadFile
InternetConnectW
USERENV.dll GetProfilesDirectoryA
WINTRUST.dll WinVerifyTrust
COMCTL32.dll #17
dbghelp.dll SymGetModuleBase64
StackWalk64
SymInitialize
SymFunctionTableAccess64
KERNEL32.dll UnhandledExceptionFilter
IsProcessorFeaturePresent
GetStartupInfoW
InitializeSListHead
RtlPcToFileHeader
RtlUnwindEx
RtlUnwind
WriteConsoleW
SetConsoleCtrlHandler
RtlLookupFunctionEntry
GetCPInfo
ExitProcess
FlsFree
FlsSetValue
SetEnvironmentVariableW
SetCurrentDirectoryW
GetDriveTypeW
GetFileInformationByHandle
FreeLibraryAndExitThread
FlsGetValue
SetFileTime
SetFilePointerEx
FlsAlloc
LCMapStringEx
DecodePointer
EncodePointer
GetStringTypeW
CompareFileTime
DeleteTimerQueueEx
CreateTimerQueueTimer
CreateTimerQueue
ConvertThreadToFiber
TerminateThread
CreateEventW
GetSystemPowerStatus
TzSpecificLocalTimeToSystemTime
GetPhysicallyInstalledSystemMemory
CreateFiber
InitializeCriticalSectionAndSpinCount
FindFirstFileExW
GetCommandLineA
GetDateFormatW
GetTimeFormatW
HeapReAlloc
CompareStringW
HeapCompact
SetEndOfFile
UnlockFile
FlushViewOfFile
LockFile
OutputDebugStringW
UnlockFileEx
LCMapStringW
HeapDestroy
GetFileAttributesA
IsValidLocale
GetUserDefaultLCID
EnumSystemLocalesW
HeapCreate
HeapValidate
GetFileAttributesW
FlushFileBuffers
GetTempPathW
HeapSize
LockFileEx
GetDiskFreeSpaceW
CreateFileMappingA
GetExitCodeProcess
CreateProcessW
SetStdHandle
GetDiskFreeSpaceA
GetConsoleOutputCP
GetFileAttributesExW
OutputDebugStringA
IsValidCodePage
GetOEMCP
DeleteFileW
GetTempPathA
AreFileApisANSI
DeleteFileA
GetEnvironmentStringsW
ReadFile
K32GetModuleInformation
K32GetModuleFileNameExW
K32EnumProcessModules
Module32NextW
Module32FirstW
Sleep
SetUnhandledExceptionFilter
MultiByteToWideChar
WideCharToMultiByte
GetCurrentDirectoryA
CloseHandle
GetLastError
QueryPerformanceCounter
QueryPerformanceFrequency
WaitForSingleObject
GetProcessTimes
GetCurrentProcess
GetCurrentProcessId
TerminateProcess
CreateProcessA
OpenProcess
GlobalMemoryStatusEx
GetSystemTimeAsFileTime
GetComputerNameExA
LocalAlloc
LocalFree
FormatMessageA
CreateSemaphoreA
SystemTimeToFileTime
CreateToolhelp32Snapshot
Process32Next
ReleaseMutex
CreateMutexA
GetCurrentThreadId
GetModuleFileNameA
GlobalFree
HeapAlloc
HeapFree
GetProcessHeap
ReleaseSemaphore
OpenSemaphoreA
GetCurrentDirectoryW
CreateDirectoryA
CreateDirectoryW
CreateFileA
CreateFileW
FindClose
FindFirstFileA
FindNextFileA
GetFinalPathNameByHandleA
GetFinalPathNameByHandleW
GetFullPathNameW
GetFullPathNameA
SetFileAttributesA
SetFileAttributesW
GetModuleFileNameW
GetModuleHandleA
MoveFileExW
FreeEnvironmentStringsW
WriteFile
DuplicateHandle
CreatePipe
MoveFileExA
GetCurrentThread
OpenThread
GetThreadTimes
RtlCaptureContext
GetThreadContext
FreeLibrary
GetProcAddress
LoadLibraryA
ReleaseSRWLockExclusive
AcquireSRWLockExclusive
SetEvent
CreateEventA
GetSystemTimePreciseAsFileTime
SystemTimeToTzSpecificLocalTime
FileTimeToSystemTime
EnterCriticalSection
LeaveCriticalSection
InitializeCriticalSectionEx
DeleteCriticalSection
GetSystemDirectoryA
SleepEx
SetLastError
GetTickCount
WaitForSingleObjectEx
GetEnvironmentVariableA
GetStdHandle
GetFileType
PeekNamedPipe
WaitForMultipleObjects
VerSetConditionMask
VerifyVersionInfoW
CreateThread
LoadLibraryExA
FormatMessageW
GetFileSizeEx
SetFilePointer
FindFirstFileW
FindNextFileW
LoadLibraryExW
GetFileSize
ExitThread
DeviceIoControl
GetModuleHandleExW
GetEnvironmentVariableW
GetModuleHandleW
InitializeSRWLock
ReleaseSRWLockShared
AcquireSRWLockShared
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
GetSystemInfo
VirtualFree
SwitchToFiber
DeleteFiber
CreateFiberEx
GetACP
RtlVirtualUnwind
InitializeCriticalSection
TryEnterCriticalSection
GetExitCodeThread
ConvertFiberToThread
ConvertThreadToFiberEx
GetSystemTime
LoadLibraryW
GetConsoleMode
SetConsoleMode
ReadConsoleA
ReadConsoleW
SetHandleInformation
SetErrorMode
GetVersion
GetEnvironmentStrings
FreeEnvironmentStringsA
GetVersionExA
lstrlenA
GetWindowsDirectoryA
RaiseException
ResetEvent
GetThreadPriority
ResumeThread
SetThreadContext
GetProcessAffinityMask
SetThreadAffinityMask
GetCommandLineW
GetLocalTime
GetTimeZoneInformation
GetSystemWindowsDirectoryA
GetDriveTypeA
GetVolumeInformationA
SetNamedPipeHandleState
WaitNamedPipeA
DefineDosDeviceA
QueryDosDeviceA
CreateFileMappingW
MapViewOfFile
UnmapViewOfFile
IsDebuggerPresent
DebugBreak
GetComputerNameExW
GetVersionExW
GetLocaleInfoW
CreateMutexW
COMDLG32.dll GetOpenFileNameA
OLEAUT32.dll SysStringLen
SafeArrayAccessData
SafeArrayUnaccessData
SafeArrayGetUBound
VariantClear
VariantInit
SysAllocString
SysAllocStringLen
SafeArrayDestroy
SysFreeString
SafeArrayGetLBound
PSAPI.DLL EnumProcesses
EnumProcessModules
GetProcessMemoryInfo
GetModuleBaseNameA
dhcpcsvc.DLL DhcpRequestParams
SHLWAPI.dll PathRemoveBackslashW
Secur32.dll InitSecurityInterfaceA
bcrypt.dll BCryptCloseAlgorithmProvider
BCryptGenRandom
BCryptOpenAlgorithmProvider

Delayed Imports

1

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x2e8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.37544
MD5 7db08f83d856d83e986c71d6b91fc26a
SHA1 fd17b29ea018cf0eb3f74841f3962ed251856ff5
SHA256 2af35c5d441ed42d4cc2edeca3afd0f8495a29c0f1abf40fbaaf05046ce71075
SHA3 927235f19637584cde6e656996186417f2bd77e7a153a3d02ceb15e08597f324

2

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x1628
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.94774
MD5 856f680751ccc152c9b658358e3ff61b
SHA1 c28fd00115d8ff340837c3d412f6d4375ab02925
SHA256 b6e5764ab3b3234e12537b30934c780e3875aac5c0166389d318478f4436f4dc
SHA3 0a04e3d955a58dda15014db9f9306fca39b31468793ca3551edb29b6ef8a1f21

3

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0xea8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.39017
MD5 217059e4ffc928ee082c99c5d5330b68
SHA1 0c6d02d6c3419a949df65ff7582d0d8f57efeadc
SHA256 7875e6c773edef918b5497b9dfc9a740f99db7452d073678009cf5088ce6bfa1
SHA3 c4e10c9014b73bde9e3bac373e04f7eb91bcd8a97b5a234d6c9640d7e7500a79

4

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x8a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.26959
MD5 50f68214345271de6efa840e882aae47
SHA1 8e5832135b7e9fd122a3174d8b6f3ef7eb3b779a
SHA256 bc016e6bced843a75421c51d2c78c10ce98be3e8c889a45eb7fbeeb89b44b01a
SHA3 ea95dfa16ff800db98ddb792632fce664374b9e9a6fa64616e339fe9998e7c41

5

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x608
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.17717
MD5 bc5f1da54a9feb1fd140787ab2509394
SHA1 0f8bd4ef6e637a2cc3421410724ddbf813208013
SHA256 acbc53014a12f4c0b36d26e86a185189d0ceedb669e06eb0d411fc1850517414
SHA3 e7ac09bf2f6b56d5b2d7988c90e31c047fb98b19645b575ccb426db4721a592e

6

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x568
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.17804
MD5 59b1182934e2f0ba455f0a0300d0e1a7
SHA1 72ee7f8e897a0c7f99c0402273825c3182c2636e
SHA256 3cd3f6ebfb06355b884303b217e9048a3a6cee9c41e948f0eed08a06d9400994
SHA3 4f7bdcb68e4c703536f8d517de8b9e9cb104eafa128e2f83b6f373b707011ecf

7

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x32028
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 1.46386
MD5 187462288fb588518867993bbb2ddb87
SHA1 d242e55dbf74b8ab292536c1240001b908be3fa7
SHA256 742db4871c11261f622db905d526d85d4437131b0a388526189e4f3a39f15179
SHA3 cacef1b0596ff436f4359452693dcc583a583fe0fefe7c8ab75612e0d4ee2bae

8

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x3228
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.29829
MD5 edce7dc6f56614d1c1a10e10491d260d
SHA1 8fac8f6c06e95089c4601e35cd138fc074a23177
SHA256 0177b9070043f5d4d18c1d3a667a70995e51efe9aa8a4926ece5037bd38bf31d
SHA3 2fa079834dfe8604481cfc11529d791af43020aa7bd745b251a343be84dca794

9

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x1ca8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.52669
MD5 9edc725c49f5fa4e52dd980bb6e1ad52
SHA1 3556e00add935402af7b946ec2c4ef39b5cd30be
SHA256 1a80bc4e0de363a08dc0be6b07758c098b55dbbdd6a6b09c4cb77332efe9ae0f
SHA3 693e35aa5b90fdd4a9c92b9678311c0b1b047da9252ae4b87eda6f71d94c89d3

10

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x1428
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.76742
MD5 9ad730b98808d19d69eb41e2c601f810
SHA1 a06c73c404a051589410a89dbe074ec5a0e8e9a6
SHA256 ca3d0d673e1c39661fe99e5cdd777107772186be0d88b80115c1019e5de14352
SHA3 91c86079d5f3c70e67b31cda3d32cd7ab770114f19e92432e4873ee0bfccdc44

11

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0xca8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.12399
MD5 156e60541235741bc83fa0e90d35e7a8
SHA1 fcaaa38bec3199f8a697859a73f6d4c0c279c19c
SHA256 a6ce98e9b485b891758a06aa640690601f000cd9e059ae8056b548c715a41dc2
SHA3 c0b61e99e5064b97890a59be81c1d0df417462ddb0eb307aae5bb179077e18b7

12

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x748
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.32479
MD5 c537c1bc2308d4f778450f1c3f931b74
SHA1 a819a36167f12004a16e4cec4d95ebc95b2db1a7
SHA256 aa304983bb94994d9da87342c3320d66c1020be07d2551c85d5e23c0c44159b4
SHA3 5e34dee2aec14d0b246193bfd3b47f22eb9addcf3b2c34d822ff1e7f07426d30

13

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x528
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.41158
MD5 9ef05f95e94928a99a756556760f5a96
SHA1 12e163ae62315b93339e13d68f0ef7cef2483fd8
SHA256 1fa4a0f14a96fc48cfdcfd6deff840bba70d5b700ffdd3d99f9ca32e63d049f9
SHA3 28a6842fa32c687ca4b5e20e9833869a75636cc087031ecd6a2a1356f48eca08

14

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x368
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.50135
MD5 032ba9fc74b2e8e7bb245f9390c6429b
SHA1 1f56ad6fd28e77942c28eeb714190d1fc7bff976
SHA256 2023dcaf69a7acd6fc291596605fcf9e81d6214571e356081cef25b5404b7b46
SHA3 9ae6e42572f4676cb7b39ec5718e57bf4d327ad9c89af67ae5060ca526dac204

15

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0xbbe9
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.60911
Detected Filetype PNG graphic file
MD5 9113b28fbe08c04a0843c50c3460bd3e
SHA1 0ddf5adf65289ab84e042febce54561a76e06a70
SHA256 21715a295e833cdeb97df5f8a946c75208b954fb0dee5e41ea93a5cf9057c882
SHA3 d8262f05df716602a2e0a6b561ad51d9dc5d3d9b61d44285d62af7e80b670fb1

16

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x7ea0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.75234
Detected Filetype PNG graphic file
MD5 a8ad0f8879abb3820b48c542cba41e06
SHA1 9d072e246aca7d6199ae38aaaa1a627b60502547
SHA256 29a349ef9cd0af1c828967fe6fa80a1a4bd6bd6f1f04f08ff7e63681fe45b4eb
SHA3 d8a0d07571cacbcd9bec74404a129cc71957ccbc5e6526a6aea53a1599a48118

17

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x4b2b
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.75891
Detected Filetype PNG graphic file
MD5 64848205b3528ac95c7194f5ae2d6810
SHA1 7e13fc186288dc2f09e8817d8c98457e6473b269
SHA256 71c06009fb71776779d2ca73420cfe0d1dcf81b8956d65e7848fba49e61a1b45
SHA3 114dc19484469892df28245b2f52fb894f269ae657499235b83fe46d705e7a95

18

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x1ee1
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.84296
Detected Filetype PNG graphic file
MD5 222372ce8fb21f9b07e8168215b2ad94
SHA1 25afa8722e57b58d8d067356d20078891cb90f08
SHA256 967f72a3bbdfedbc1d6ec51271bf3b17dff07870eb2b891afae94144d6df43a1
SHA3 5e0a284f3abb9ae46326fc5b288d2940561063f4604b0d8959c176a164895f32

19

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x10828
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 1.89614
MD5 409d54082421fbb5fac125f7cddcf4e9
SHA1 79a09f0eef01cdd6cd82786f26fbf14c813e9e2c
SHA256 fe9e4d7341328f2aafcab795be4143ef33ba7e42712205034181699f6034263b
SHA3 79b46ce2817343ec35d4329834d3fe261bed430ada9d8e6d3feb56b2f9f5649d

20

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x94a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.03611
MD5 ae0823a6e6e184b96b27874fa70909a1
SHA1 16e46e5c7258b75d9d6964ecb6d786c55fa684ec
SHA256 93d35c8a9bbd8c27363a2dddd29aba32a1eeff0d7ea69ec317d43f138098a849
SHA3 58c5fb3ce039c2b7ba783af3f44573e5360094906692edbbd347026ca4265855

21

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x5488
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.19684
MD5 2a0c0049ae157785e6f9575cb7262932
SHA1 71ac6bded085bcfa71e2d2b92833569957236405
SHA256 09236fcbacf07d308ce23f285f1deb9a5289b4a79402cd8766f109fc9429a3d6
SHA3 4eb99bea3c19f65158a61abf70a5c721fb6c26f65d11a5436cb41507ff885a09

22

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x4228
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.32845
MD5 b1f0dcfa6bd3c95629612d554d64ee56
SHA1 0fef6f280099775ff3e8602e704f67e902bd7b40
SHA256 aeb72509f7a100052dc81150151652d8f3308acb8020c4cfd8bf08d476111bfc
SHA3 8403a88d75a5fad27533b3152076d6e0df7eb70d3fb1ca38f84830e078e15b51

23

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x25a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.52787
MD5 fa5a0e0cdc2bfd0a6a7650a8fa98af93
SHA1 4f6f021b7385d65b2f2f3cfe2efe895260a01bb5
SHA256 80ea9d3ab5501971c7c46633f320a0da2353bcf8dc4071a371a73ccc8333ce54
SHA3 91dab91b634dd75fd7f9815b79884645a36c20e79e50a72d9519b076e90c2fa8

24

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x1a68
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.73463
MD5 cb4653afcfc227eaa0c5612fc4b45efd
SHA1 79dc04702206602ede524ca77f546c789b2c550f
SHA256 f359f3f8955463bbb6811eb802db03400eea774216c71ec0cce4bcadd6831d04
SHA3 f2078317fa87cb15c4cd248b482b5c85689633010f58dd67145a3f9035efb99b

25

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x10a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.0407
MD5 89ae7c9683887517da28364612ace451
SHA1 c855369a53f42f1d331e0c86dc8be0cc2ecf5135
SHA256 66aa230f890e67c5230d89c298b0905098e5c3c03f602673731eb8aa371122d2
SHA3 5b1c6df1f36f1d74783b5f45f027710a945003edb541e419297c51a795c2bfa5

26

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x988
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.25526
MD5 2d1748c77c5382e740f349a198056b82
SHA1 c59c21c49e1d3e51064c857408e9b6a5e350a05f
SHA256 13da762c03807334c198a111f0d43a897b905e9ed9e490279e5884484c744389
SHA3 4c477c180cf83e1acf9112cc6271bf9970cbf0a5c2bf828b3398870f95e62572

27

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x6b8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.94239
MD5 8eef1a3e91dffac4c7b3028c7a285252
SHA1 c78242b5d74488f073da9894443c7c21f17ba274
SHA256 625c5498e16be708322dfe2e98941ef526958b03d00bc9eb083fdaee5f4630aa
SHA3 86004c36cafeb4066af274edba38371a8c0e254cadab5f609c9b06096e63b8db

28

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x468
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.02603
MD5 b7e2e509d6fca5633e37829ed0308df9
SHA1 5282dcae9f3b4820ddc109339be4e303634a18e4
SHA256 0388be9dc186a1fdf30919823033272c85ae8d0888c31a8a35f3705ee11d40ab
SHA3 ac37d23478fd00adec4e2167f564c0f47c95dcf4053beab2745aad733428222e

101

Type RT_GROUP_ICON
Language English - United States
Codepage UNKNOWN
Size 0x18e
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.29845
Detected Filetype Icon file
MD5 7b7a92361ea82a4f49678c717cb40f73
SHA1 3a1d4662bab89b08ca1859f63866ad756d161d79
SHA256 a23c1796a2b5b29290bdd1ae8301bbb681430386c7e0a1d35b1156bd6d98ae47
SHA3 21c7bf3503c85571d9d3e7d70af008f6e806d40f65c6fdca25a0cb73bc96f70f

1 (#2)

Type RT_VERSION
Language English - United States
Codepage UNKNOWN
Size 0x4a0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.46864
MD5 1c9ac02dc4539fe181e4f4e6121d482b
SHA1 849834eaf9c7de5b72d36881dceb1b4add9cbf4d
SHA256 d660a2494c47e3695f60f510f642da7ef6055a05a95a15fbcc172c5c2c00e3ac
SHA3 332b1798b6f664d2607d7d66b4a4719160fa89505294aaa01a4fbda0f2e81e2f

Version Info

Signature 0xfeef04bd
StructVersion 0x10000
FileVersion 2026.1.0.0
ProductVersion 2026.1.0.0
FileFlags (EMPTY)
FileOs VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
FileType VFT_APP
Language English - United States
CompanyName ANSYS, Inc.
FileDescription Ansys Common Licensing. Modified at Ansys Release 2026 R1.
FileVersion (#2) 2026.1.0.0
InternalName ansyscl
LegalCopyright Copyright (C) 2026 Synopsys, Inc. and ANSYS, Inc. All rights reserved.
LegalTrademarks Ansys® is a registered trademark of ANSYS, Inc. and FlexNet Publisher is a trademark of Flexera Software Inc.
OriginalFilename ansyscl.exe
ProductName Ansys Common Licensing
ProductVersion (#2) 2026.1.0.0
Resource LangID English - United States

IMAGE_DEBUG_TYPE_CODEVIEW

Characteristics 0
TimeDateStamp 2026-Jan-28 22:00:18
Version 0.0
SizeofData 116
AddressOfRawData 0x10549f0
PointerToRawData 0x10533f0
Referenced File C:\agent\_work\23\s\Licensing261\LicensingCore\AnsysLi\build\winx64\x64\Release\ansyscl.pdb

IMAGE_DEBUG_TYPE_VC_FEATURE

Characteristics 0
TimeDateStamp 2026-Jan-28 22:00:18
Version 0.0
SizeofData 20
AddressOfRawData 0x1054a64
PointerToRawData 0x1053464

IMAGE_DEBUG_TYPE_POGO

Characteristics 0
TimeDateStamp 2026-Jan-28 22:00:18
Version 0.0
SizeofData 1064
AddressOfRawData 0x1054a78
PointerToRawData 0x1053478

TLS Callbacks

StartAddressOfRawData 0x141054ed0
EndAddressOfRawData 0x141054ed8
AddressOfIndex 0x141384818
AddressOfCallbacks 0x140e37150
SizeOfZeroFill 0
Characteristics IMAGE_SCN_ALIGN_4BYTES
Callbacks (EMPTY)

Load Configuration

Size 0x140
TimeDateStamp 1970-Jan-01 00:00:00
Version 0.0
GlobalFlagsClear (EMPTY)
GlobalFlagsSet (EMPTY)
CriticalSectionDefaultTimeout 0
DeCommitFreeBlockThreshold 0
DeCommitTotalFreeThreshold 0
LockPrefixTable 0
MaximumAllocationSize 0
VirtualMemoryThreshold 0
ProcessAffinityMask 0
ProcessHeapFlags (EMPTY)
CSDVersion 0
Reserved1 0
EditList 0
SecurityCookie 0x14119d078

RICH Header

XOR Key 0x2783db93
Unmarked objects 0
C++ objects (28900) 240
253 (32420) 18
C objects (32420) 20
ASM objects (32420) 10
ASM objects (28900) 27
C objects (28900) 41
ASM objects (VS2010 SP1 build 40219) 1
C objects (40121) 138
ASM objects (VS2013 UPD4 build 31101) 1
208 (65501) 4
Imports (65501) 10
C objects (CVTCIL) (27412) 1
ASM objects (VS2019 Update 11 (16.11.19) compiler 30147) 1
C objects (VS2019 Update 11 (16.11.19) compiler 30147) 45
Imports (30795) 2
Imports (VS2008 SP1 build 30729) 8
C objects (VS2013 UPD4 build 31101) 771
C objects (VS2008 SP1 build 30729) 1
C objects (VS2013 UPD5 build 40629) 68
C++ objects (32420) 92
C objects (VS2019 Update 10 (16.10.4) compiler 30040) 1
C objects (VS2010 SP1 build 40219) 472
ASM objects (30158) 1
C objects (30158) 269
Imports (28900) 27
Total imports 507
C objects (32548) 937
Unmarked objects (#2) 39
C objects (32545) 137
C objects (VS2022 Update 4 (17.4.3-4) compiler 31937) 110
ASM objects (VS2022 Update 4 (17.4.3-4) compiler 31937) 1
C objects (32541) 3
C++ objects (32541) 247
Resource objects (32541) 1
Linker (32541) 1

Errors

[*] Warning: [plugin_authenticode] Hashing algorithm 2.16.840.1.101.3.4.2.2 is not supported.
Leave a comment

No comments yet.