ce6c0a2efa3acce48318f5576dfd8fcc

Summary

Architecture IMAGE_FILE_MACHINE_I386
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date 2025-Nov-19 13:11:24
Detected languages English - United States
Comments This installation was built with Inno Setup.
CompanyName skmedix.pl
FileDescription SKlauncher 3.2.18 Setup
FileVersion 3.2.18.0
LegalCopyright
OriginalFileName
ProductName SKlauncher 3.2.18
ProductVersion 3.2.18.0

Plugin Output

Info Interesting strings found in the binary: Contains domain names:
  • https://jrsoftware.org
  • jrsoftware.org
Info Cryptographic algorithms detected in the binary: Uses constants related to SHA256
Uses constants related to SHA512
Suspicious The PE is possibly packed. Unusual section name found: .itext
Unusual section name found: .didata
Malicious The PE contains functions mostly used by malware. [!] The program may be hiding some of its imports:
  • LoadLibraryA
  • LoadLibraryExW
  • GetProcAddress
  • LoadLibraryW
Functions which can be used for anti-debugging purposes:
  • SwitchToThread
Can access the registry:
  • RegOpenKeyExW
  • RegQueryValueExW
  • RegCloseKey
Possibly launches other programs:
  • CreateProcessW
Can create temporary files:
  • GetTempPathW
  • CreateFileW
Memory manipulation functions often used by packers:
  • VirtualProtect
  • VirtualAlloc
Functions related to the privilege level:
  • AdjustTokenPrivileges
  • OpenProcessToken
Enumerates local disk drives:
  • GetVolumeInformationW
  • GetDriveTypeW
Can shut the system down or lock the screen:
  • ExitWindowsEx
Suspicious The file contains overlay data. 2909850 bytes of data starting at offset 0xcd600.
Overlay data amounts for 77.5739% of the executable.
Suspicious VirusTotal score: 2/72 (Scanned on 2026-02-07 08:41:14) Cylance: Unsafe
DeepInstinct: MALICIOUS

Hashes

MD5 ce6c0a2efa3acce48318f5576dfd8fcc
SHA1 aa01d1f64c0e189231b81eeaadd3697161b0eae5
SHA256 5d7f6d20b4de8c600f81d64b4608bb65bccf92bfc72a727831c8785a63b68997
SHA3 aa1db8280ca8411cbfec5de7972fcfdc284d5ac52ba846ebeae7a46d46e42409
SSDeep 98304:8N663wSNFEOQwfBLbRn4QySeqtpTb9jytw27WUSrnsB:43w5OQwJLbVSGFn2SUB
Imports Hash 2dbe05997e68964011dc69596051f24a

DOS Header

e_magic MZ
e_cblp 0x50
e_cp 0x2
e_crlc 0
e_cparhdr 0x4
e_minalloc 0xf
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0x1a
e_oemid 0
e_oeminfo 0
e_lfanew 0x100

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_I386
NumberofSections 11
TimeDateStamp 2025-Nov-19 13:11:24
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xe0
Characteristics IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_EXECUTABLE_IMAGE

Image Optional Header

Magic PE32
LinkerVersion 2.0
SizeOfCode 0xaf000
SizeOfInitializedData 0x1e200
SizeOfUninitializedData 0
AddressOfEntryPoint 0x000AFE60 (Section: .itext)
BaseOfCode 0x1000
BaseOfData 0xb1000
ImageBase 0x400000
SectionAlignment 0x1000
FileAlignment 0x200
OperatingSystemVersion 6.1
ImageVersion 0.0
SubsystemVersion 6.1
Win32VersionValue 0
SizeOfImage 0xdd000
SizeOfHeaders 0x400
Checksum 0
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x100000
SizeofStackCommit 0x4000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 571104eb9c69b8d7eac91f88e66f07f4
SHA1 cf4fe3b95c34dd99b656d65e71b9582caa4b5fa3
SHA256 f06abba97c0ca97f577bf040bd0ee350d9d1fc74161b1b3c96e0eab758ce4708
SHA3 8f47f5e81ef8f7e169d4d8a2c6dbd8b436b088bd1da4b6f82518a0ee4a3c181f
VirtualSize 0xad70c
VirtualAddress 0x1000
SizeOfRawData 0xad800
PointerToRawData 0x400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.39348

.itext

MD5 98e6f67bf19450f022917bce5eb33e70
SHA1 ac14383b38280969c5fb0f9e72ccda674e7602b2
SHA256 3617b9e8cf718fb4461c7e015a8957b01ce391ffd883c52d96caafeec9cf5499
SHA3 549f58852d2ee0309c2b939767bbe2de0cb3383db5169702d819982496c5c1a3
VirtualSize 0x17f0
VirtualAddress 0xaf000
SizeOfRawData 0x1800
PointerToRawData 0xadc00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.21418

.data

MD5 5d0cc87460e7a0473a0ec3b57fdc3436
SHA1 a688e87e4c4e2d62a220ee550138d5b0042adfc0
SHA256 2b9248b9edcc463b9406f817c66cb8d642ea7c277bd6625df867102754aa0409
SHA3 d1e9a2071c8c9a80ad3d3537450f83bb14ca7c087a9ab95b6119eafc634fc331
VirtualSize 0x3f3c
VirtualAddress 0xb1000
SizeOfRawData 0x4000
PointerToRawData 0xaf400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 5.17784

.bss

MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA3 a7ffc6f8bf1ed76651c14756a061d662f580ff4de43b49fa82d80a4b80f8434a
VirtualSize 0x72f0
VirtualAddress 0xb5000
SizeOfRawData 0
PointerToRawData 0
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE

.idata

MD5 5ad2e4d67b0f9c9e1292015f1327f707
SHA1 15d73bc9c6bc72b323e3295981ba37918279c8cf
SHA256 c9158ad5be332487afed0dc6894de2c75c782fab3cc3509dfd876584c8dd4b2b
SHA3 869ab33dad822baaae3807ffa2bf6ec8e4103e75d08066005cc97cad6d16df49
VirtualSize 0x1028
VirtualAddress 0xbd000
SizeOfRawData 0x1200
PointerToRawData 0xb3400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 4.77298

.didata

MD5 e60d53e513d6fcce014df48c1c9cd917
SHA1 54a45547e2747bf32e3e3f7aca2657936255174a
SHA256 781923ada8d1d583fcfcabd5b0612df7a8a3ab30a0b19c30c2a63c6de86fdec2
SHA3 17d2ca769ea250a31133eb442a03a0021c81ed68f2d4d28a39e2665e48bbe435
VirtualSize 0x1a4
VirtualAddress 0xbf000
SizeOfRawData 0x200
PointerToRawData 0xb4600
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 2.75364

.edata

MD5 8a91a34b3439ab2b6242a5f7c56d4b82
SHA1 f4aadb8680fd33fec30f5e16b69514be8edf86d0
SHA256 8dc70bcfa1ad1de53aab205ff8053c655cea17e6ce95688f4506dbf6ccc1f7b4
SHA3 a22be219cb3ce9dd99b154ab6abcf99566cedbed6764a176b5539131ca85235a
VirtualSize 0x71
VirtualAddress 0xc0000
SizeOfRawData 0x200
PointerToRawData 0xb4800
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 1.24558

.tls

MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA3 a7ffc6f8bf1ed76651c14756a061d662f580ff4de43b49fa82d80a4b80f8434a
VirtualSize 0x18
VirtualAddress 0xc1000
SizeOfRawData 0
PointerToRawData 0
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE

.rdata

MD5 2f580775ce0c52c49ee681ae82e79e04
SHA1 eac0c330a733ea0d92e90b917cffe70a29e5b6da
SHA256 86ae68a9aaf05fcbf2dabac7c3418e29e3fceec42efc46ca9ea73020871f5b6d
SHA3 c707496df0d72dbfdc28ed46bf50c72748af2da03facbc3381d1f0cc5ab661e8
VirtualSize 0x5d
VirtualAddress 0xc2000
SizeOfRawData 0x200
PointerToRawData 0xb4a00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 1.37707

.reloc

MD5 bb44bd568d8ba75b9fe5c6225bdf6bba
SHA1 c6bcdae0514c3130bc0a7d627e93fef77b925db8
SHA256 11ddc86372e1de93c93865a6b02101f97538cca5732b2b166f5925a89a5dd642
SHA3 f25c1cbf3fe8e132820fc0ba4fd8783c80c7e4caaffe9fd0de1c35ea9a018550
VirtualSize 0x11448
VirtualAddress 0xc3000
SizeOfRawData 0x11600
PointerToRawData 0xb4c00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy 6.70667

.rsrc

MD5 979a9aec584c941eb7cde16b09b69438
SHA1 4a511bb393a95b94147771738b0f904015d8aa40
SHA256 058e843e0dddd52a9f7397dce12d99fd739f69c2030b3724520055257d14b8ab
SHA3 2b18eb36da4a9a1a7ed97fd8c28ec4a2f77d7e4a3099b144763cecb9e7fe7e8a
VirtualSize 0x730c
VirtualAddress 0xd5000
SizeOfRawData 0x7400
PointerToRawData 0xc6200
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 4.76585

Imports

kernel32.dll GetACP
GetExitCodeProcess
CloseHandle
LocalFree
SizeofResource
VirtualProtect
QueryPerformanceFrequency
VirtualFree
GetFullPathNameW
GetProcessHeap
ExitProcess
HeapAlloc
GetCPInfoExW
RtlUnwind
SetFilePointerEx
GetCPInfo
GetStdHandle
GetModuleHandleW
FreeLibrary
HeapDestroy
ReadFile
CreateProcessW
GetLastError
GetModuleFileNameW
SetLastError
FindResourceW
CreateThread
CompareStringW
GetFileSizeEx
LoadLibraryA
ResetEvent
GetVolumeInformationW
GetVersion
GetDriveTypeW
RaiseException
FormatMessageW
SwitchToThread
GetExitCodeThread
GetCurrentThread
LoadLibraryExW
LockResource
GetCurrentThreadId
UnhandledExceptionFilter
VirtualQuery
VirtualQueryEx
Sleep
EnterCriticalSection
LoadResource
SuspendThread
GetTickCount
GetStartupInfoW
GetFileAttributesW
InitializeCriticalSection
GetSystemWindowsDirectoryW
GetThreadPriority
SetThreadPriority
GetCurrentProcess
VirtualAlloc
GetCommandLineW
GetSystemInfo
GetTempPathW
LeaveCriticalSection
GetProcAddress
ResumeThread
GetVersionExW
VerifyVersionInfoW
HeapCreate
LCMapStringW
VerSetConditionMask
GetDiskFreeSpaceW
FindFirstFileW
GetUserDefaultUILanguage
lstrlenW
SetEndOfFile
QueryPerformanceCounter
HeapFree
WideCharToMultiByte
FindClose
MultiByteToWideChar
LoadLibraryW
SetEvent
CreateFileW
GetLocaleInfoW
GetSystemDirectoryW
DeleteFileW
GetLocalTime
WaitForSingleObject
WriteFile
ExitThread
DeleteCriticalSection
TlsGetValue
GetDateFormatW
IsValidLocale
TlsSetValue
CreateDirectoryW
GetSystemDefaultUILanguage
EnumCalendarInfoW
LocalAlloc
GetUserDefaultLangID
RemoveDirectoryW
CreateEventW
SetThreadLocale
GetThreadLocale
comctl32.dll InitCommonControls
user32.dll CreateWindowExW
TranslateMessage
CharLowerBuffW
CallWindowProcW
CharUpperW
PeekMessageW
GetSystemMetrics
SetWindowLongW
MessageBoxW
DestroyWindow
CharUpperBuffW
CharNextW
MsgWaitForMultipleObjects
LoadStringW
ExitWindowsEx
DispatchMessageW
oleaut32.dll SafeArrayPutElement
VariantInit
VariantClear
SysFreeString
SafeArrayAccessData
SysReAllocStringLen
SafeArrayCreate
SafeArrayGetElement
SysAllocStringLen
SafeArrayUnaccessData
SafeArrayPtrOfIndex
VariantCopy
SafeArrayGetUBound
SafeArrayGetLBound
VariantChangeType
advapi32.dll ConvertStringSecurityDescriptorToSecurityDescriptorW
OpenThreadToken
AdjustTokenPrivileges
LookupPrivilegeValueW
RegOpenKeyExW
OpenProcessToken
FreeSid
AllocateAndInitializeSid
EqualSid
RegQueryValueExW
GetTokenInformation
ConvertSidToStringSidW
RegCloseKey
kernel32.dll (delay-loaded) GetACP
GetExitCodeProcess
CloseHandle
LocalFree
SizeofResource
VirtualProtect
QueryPerformanceFrequency
VirtualFree
GetFullPathNameW
GetProcessHeap
ExitProcess
HeapAlloc
GetCPInfoExW
RtlUnwind
SetFilePointerEx
GetCPInfo
GetStdHandle
GetModuleHandleW
FreeLibrary
HeapDestroy
ReadFile
CreateProcessW
GetLastError
GetModuleFileNameW
SetLastError
FindResourceW
CreateThread
CompareStringW
GetFileSizeEx
LoadLibraryA
ResetEvent
GetVolumeInformationW
GetVersion
GetDriveTypeW
RaiseException
FormatMessageW
SwitchToThread
GetExitCodeThread
GetCurrentThread
LoadLibraryExW
LockResource
GetCurrentThreadId
UnhandledExceptionFilter
VirtualQuery
VirtualQueryEx
Sleep
EnterCriticalSection
LoadResource
SuspendThread
GetTickCount
GetStartupInfoW
GetFileAttributesW
InitializeCriticalSection
GetSystemWindowsDirectoryW
GetThreadPriority
SetThreadPriority
GetCurrentProcess
VirtualAlloc
GetCommandLineW
GetSystemInfo
GetTempPathW
LeaveCriticalSection
GetProcAddress
ResumeThread
GetVersionExW
VerifyVersionInfoW
HeapCreate
LCMapStringW
VerSetConditionMask
GetDiskFreeSpaceW
FindFirstFileW
GetUserDefaultUILanguage
lstrlenW
SetEndOfFile
QueryPerformanceCounter
HeapFree
WideCharToMultiByte
FindClose
MultiByteToWideChar
LoadLibraryW
SetEvent
CreateFileW
GetLocaleInfoW
GetSystemDirectoryW
DeleteFileW
GetLocalTime
WaitForSingleObject
WriteFile
ExitThread
DeleteCriticalSection
TlsGetValue
GetDateFormatW
IsValidLocale
TlsSetValue
CreateDirectoryW
GetSystemDefaultUILanguage
EnumCalendarInfoW
LocalAlloc
GetUserDefaultLangID
RemoveDirectoryW
CreateEventW
SetThreadLocale
GetThreadLocale

Delayed Imports

Attributes 0x1
Name kernel32.dll
ModuleHandle 0xbf080
DelayImportAddressTable 0xbf090
DelayImportNameTable 0xbf0b4
BoundDelayImportTable 0xbf0d8
UnloadDelayImportTable 0xbf0f0
TimeStamp 1970-Jan-01 00:00:00

dbkFCallWrapperAddr

Ordinal 1
Address 0xb863c

__dbk_fcall_wrapper

Ordinal 2
Address 0xe578

100

Type RT_ICON
Language English - United States
Codepage Latin 1 / Western European
Size 0x25a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.444
MD5 65517e5b529712dde5ac5e2e10b0a0fc
SHA1 cf7a2450aa12e179ca5242c656784ef1f7ff61cc
SHA256 8615bd563ed389056175d728d95eedbff611a9ce3a80b47ab8854572231d6a09
SHA3 c8701bab96dd47f002ea34ba32e79b052e0069ba6752d0c7223d48c9810653f1

101

Type RT_ICON
Language English - United States
Codepage Latin 1 / Western European
Size 0x10a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.05135
MD5 601078a471e95e047bc2167e328cfe1a
SHA1 9f63905e0c3c78adf18fa9078334dd4bc2c65a3c
SHA256 816933c06ded287b0f0aab1ba7e4450fae0cf8f4b97ebe50c4e57bafd7cf6792
SHA3 c073764ebffb0c11bbee891e3a0aab53f6aa0d53c64e58a1992f40d2db1d2bd5

102

Type RT_ICON
Language English - United States
Codepage Latin 1 / Western European
Size 0x468
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.64923
MD5 3e7fcc7321959e7545159bf7cebb6e57
SHA1 ffa6b9ded88ba1763020d12187332b9313e25679
SHA256 e9a0ecc434e21f0cf24491f8d93997489ac7b0e600aa23e2d70d013d9d65e815
SHA3 86a95f63db98d28ff75fbe8136d1dec14d95c84b8cb4fd8b63a0bf594921c1ee

4085

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x24c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.11364
MD5 bfdeec9b9c10f5470a9b6f2b15ae368d
SHA1 e2f1e0f6fc1d4586803b19cb384bfe0f4edc81f4
SHA256 9a932d990ffa1c05ffff03182707adaf9b0c6c13c3a9d09019cfb606c060c46f
SHA3 c1d8379e018b7922875978f62f488fce6aceadbfe2ded0b50db83877632233dc

4086

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x2e4
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.32885
MD5 f96fdce1c116135874fb82281b493ac0
SHA1 562daa783cc168f8e46b1a798879583176af22cc
SHA256 3ab3b2c63dc1c1810fca5518c1bb174be9ebf36547ed1feae9e357ccf8bc3ef1
SHA3 05d0914dffa4501268059355b689944d50e9aa4a986777d770f0e713d1a8d59c

4087

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x400
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.51239
MD5 7ee56b85a64cd12875800e5eb0f8a8cc
SHA1 aedd1bec33089176851004b6593393629eb0fa6f
SHA256 dc6b3544e2299b1708bb325f9eecdb6d3a7c96755eab1d83ea51fc8b5102715c
SHA3 5b5c207556b66f9b50ed909ae8d9a80068adcd483f406df26c87f8151450bc20

4088

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x3d0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.24302
MD5 44f76d42ead76c495e69824f453e64ec
SHA1 3fb0774ab962aa9cc511af9e8836164c477b9d9e
SHA256 98ffaee3d049334960e4f4bac5dd69ae5ea0e8a8f154a71ce30230508692db8d
SHA3 cbb48eb071e2f28c8b7c315c9192c0a8de0a4c75bcc188e12c72e8bad4b3230e

4089

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x3fc
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.34822
MD5 ba10a3e64b7ee79204e6728702cebcf5
SHA1 7c7298de979e3bb2f128be40f110a376be3350fc
SHA256 c0dce66eaf68d1a945a6c5ec96a54baeb9bf8ff533392a1c1d66cc0ac4f7e3fd
SHA3 3bce8f10959f4d33092d14e38f0d70b276193106f38f6066c66fdec4f62571ba

4090

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x2d4
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.36723
MD5 d2467f70311fc072d9202909bdfa9fcb
SHA1 c8abb69fb38434daf6811309cc88e9d0df65e2cd
SHA256 51209c8034cd5c2127a7b877a3280699d6bad965bcc102e830420c836f535c97
SHA3 4386b5d28f8adc0eccd1a396c2d0689b85cd7cfcf727c8d08a87940c92bd64c7

4091

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0xb8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.33978
MD5 e8e4995b464abd85d77008d3750ca7af
SHA1 2c39cf9c2c1cfab48077cda2d4d6312fdb53c54b
SHA256 22296669c2c50d3fdfee9de9f7730d0a5cc498b7cc54cd2aa8ded74d7e69f654
SHA3 5480674ca53405ca327424ca774da73700d535e5ca7d51363d86511e5268bb0c

4092

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x9c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.15425
MD5 d0969cc9a96275d54a109de740708a5a
SHA1 2c365c0341faf71f810a39c69859a7eb5bc0de8d
SHA256 3c45c82b39b3c90c9c22342a8f6be98073faf1dcd26dbc578b3a6fa9a499cb46
SHA3 99f949ba47f1c5cd7b313b0b89e2b14f238be4bd78199a590c1f257e4f562967

4093

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x38c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.32419
MD5 91f002a78decfcd89251e544aa2d1825
SHA1 20d0672f8144b8f614127b2bc03f4b447b823a7a
SHA256 5eb28cbb468ee711930c5100d15732fee3066a1b49d989207611a66ec2fbee1e
SHA3 206eb7f338ff610b7c3aed4b945f089c0d66e6e64e1c857552a91d8021a1127b

4094

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x398
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.28786
MD5 110abe16232608d8671eaca8ee324f45
SHA1 30704560832bafa440df1fd20693653c2a30f815
SHA256 b33f156b0a8ce96c7182dfb6afa9f6a7020433a6e16ca21f6092ba03695bdd12
SHA3 0179804f22369dabd55b8e4ca79a33645191c197c0474cabc4e13546c7e7fcd6

4095

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x368
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.33385
MD5 1c9252919f0a0d2072f3fe0565f0b443
SHA1 dc6002a243c7567105aef957d8b01142df42b3d2
SHA256 734b698aafc2cfabfd0750c88498022d650f6ee025250dc8795de56a6e122445
SHA3 4d0c5d27e1b222f09e17dc6fa9ec0bc174b3e58bba30ce90cb89b3594622e627

4096

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x2a4
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.2935
MD5 d1efb0d972603f09c3a2a866a8b36d48
SHA1 64a194ea368bb16ffac3e7a4ca84b3c00bf15920
SHA256 351e7d3c756242cde2e4a2bef16d636d5e073e0cf3e9cfa2b1da1efccd7806ae
SHA3 545cc79af077359ed49f0ba5cdc74b58bef1f6fd71725c976ad9c892dc9a0b56

DVCLAL

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x10
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4
MD5 d8090aba7197fbf9c7e2631c750965a8
SHA1 04f73efb0801b18f6984b14cd057fb56519cd31b
SHA256 88d14cc6638af8a0836f6d868dfab60df92907a2d7becaefbbd7e007acb75610
SHA3 a5a67ad8166061d38fc75cfb2c227911de631166c6531a6664cd49cfb207e8bb

PACKAGEINFO

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x38c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.15429
MD5 af0a4c241b3589535b02ea8dd9a60bb1
SHA1 fea063ca5cb26299f46ff83ac189e09aefecaa87
SHA256 8449a775bae542ee43b5ccde9511103c33bab32246dd347d5452ab17084d8500
SHA3 83b35032cdbda3544cd92ce73bb7b4daeebaf37f191de8860fbc96218ca7ecb1

11111

Type RT_RCDATA
Language English - United States
Codepage Latin 1 / Western European
Size 0x40
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.66865
MD5 b1329422ab2d18905da0e30b406f03a1
SHA1 142db61e894d61cbf994e327dd6ff12494dbd7bb
SHA256 41a59a89bf4a8d9df312f52525690a01c040cda70f908f1c744ce404ba48b4e5
SHA3 187131f7f8e2527a6f7e31026ea9cbf168dada0af24693b28150b52190b063a4

MAINICON

Type RT_GROUP_ICON
Language English - United States
Codepage Latin 1 / Western European
Size 0x30
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.57536
Detected Filetype Icon file
MD5 2ed4e1c44860757332041aeced6bd097
SHA1 b78442dc413a1194d1b5d56af9663f864a196a81
SHA256 79d31868d3f856c34fb057c292fd4698cf1d45008809f6477b7f8bb41bf5449f
SHA3 7bd1dc16f7441e22e288be6c9fde383a48f55ec095752092c59f021eac7a785a

1

Type RT_VERSION
Language English - United States
Codepage Latin 1 / Western European
Size 0x584
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.66813
MD5 f459fd89394d6df636f015b0f73ecaf4
SHA1 a442a30a6872dcd64ffe63c1882188e0b8b87e9d
SHA256 9be24d8e85c7a595cf18250e77ad6300ad75c465450f929b02c11b06cd6883b2
SHA3 bd172602dd7e00edf716922bf5d747abe4df8e071f88f919531786739e820c26

1 (#2)

Type RT_MANIFEST
Language English - United States
Codepage Latin 1 / Western European
Size 0x7a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.89085
MD5 e07ab8c9030f776ce0f6d9040d41c616
SHA1 593953973c74066bcd09b22402948425dab9b12f
SHA256 75bb01fe4bafdef22d879aaea5b85d1165a30ec0e558536e1b4c6002c4730d5d
SHA3 51b78d43db0954fcaa7c6fd2558eece5eb98a1c5f6e95a3033891777bfd00a7c

String Table contents

No single cast observer with ID %d was added to the observer collection
No multi cast observer with ID %d was added to the observer collection
SHA2: Cannot update a finalized hash
Must wait on at least one event
Cannot call BeginInvoke on a TComponent in the process of destruction
Windows 2000
Windows XP
Windows Server 2003
Windows Server 2003 R2
Windows Server 2012
Windows Server 2012 R2
Windows Server 2016
Windows Server 2019
Windows Server 2022
Windows 8
Windows 8.1
Windows 10
Windows 11
Observer is not supported
Cannot have multiple single cast observers added to the observers collection
The object does not implement the observer interface
Insufficient RTTI available to support this operation
Parameter count mismatch
Type '%s' is not declared in the interface section of a unit
VAR and OUT arguments must match parameter type exactly
Property '%s' is read-only
Property '%s' is write-only
RTTI objects cannot be manually destroyed by application code
%s (Version %d.%d, Build %d, %5:s)
%s Service Pack %4:d (Version %1:d.%2:d, Build %3:d, %5:s)
32-bit Edition
64-bit Edition
Windows
Windows Vista
Windows Server 2008
Windows 7
Windows Server 2008 R2
Error reading %s%s%s: %s
Stream read error
Property is read-only
%s.Seek not implemented
Property %s does not exist
Stream write error
Thread creation error: %s
Thread Error: %s (%d)
Cannot terminate an externally created thread
Cannot wait for an externally created thread
Cannot call Start on a running or suspended thread
Invalid argument
Source and Destination arrays must not be the same
SpinCount out of range. Must be between 0 and %d
Argument out of range
Duplicates not allowed
Cannot assign a %s to a %s
CheckSynchronize called from thread $%x, which is NOT the main thread
Class %s not found
List does not allow duplicates ($0%x)
A component named %s already exists
''%s'' is not a valid component name
Invalid property value
Invalid property path
Invalid property value
List capacity out of bounds (%d)
List count out of bounds (%d)
List index out of bounds (%d)
. %s range is 0..%d
. %s is empty
Out of memory while expanding memory stream
%s has not been registered as a COM class
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
Invalid source array
Invalid destination array
Character index out of bounds (%d)
Start index out of bounds (%d)
Invalid count (%d)
Invalid destination index (%d)
Invalid code page
No mapping for the Unicode character exists in the target multi-byte code page
Invalid StringBaseIndex
Ancestor for '%s' not found
May
June
July
August
September
October
November
December
Sun
Mon
Tue
Wed
Thu
Fri
Sat
Sunday
Jan
Feb
Mar
Apr
May
Jun
Jul
Aug
Sep
Oct
Nov
Dec
January
February
March
April
Invalid variant type
Operation not supported
Unexpected variant error
External exception %x
Assertion failed
Interface not supported
Exception in safecall method
Object lock not owned
Monitor support function not initialized
Feature not implemented
Method called on disposed object
%s (%s, line %d)
Abstract Error
Access violation at address %p in module '%s' (offset %x). %s of address %p
System Error. Code: %d.
%s%s
A call to an OS function failed
Variant method calls not supported
Read
Write
Execution
Invalid access
Error creating variant or safe array
Variant or safe array index out of bounds
Variant or safe array is locked
Invalid variant type conversion
Invalid variant operation
Invalid NULL variant operation
Invalid variant operation (%s%.8x)
%s
Could not convert variant of type (%s) into type (%s)
Overflow while converting variant of type (%s) into type (%s)
Variant overflow
Invalid argument
Invalid floating point operation
Floating point division by zero
Floating point overflow
Floating point underflow
Invalid pointer operation
Invalid class typecast
Access violation at address %p. %s of address %p
Access violation
Stack overflow
Control-C hit
Privileged instruction
Operation aborted
Exception %s in module %s at %p.
%s%s
Application Error
Format '%s' invalid or incompatible with argument
No argument for format '%s'
'%s' is not a valid integer value
'%d.%d' is not a valid timestamp
Invalid argument to time encode
Invalid argument to date encode
Out of memory
I/O error %d
File not found
Invalid filename
Too many open files
File access denied
Read beyond end of file
Disk full
Invalid numeric input
Division by zero
Range check error
Integer overflow

Version Info

Signature 0xfeef04bd
StructVersion 0x10000
FileVersion 3.2.18.0
ProductVersion 3.2.18.0
FileFlags (EMPTY)
FileOs VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
FileType VFT_APP
Language UNKNOWN
Comments This installation was built with Inno Setup.
CompanyName skmedix.pl
FileDescription SKlauncher 3.2.18 Setup
FileVersion (#2) 3.2.18.0
LegalCopyright
OriginalFileName
ProductName SKlauncher 3.2.18
ProductVersion (#2) 3.2.18.0
Resource LangID English - United States

TLS Callbacks

StartAddressOfRawData 0x4c1000
EndAddressOfRawData 0x4c1018
AddressOfIndex 0x4b1c14
AddressOfCallbacks 0x4c2010
SizeOfZeroFill 0
Characteristics IMAGE_SCN_TYPE_REG
Callbacks (EMPTY)

Load Configuration

RICH Header

Errors

[*] Warning: Section .bss has a size of 0! [*] Warning: Section .tls has a size of 0!