Architecture |
IMAGE_FILE_MACHINE_I386
|
Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
Compilation Date |
2010-Jan-06 09:56:24
|
Detected languages |
Dutch - Netherlands
English - United States
|
Comments |
This installation was built with Inno Setup.
|
CompanyName |
emu8086
|
FileDescription |
emu8086 microprocessor emulator Setup
|
FileVersion |
|
LegalCopyright |
Copyright © 2010
|
ProductName |
emu8086 microprocessor emulator
|
ProductVersion |
|
Suspicious |
The PE is possibly packed. |
Unusual section name found: .itext
|
Malicious |
The PE contains functions mostly used by malware. |
[!] The program may be hiding some of its imports:
- LoadLibraryExW
- GetProcAddress
- LoadLibraryW
Can access the registry:
- RegQueryValueExW
- RegOpenKeyExW
- RegCloseKey
Possibly launches other programs:
Memory manipulation functions often used by packers:
- VirtualAlloc
- VirtualProtect
Functions related to the privilege level:
- OpenProcessToken
- AdjustTokenPrivileges
Can shut the system down or lock the screen:
|
Info |
The PE's resources present abnormal characteristics. |
The binary may have been compiled on a machine in the UTC+1 timezone.
|
Suspicious |
The file contains overlay data. |
3085508 bytes of data starting at offset 0x22a00.
The overlay data has an entropy of 7.99989 and is possibly compressed or encrypted.
Overlay data amounts for 95.6055% of the executable.
|
Suspicious |
VirusTotal score: 1/62 (Scanned on 2021-12-28 13:55:36) |
eGambit:
Unsafe.AI_Score_82%
|
MD5 |
ae66bed5389bc27903ca80c80a2e5a84
|
SHA1 |
40d0dbd8b388fb9f4c0e21d3fa3a72200abeebf0
|
SHA256 |
175061d9f03a56de25e867fd4aaf16925e6fb03afdfb3b403c05bda49ea716e7
|
SHA3 |
cf1d36d7e2cf11293e959f61530886d1c01b8a38c8b607e874acf1b9463916fc
|
SSDeep |
98304:BuPPCK2yMyHgjP3AUm1pkv94KaOfUKx7xTyFK:BuCK2yFgL3rm18sGxTyFK
|
Imports Hash |
9d8fb47598991ad8c0094898c32a6c3b
|
e_magic |
MZ
|
e_cblp |
0x50
|
e_cp |
0x2
|
e_crlc |
0
|
e_cparhdr |
0x4
|
e_minalloc |
0xf
|
e_maxalloc |
0xffff
|
e_ss |
0
|
e_sp |
0xb8
|
e_csum |
0
|
e_ip |
0
|
e_cs |
0
|
e_ovno |
0x1a
|
e_oemid |
0
|
e_oeminfo |
0
|
e_lfanew |
0x100
|
Signature |
PE
|
Machine |
IMAGE_FILE_MACHINE_I386
|
NumberofSections |
9
|
TimeDateStamp |
2010-Jan-06 09:56:24
|
PointerToSymbolTable |
0
|
NumberOfSymbols |
0
|
SizeOfOptionalHeader |
0xe0
|
Characteristics |
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_BYTES_REVERSED_HI
IMAGE_FILE_BYTES_REVERSED_LO
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LINE_NUMS_STRIPPED
IMAGE_FILE_LOCAL_SYMS_STRIPPED
IMAGE_FILE_RELOCS_STRIPPED
|
Magic |
PE32
|
LinkerVersion |
2.0
|
SizeOfCode |
0x15400
|
SizeOfInitializedData |
0xec00
|
SizeOfUninitializedData |
0
|
AddressOfEntryPoint |
0x000163C4 (Section: .itext)
|
BaseOfCode |
0x1000
|
BaseOfData |
0x17000
|
ImageBase |
0x400000
|
SectionAlignment |
0x1000
|
FileAlignment |
0x200
|
OperatingSystemVersion |
5.0
|
ImageVersion |
6.0
|
SubsystemVersion |
5.0
|
Win32VersionValue |
0
|
SizeOfImage |
0x2f000
|
SizeOfHeaders |
0x400
|
Checksum |
0
|
Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
DllCharacteristics |
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
|
SizeofStackReserve |
0x100000
|
SizeofStackCommit |
0x4000
|
SizeofHeapReserve |
0x100000
|
SizeofHeapCommit |
0x1000
|
LoaderFlags |
0
|
NumberOfRvaAndSizes |
16
|
MD5 |
4bf144e0c68fe03f1b7fb2ef67177271
|
SHA1 |
aeee7d8207ee48e25e2c5e80c2ef54fdfdaf09c7
|
SHA256 |
495332ae637399dbae70c0f66f5958018f9b2f146a810f19e3c41207dbaf7aee
|
SHA3 |
365f015ac7dbb617d1cd84989b9b01bacb2156de0b53652ef21869935cef7010
|
VirtualSize |
0x14618
|
VirtualAddress |
0x1000
|
SizeOfRawData |
0x14800
|
PointerToRawData |
0x400
|
PointerToRelocations |
0
|
PointerToLineNumbers |
0
|
NumberOfLineNumbers |
0
|
NumberOfRelocations |
0
|
Characteristics |
IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
|
Entropy |
6.46109
|
MD5 |
8587da5c219d756050a753a38c4bc470
|
SHA1 |
47a1be65511f6f987d68506867e89eba6e42e551
|
SHA256 |
54d6cf39a37790175c65db4f6a51bbc3b733bbcd928b85d683388201d4e59b57
|
SHA3 |
b4494effc613c5346473c5fe3aa0e4d02532228edf5d2218ffdb96a04c98314b
|
VirtualSize |
0xb34
|
VirtualAddress |
0x16000
|
SizeOfRawData |
0xc00
|
PointerToRawData |
0x14c00
|
PointerToRelocations |
0
|
PointerToLineNumbers |
0
|
NumberOfLineNumbers |
0
|
NumberOfRelocations |
0
|
Characteristics |
IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
|
Entropy |
5.80234
|
MD5 |
ecda382181a019fb79f1309fe2ff536a
|
SHA1 |
58e3f1f37ae7f7fc6dadd21022b410c019d0ca59
|
SHA256 |
13c93bad1d869639b611f0c74677eb2b332495fe18d1a88d1878f2e1e85672da
|
SHA3 |
1efd2999c90cca8be32c8d09d9fe52bc0026a6ca8679395329bd93ac5d9ee8d8
|
VirtualSize |
0xd9c
|
VirtualAddress |
0x17000
|
SizeOfRawData |
0xe00
|
PointerToRawData |
0x15800
|
PointerToRelocations |
0
|
PointerToLineNumbers |
0
|
NumberOfLineNumbers |
0
|
NumberOfRelocations |
0
|
Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
|
Entropy |
2.67574
|
MD5 |
d41d8cd98f00b204e9800998ecf8427e
|
SHA1 |
da39a3ee5e6b4b0d3255bfef95601890afd80709
|
SHA256 |
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
|
SHA3 |
a7ffc6f8bf1ed76651c14756a061d662f580ff4de43b49fa82d80a4b80f8434a
|
VirtualSize |
0x570c
|
VirtualAddress |
0x18000
|
SizeOfRawData |
0
|
PointerToRawData |
0x16600
|
PointerToRelocations |
0
|
PointerToLineNumbers |
0
|
NumberOfLineNumbers |
0
|
NumberOfRelocations |
0
|
Characteristics |
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
|
MD5 |
b47eaca4c149ee829de76a342b5560d5
|
SHA1 |
56a0ec8ac42ef35b0ee132508701868d83befc42
|
SHA256 |
1ea5a02fe0fde79fdd2d25e4a9b685d18118b74dcc53bbba9d54df63a6fd53c0
|
SHA3 |
a6c4a3115f9b16fd917a83f2157a158c28362886cd7414b31f05d345ab308a17
|
VirtualSize |
0xf9e
|
VirtualAddress |
0x1e000
|
SizeOfRawData |
0x1000
|
PointerToRawData |
0x16600
|
PointerToRelocations |
0
|
PointerToLineNumbers |
0
|
NumberOfLineNumbers |
0
|
NumberOfRelocations |
0
|
Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
|
Entropy |
4.96778
|
MD5 |
d41d8cd98f00b204e9800998ecf8427e
|
SHA1 |
da39a3ee5e6b4b0d3255bfef95601890afd80709
|
SHA256 |
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
|
SHA3 |
a7ffc6f8bf1ed76651c14756a061d662f580ff4de43b49fa82d80a4b80f8434a
|
VirtualSize |
0x8
|
VirtualAddress |
0x1f000
|
SizeOfRawData |
0
|
PointerToRawData |
0x17600
|
PointerToRelocations |
0
|
PointerToLineNumbers |
0
|
NumberOfLineNumbers |
0
|
NumberOfRelocations |
0
|
Characteristics |
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
|
MD5 |
3746f5876803f8f30db5bb2deb8772ae
|
SHA1 |
65e8dad930c8c32d40ca9aff4890630f20d87074
|
SHA256 |
9c8a4b346c5df43a9f90f5d15227c2dea3e7dfabfbe8402bcba85c3b2e9c84ae
|
SHA3 |
956c3695e53f796282349fc0b391c557d3f9bef6abb0d58045dacccc70b3a4cf
|
VirtualSize |
0x18
|
VirtualAddress |
0x20000
|
SizeOfRawData |
0x200
|
PointerToRawData |
0x17600
|
PointerToRelocations |
0
|
PointerToLineNumbers |
0
|
NumberOfLineNumbers |
0
|
NumberOfRelocations |
0
|
Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
|
Entropy |
0.190489
|
MD5 |
d41d8cd98f00b204e9800998ecf8427e
|
SHA1 |
da39a3ee5e6b4b0d3255bfef95601890afd80709
|
SHA256 |
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
|
SHA3 |
a7ffc6f8bf1ed76651c14756a061d662f580ff4de43b49fa82d80a4b80f8434a
|
VirtualSize |
0x1948
|
VirtualAddress |
0x21000
|
SizeOfRawData |
0
|
PointerToRawData |
0
|
PointerToRelocations |
0
|
PointerToLineNumbers |
0
|
NumberOfLineNumbers |
0
|
NumberOfRelocations |
0
|
Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
|
MD5 |
f2c805e8534f015e5148a3e5c9a8905e
|
SHA1 |
43ac9f0bfad9df6a81d2cf39223ce91bc9f25a4a
|
SHA256 |
d4c13c62b048d946512f40eeabf69bf40799d06e124c34bb822e9007088db52d
|
SHA3 |
f15e9393f0006bf94e25fb68fc2c3a55f4f56c9b2b7e0bccc72a366142db3afa
|
VirtualSize |
0xb200
|
VirtualAddress |
0x23000
|
SizeOfRawData |
0xb200
|
PointerToRawData |
0x17800
|
PointerToRelocations |
0
|
PointerToLineNumbers |
0
|
NumberOfLineNumbers |
0
|
NumberOfRelocations |
0
|
Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
|
Entropy |
4.15066
|
oleaut32.dll |
SysFreeString
SysReAllocStringLen
SysAllocStringLen
|
advapi32.dll |
RegQueryValueExW
RegOpenKeyExW
RegCloseKey
|
user32.dll |
GetKeyboardType
LoadStringW
MessageBoxA
CharNextW
|
kernel32.dll |
GetACP
Sleep
VirtualFree
VirtualAlloc
GetSystemInfo
GetTickCount
QueryPerformanceCounter
GetVersion
GetCurrentThreadId
VirtualQuery
WideCharToMultiByte
MultiByteToWideChar
lstrlenW
lstrcpynW
LoadLibraryExW
GetThreadLocale
GetStartupInfoA
GetProcAddress
GetModuleHandleW
GetModuleFileNameW
GetLocaleInfoW
GetCommandLineW
FreeLibrary
FindFirstFileW
FindClose
ExitProcess
WriteFile
UnhandledExceptionFilter
RtlUnwind
RaiseException
GetStdHandle
CloseHandle
|
kernel32.dll (#2) |
GetACP
Sleep
VirtualFree
VirtualAlloc
GetSystemInfo
GetTickCount
QueryPerformanceCounter
GetVersion
GetCurrentThreadId
VirtualQuery
WideCharToMultiByte
MultiByteToWideChar
lstrlenW
lstrcpynW
LoadLibraryExW
GetThreadLocale
GetStartupInfoA
GetProcAddress
GetModuleHandleW
GetModuleFileNameW
GetLocaleInfoW
GetCommandLineW
FreeLibrary
FindFirstFileW
FindClose
ExitProcess
WriteFile
UnhandledExceptionFilter
RtlUnwind
RaiseException
GetStdHandle
CloseHandle
|
user32.dll (#2) |
GetKeyboardType
LoadStringW
MessageBoxA
CharNextW
|
kernel32.dll (#3) |
GetACP
Sleep
VirtualFree
VirtualAlloc
GetSystemInfo
GetTickCount
QueryPerformanceCounter
GetVersion
GetCurrentThreadId
VirtualQuery
WideCharToMultiByte
MultiByteToWideChar
lstrlenW
lstrcpynW
LoadLibraryExW
GetThreadLocale
GetStartupInfoA
GetProcAddress
GetModuleHandleW
GetModuleFileNameW
GetLocaleInfoW
GetCommandLineW
FreeLibrary
FindFirstFileW
FindClose
ExitProcess
WriteFile
UnhandledExceptionFilter
RtlUnwind
RaiseException
GetStdHandle
CloseHandle
|
advapi32.dll (#2) |
RegQueryValueExW
RegOpenKeyExW
RegCloseKey
|
comctl32.dll |
InitCommonControls
|
kernel32.dll (#4) |
GetACP
Sleep
VirtualFree
VirtualAlloc
GetSystemInfo
GetTickCount
QueryPerformanceCounter
GetVersion
GetCurrentThreadId
VirtualQuery
WideCharToMultiByte
MultiByteToWideChar
lstrlenW
lstrcpynW
LoadLibraryExW
GetThreadLocale
GetStartupInfoA
GetProcAddress
GetModuleHandleW
GetModuleFileNameW
GetLocaleInfoW
GetCommandLineW
FreeLibrary
FindFirstFileW
FindClose
ExitProcess
WriteFile
UnhandledExceptionFilter
RtlUnwind
RaiseException
GetStdHandle
CloseHandle
|
advapi32.dll (#3) |
RegQueryValueExW
RegOpenKeyExW
RegCloseKey
|
oleaut32.dll (#2) |
SysFreeString
SysReAllocStringLen
SysAllocStringLen
|
Type |
RT_ICON
|
Language |
Dutch - Netherlands
|
Codepage |
UNKNOWN
|
Size |
0x128
|
TimeDateStamp |
2010-Jan-06 10:56:26
|
Entropy |
3.25755
|
MD5 |
c5af786bfd9fd1c53c8fe9f0bd9ce38b
|
SHA1 |
4f6f7d9973b47063aa5353225a2bc5a76aa2a96a
|
SHA256 |
f59f62e7843b3ff992cf769a3c608acd4a85a38b3b302cda8507b75163659d7b
|
SHA3 |
e178a71f02edb18e31bf550d484b2cba8d865e1e9796065addb07855ce5627f9
|
Type |
RT_ICON
|
Language |
Dutch - Netherlands
|
Codepage |
UNKNOWN
|
Size |
0x568
|
TimeDateStamp |
2010-Jan-06 10:56:26
|
Entropy |
3.47151
|
MD5 |
0a451222f7037983439a58e3b44db529
|
SHA1 |
6881cba71174502883d53a8885fb90dad81fd0c0
|
SHA256 |
dc785b2a3e4ea82bd34121cc04e80758e221f11ee686fcfd87ce49f8e6730b22
|
SHA3 |
d5599c242df5383add3fb330d42b31f1751594b36bbf52195e7d1dd564e7f0e3
|
Type |
RT_ICON
|
Language |
Dutch - Netherlands
|
Codepage |
UNKNOWN
|
Size |
0x2e8
|
TimeDateStamp |
2010-Jan-06 10:56:26
|
Entropy |
3.91708
|
MD5 |
90ed3aac2a942e3067e6471b32860e77
|
SHA1 |
b849a2b9901473810b5d74e6703be78c3a7e64e3
|
SHA256 |
ca8fc96218d0a7e691dd7b95da05a27246439822d09b829af240523b28fd5bb3
|
SHA3 |
3f02085a0d69091556ede0b585f45145adce9849e175d8177c2f0fe0891a1bd8
|
Type |
RT_ICON
|
Language |
Dutch - Netherlands
|
Codepage |
UNKNOWN
|
Size |
0x8a8
|
TimeDateStamp |
2010-Jan-06 10:56:26
|
Entropy |
3.91366
|
MD5 |
af05dd5bd4c3b1fc94922c75ed4f9519
|
SHA1 |
f54685a8a314e6f911c75cf7554796212fb17c3e
|
SHA256 |
3bbacbad1458254c59ad7d0fd9bea998d46b70b8f8dcfc56aad561a293ffdae3
|
SHA3 |
150dba8cc825d5c0e9ff3c59015533288d19931847210338a3ef7cdc390c0e78
|
Type |
RT_STRING
|
Language |
UNKNOWN
|
Codepage |
UNKNOWN
|
Size |
0xc4
|
TimeDateStamp |
2010-Jan-06 10:56:26
|
Entropy |
3.13038
|
MD5 |
d2772bcc007d8465cf41352da64ed008
|
SHA1 |
3cb80c1ec7e649f89f425b6d7fdd11dd5333e052
|
SHA256 |
57fbdcb9b1d61d1269f5e9bc3e4f325029bd89778123d7703251761eebe26dea
|
SHA3 |
28c495a2cc8d92c07ea21db55f8e6ea142d60465f042d175b590db37884f5eb4
|
Type |
RT_STRING
|
Language |
UNKNOWN
|
Codepage |
UNKNOWN
|
Size |
0xcc
|
TimeDateStamp |
2010-Jan-06 10:56:26
|
Entropy |
3.36196
|
MD5 |
1bb1699f3e79a261a1cb71a60a1ace7c
|
SHA1 |
268f9a2602e1187b881d96db521e82c8d051d656
|
SHA256 |
a073bc06540956a93a3ef6eaa7d558de6f92de721edd29d6a93551a0fab23c08
|
SHA3 |
a0d833ced8297a2d82be5b80dd79fa9f61b84033377016f4c588ff2cfc168cf9
|
Type |
RT_STRING
|
Language |
UNKNOWN
|
Codepage |
UNKNOWN
|
Size |
0x174
|
TimeDateStamp |
2010-Jan-06 10:56:26
|
Entropy |
3.34841
|
MD5 |
b6bedb71d6a6fa5215e4afdd1e983bdc
|
SHA1 |
7541a76c3ab32506ab00c3ab56076bf01532b267
|
SHA256 |
203e2c213958348f4911dd2e3188ea694f7d1d97f9ea9a82f89f5ee7af8c9607
|
SHA3 |
3ad5273f1d88b58db23b17b0ecd52f1280b9c279f64aad4404f5487b5d8f264e
|
Type |
RT_STRING
|
Language |
UNKNOWN
|
Codepage |
UNKNOWN
|
Size |
0x39c
|
TimeDateStamp |
2010-Jan-06 10:56:26
|
Entropy |
3.29351
|
MD5 |
0b1533b447231c6319c4a10d84508e60
|
SHA1 |
f5477d91942bfe92a5dc3c46897a66fb663a124f
|
SHA256 |
6fa3bbc46b4cc3a979f4ebfc293c50453912eb51ef76d2ea3c7d3d86d7223e86
|
SHA3 |
aed1581927a66228d158a903e015bdfa9a12e44865ff24c991ba8e2c1a9de8c1
|
Type |
RT_STRING
|
Language |
UNKNOWN
|
Codepage |
UNKNOWN
|
Size |
0x34c
|
TimeDateStamp |
2010-Jan-06 10:56:26
|
Entropy |
3.34579
|
MD5 |
2596d19a6b88cbba9c9c9cb003affbc6
|
SHA1 |
37091a716fd1eed000e0c3bb195fbd589a750608
|
SHA256 |
7f63f3f944a0b62f8f3b35a60141081599f7f175605ced7e1b4dcb80fda58c8a
|
SHA3 |
0b2581dd0c1b08d882b1f4c4014652d2e7d046d95aa3df236690e9d22572b27c
|
Type |
RT_STRING
|
Language |
UNKNOWN
|
Codepage |
UNKNOWN
|
Size |
0x294
|
TimeDateStamp |
2010-Jan-06 10:56:26
|
Entropy |
3.28057
|
MD5 |
1f9009e4d5b61392e05aa8ac6eceb6aa
|
SHA1 |
4af6f3144fff0951da37370a3d200e8d74fc4862
|
SHA256 |
cb21f2b28bfc6b8046348c7a96bf97149dc5f91e1cc1a4f2904a1044a008425a
|
SHA3 |
c1aebde06ed543947facd67a9541283cbec74e559e267c1b84c168a2bf839812
|
Type |
RT_RCDATA
|
Language |
English - United States
|
Codepage |
UNKNOWN
|
Size |
0x82e8
|
TimeDateStamp |
2010-Jan-06 10:56:26
|
Entropy |
3.5072
|
MD5 |
6e9c1c8c0a0ec8d73165779560cd7ba4
|
SHA1 |
d044c45e2ffd24e1abef00079577df385e325ab4
|
SHA256 |
677245e2a6b2eb5495b4965b8c26025a4b26e8b8c21a825f658cb390b493b9a0
|
SHA3 |
3ec7819e8561ecad66b1ef2652d4f3b275030f7cf402f276daa38f28d288e4e7
|
Type |
RT_RCDATA
|
Language |
UNKNOWN
|
Codepage |
UNKNOWN
|
Size |
0x10
|
TimeDateStamp |
2010-Jan-06 10:56:26
|
Entropy |
4
|
MD5 |
d8090aba7197fbf9c7e2631c750965a8
|
SHA1 |
04f73efb0801b18f6984b14cd057fb56519cd31b
|
SHA256 |
88d14cc6638af8a0836f6d868dfab60df92907a2d7becaefbbd7e007acb75610
|
SHA3 |
a5a67ad8166061d38fc75cfb2c227911de631166c6531a6664cd49cfb207e8bb
|
Type |
RT_RCDATA
|
Language |
UNKNOWN
|
Codepage |
UNKNOWN
|
Size |
0x180
|
TimeDateStamp |
2010-Jan-06 10:56:26
|
Entropy |
5.2284
|
MD5 |
98ec1fe524012b4d8654f7e01c44dac5
|
SHA1 |
fe5caa2503936543be6e1023dd443541acda7639
|
SHA256 |
906feffafc48fd76f3d15a5f5944a46a58634e7e2876a64f91e0d991c54d9e99
|
SHA3 |
6d9573800860b1df064d54a18cad1f9feac9d413f3319be6980dece251ff85ac
|
Type |
RT_RCDATA
|
Language |
UNKNOWN
|
Codepage |
UNKNOWN
|
Size |
0x2c
|
TimeDateStamp |
2010-Jan-06 10:56:26
|
Entropy |
4.50547
|
MD5 |
abc40c4a7cd1b20c068cd385790a480c
|
SHA1 |
b7fa5cb1d3c13734c849dc7a5ccca22d5d3bbd66
|
SHA256 |
2eec15b7280ea75a86ebc8698178bcec422d8a1607fef9bc078038ea8e02a08b
|
SHA3 |
9ad5c1cef6d7f760c3ddff9d1190b4e91475c08510a3235f75f58dcd81c98056
|
Type |
RT_GROUP_ICON
|
Language |
English - United States
|
Codepage |
UNKNOWN
|
Size |
0x3e
|
TimeDateStamp |
2010-Jan-06 10:56:26
|
Entropy |
2.64576
|
Detected Filetype |
Icon file
|
MD5 |
f6262f462f61a1af1cac10cf4b790e5a
|
SHA1 |
4aa3239c2c59fa5f246b0dd68da564e529b98ff4
|
SHA256 |
44b095a62d7e401671f57271e6cada367bb55cf7b300ef768b3487b841facd3c
|
SHA3 |
f2a1d165133c29eba349014fa5f8059ddebe1aba5b220fb89f1a474e95c482ca
|
Type |
RT_VERSION
|
Language |
English - United States
|
Codepage |
UNKNOWN
|
Size |
0x4b8
|
TimeDateStamp |
2010-Jan-06 10:56:26
|
Entropy |
2.77882
|
MD5 |
4bac644dde69646409b7f7291fb28a0d
|
SHA1 |
c7464ef56713e0a44c70baae3a35d8d835d05098
|
SHA256 |
add96ceaf5244348d06dbb00d6f8cd1257e0edec4a8b315d99a3c73cdd2436d8
|
SHA3 |
2d040af4f3dd1ef62a3533fd6743c981c5104bbb69e92a5b89b78a72115d226b
|
Type |
RT_MANIFEST
|
Language |
English - United States
|
Codepage |
UNKNOWN
|
Size |
0x560
|
TimeDateStamp |
2010-Jan-06 10:56:26
|
Entropy |
5.05007
|
MD5 |
8d7accca43bc3864983dbbb9af490005
|
SHA1 |
07ae72350bcbfedb5015a78efd74fcfd3bab11ac
|
SHA256 |
ec233469005d39f4f2673be991a0415318631a59c5976c35d4dd22db45226fd0
|
SHA3 |
d340127cbdd815e5c2dd4b44e8755c28512ad5e969b757cfcec6612b00e9d186
|
Thu |
Fri |
Sat |
Sunday |
Monday |
Tuesday |
Wednesday |
Thursday |
Friday |
Saturday |
Invalid file name - %s |
January |
February |
March |
April |
May |
June |
July |
August |
September |
October |
November |
December |
Sun |
Mon |
Tue |
Wed |
Monitor support function not initialized |
%s (%s, line %d) |
Abstract Error |
Access violation at address %p in module '%s'. %s of address %p |
Jan |
Feb |
Mar |
Apr |
May |
Jun |
Jul |
Aug |
Sep |
Oct |
Nov |
Dec |
Variant or safe array is locked |
Invalid variant type conversion |
Invalid variant operation |
Invalid variant operation (%s%.8x) |
%s |
Could not convert variant of type (%s) into type (%s) |
Overflow while converting variant of type (%s) into type (%s) |
Variant overflow |
Invalid argument |
Invalid variant type |
Operation not supported |
Unexpected variant error |
External exception %x |
Assertion failed |
Interface not supported |
Exception in safecall method |
Object lock not owned |
Invalid class typecast |
Access violation at address %p. %s of address %p |
Access violation |
Stack overflow |
Control-C hit |
Privileged instruction |
Operation aborted |
Exception %s in module %s at %p. |
%s%s |
|
Application Error |
Format '%s' invalid or incompatible with argument |
No argument for format '%s' |
Variant method calls not supported |
Read |
Write |
Error creating variant or safe array |
Variant or safe array index out of bounds |
Out of memory |
I/O error %d |
File not found |
Too many open files |
File access denied |
Read beyond end of file |
Disk full |
Invalid numeric input |
Division by zero |
Range check error |
Integer overflow |
Invalid floating point operation |
Floating point division by zero |
Floating point overflow |
Floating point underflow |
Invalid pointer operation |
Signature |
0xfeef04bd
|
StructVersion |
0x10000
|
FileVersion |
0.0.0.0
|
ProductVersion |
0.0.0.0
|
FileFlags |
(EMPTY)
|
FileOs |
VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
|
FileType |
VFT_APP
|
Language |
UNKNOWN
|
Comments |
This installation was built with Inno Setup.
|
CompanyName |
emu8086
|
FileDescription |
emu8086 microprocessor emulator Setup
|
FileVersion (#2) |
|
LegalCopyright |
Copyright © 2010
|
ProductName |
emu8086 microprocessor emulator
|
ProductVersion (#2) |
|
Resource LangID |
English - United States
|
StartAddressOfRawData |
0x41f000
|
EndAddressOfRawData |
0x41f008
|
AddressOfIndex |
0x4177b4
|
AddressOfCallbacks |
0x420010
|
SizeOfZeroFill |
0
|
Characteristics |
IMAGE_SCN_TYPE_REG
|
Callbacks |
(EMPTY)
|
[*] Warning: Section .bss has a size of 0!
[*] Warning: Section .tls has a size of 0!
[*] Warning: Section .reloc has a size of 0!