| Architecture |
IMAGE_FILE_MACHINE_I386
|
|---|---|
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| Compilation Date | 2021-Aug-26 23:34:04 |
| Detected languages |
Chinese - PRC
Chinese - Taiwan English - United States |
| Debug artifacts |
E:\MY WORK\PH_TOOL\è²çæ´æ°å·¥å
·\UpdateTool_1.0\èªåç寫工å
·-è²çå®å¶-20210826-å·¥å-客æ·(æ¯æWIN8.1)\èªåç寫工å
·-è²çå®å¶-20210826-æ°å¢F90(å·¥å端使ç¨)(æ¯æWIN8.1)-è±è¯çé¢\SH25F273_MP_TOOL\Release\SH25F273_MP_TOOL.pdb
|
| FileDescription | Update Tool |
| FileVersion | 1.0.0.1 |
| InternalName | Update Tool.exe |
| LegalCopyright | Copyright (C) 2020 |
| OriginalFilename | Update Tool.exe |
| ProductName | Update Tool |
| ProductVersion | 1.0.0.1 |
| Info | Matching compiler(s): |
Microsoft Visual C++ v6.0 DLL
Microsoft Visual C++ 6.0 - 8.0 MASM/TASM - sig1(h) |
| Malicious | The PE contains functions mostly used by malware. |
[!] The program may be hiding some of its imports:
|
| Suspicious | The file contains overlay data. |
61456 bytes of data starting at offset 0x1fb800.
The overlay data has an entropy of 7.63999 and is possibly compressed or encrypted. |
| Safe | VirusTotal score: 0/66 (Scanned on 2026-03-08 15:45:50) | All the AVs think this file is safe. |
| e_magic | MZ |
|---|---|
| e_cblp | 0x90 |
| e_cp | 0x3 |
| e_crlc | 0 |
| e_cparhdr | 0x4 |
| e_minalloc | 0 |
| e_maxalloc | 0xffff |
| e_ss | 0 |
| e_sp | 0xb8 |
| e_csum | 0 |
| e_ip | 0 |
| e_cs | 0 |
| e_ovno | 0 |
| e_oemid | 0 |
| e_oeminfo | 0 |
| e_lfanew | 0x108 |
| Signature | PE |
|---|---|
| Machine |
IMAGE_FILE_MACHINE_I386
|
| NumberofSections | 5 |
| TimeDateStamp | 2021-Aug-26 23:34:04 |
| PointerToSymbolTable | 0 |
| NumberOfSymbols | 0 |
| SizeOfOptionalHeader | 0xe0 |
| Characteristics |
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_EXECUTABLE_IMAGE
|
| Magic | PE32 |
|---|---|
| LinkerVersion | 12.0 |
| SizeOfCode | 0x158800 |
| SizeOfInitializedData | 0xae600 |
| SizeOfUninitializedData | 0 |
| AddressOfEntryPoint | 0x0012FD0D (Section: .text) |
| BaseOfCode | 0x1000 |
| BaseOfData | 0x15a000 |
| ImageBase | 0x400000 |
| SectionAlignment | 0x1000 |
| FileAlignment | 0x200 |
| OperatingSystemVersion | 5.1 |
| ImageVersion | 0.0 |
| SubsystemVersion | 5.1 |
| Win32VersionValue | 0 |
| SizeOfImage | 0x20a000 |
| SizeOfHeaders | 0x400 |
| Checksum | 0 |
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| DllCharacteristics |
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
|
| SizeofStackReserve | 0x100000 |
| SizeofStackCommit | 0x1000 |
| SizeofHeapReserve | 0x100000 |
| SizeofHeapCommit | 0x1000 |
| LoaderFlags | 0 |
| NumberOfRvaAndSizes | 16 |
| SETUPAPI.dll |
SetupDiGetDeviceInterfaceDetailW
SetupDiDestroyDeviceInfoList SetupDiEnumDeviceInterfaces SetupDiGetClassDevsW |
|---|---|
| HID.DLL |
HidD_GetFeature
HidD_GetPreparsedData HidP_GetCaps HidD_FreePreparsedData HidD_GetHidGuid HidD_GetAttributes HidD_SetFeature |
| KERNEL32.dll |
GetACP
GetOEMCP GetCPInfo ReadConsoleW GetStringTypeW GetTimeZoneInformation SetFilePointerEx OutputDebugStringW WriteConsoleW LCMapStringW SetEnvironmentVariableA IsValidCodePage GetConsoleMode GetConsoleCP TerminateProcess SetUnhandledExceptionFilter UnhandledExceptionFilter FreeEnvironmentStringsW EnterCriticalSection GetFileType LeaveCriticalSection SizeofResource LockResource LoadResource FindResourceW CreateFileW GetLastError CloseHandle GetEnvironmentStringsW GetModuleFileNameW GetPrivateProfileIntW GetPrivateProfileStringW GetVersionExW CreateMutexW InitializeCriticalSection DeleteCriticalSection WaitForSingleObject CreateEventW MultiByteToWideChar GetSystemDefaultLangID WritePrivateProfileStringW SetEvent HeapReAlloc HeapAlloc HeapFree GetProcessHeap InitializeCriticalSectionAndSpinCount RaiseException HeapSize DecodePointer WideCharToMultiByte GlobalAlloc GlobalSize GlobalLock SetStdHandle GetSystemTimeAsFileTime VirtualQuery VirtualAlloc GetSystemInfo HeapQueryInformation ExitThread CreateThread GetModuleHandleExW ExitProcess RtlUnwind IsProcessorFeaturePresent IsDebuggerPresent GetCommandLineW GlobalUnlock QueryPerformanceCounter GetStartupInfoW Sleep GetStdHandle GlobalFree LocalFree MulDiv FindResourceExW VirtualProtect SearchPathW GetProfileIntW GetTempPathW GetTempFileNameW VerifyVersionInfoW VerSetConditionMask GetTickCount GetFileTime GetFileSizeEx GetFileAttributesExW GetFileAttributesW FileTimeToLocalFileTime SetErrorMode lstrcpyW GetWindowsDirectoryW lstrcmpiW GetCurrentProcess DuplicateHandle WriteFile UnlockFile SetFilePointer SetEndOfFile ReadFile LockFile GetVolumeInformationW GetFullPathNameW GetFileSize FlushFileBuffers FindFirstFileW FindClose DeleteFileW GetCurrentDirectoryW GlobalFlags GetUserDefaultUILanguage GetSystemDefaultUILanguage GetLocaleInfoW CompareStringW LocalReAlloc LocalAlloc GlobalHandle GlobalReAlloc TlsFree TlsSetValue TlsGetValue TlsAlloc GetThreadLocale FileTimeToSystemTime GlobalGetAtomNameW ResumeThread SuspendThread SetThreadPriority lstrcmpA GetCurrentThread GetCurrentProcessId GlobalFindAtomW GlobalAddAtomW LoadLibraryW LoadLibraryA lstrcmpW GlobalDeleteAtom LoadLibraryExW GetProcAddress GetModuleHandleW GetModuleHandleA FreeResource FreeLibrary GetSystemDirectoryW GetCurrentThreadId EncodePointer OutputDebugStringA SetLastError CopyFileW FormatMessageW |
| USER32.dll |
CreateMenu
DestroyCursor GetWindowRgn ToUnicodeEx SetParent MapVirtualKeyExW IsCharLowerW GetKeyboardLayout PostThreadMessageW IsZoomed GetComboBoxInfo TrackMouseEvent MonitorFromPoint UpdateLayeredWindow IsMenu UnionRect SetWindowRgn DrawFrameControl DrawEdge DrawStateW EmptyClipboard SetClipboardData CloseClipboard OpenClipboard EnumDisplayMonitors SetLayeredWindowAttributes RegisterClipboardFormatW ReuseDDElParam UnpackDDElParam InsertMenuItemW TranslateAcceleratorW LoadAcceleratorsW BringWindowToTop NotifyWinEvent InvertRect HideCaret EnableScrollBar GetAsyncKeyState GetIconInfo DrawIconEx LoadImageW SetRectEmpty DrawFocusRect GetMenuDefaultItem CreatePopupMenu CharUpperW DestroyIcon MessageBeep GetNextDlgGroupItem IsRectEmpty SetRect InvalidateRgn CopyAcceleratorTableW OffsetRect CharNextW KillTimer DeleteMenu WindowFromPoint ReleaseCapture SetCapture WaitMessage IntersectRect RealChildWindowFromPoint CopyImage LoadCursorW GetSysColorBrush SystemParametersInfoW InflateRect GetMenuItemInfoW SetCursor ShowOwnedPopups GetCursorPos TranslateMessage GetMessageW MapDialogRect SetWindowContextHelpId PostQuitMessage SendDlgItemMessageA MapVirtualKeyW GetKeyNameTextW GetActiveWindow GetNextDlgTabItem EndDialog CreateDialogIndirectParamW GetWindowThreadProcessId FillRect ClientToScreen EndPaint BeginPaint ReleaseDC GetWindowDC GetDC TabbedTextOutW GrayStringW DrawTextExW DrawTextW LoadBitmapW SetMenuItemInfoW GetMenuCheckMarkDimensions SetMenuItemBitmaps EnableMenuItem CheckMenuItem GetMonitorInfoW MonitorFromWindow WinHelpW GetScrollInfo SetScrollInfo CallNextHookEx SetWindowsHookExW GetLastActivePopup GetTopWindow GetClassNameW GetClassLongW EqualRect CopyRect GetSysColor MapWindowPoints ScreenToClient AdjustWindowRectEx RemovePropW GetPropW SetPropW ShowScrollBar GetScrollRange SetScrollRange GetScrollPos SetScrollPos ScrollWindow RedrawWindow ValidateRect SetForegroundWindow GetForegroundWindow SetActiveWindow UpdateWindow TrackPopupMenu SetMenu GetMenu GetCapture GetKeyState IsWindowVisible EndDeferWindowPos DeferWindowPos BeginDeferWindowPos SetWindowPlacement GetWindowPlacement DestroyWindow IsChild CreateWindowExW GetClassInfoExW GetClassInfoW RegisterClassW CallWindowProcW DefWindowProcW GetMessageTime GetMessagePos PeekMessageW DispatchMessageW RegisterWindowMessageW LoadMenuW IsDialogMessageW GetWindow GetParent SetWindowLongW SubtractRect GetUpdateRect IsClipboardFormatAvailable TranslateMDISysAccel DefMDIChildProcW DefFrameProcW DrawMenuBar FrameRect CharUpperBuffW ModifyMenuW SetMenuDefaultItem CopyIcon GetWindowLongW GetWindowTextLengthW GetDoubleClickTime SetClassLongW LockWindowUpdate SetCursorPos DestroyAcceleratorTable CreateAcceleratorTableW GetDesktopWindow GetKeyboardState GetWindowTextW SetWindowTextW IsWindowEnabled GetFocus SetFocus GetDlgCtrlID CheckDlgButton GetDlgItem SetWindowPos MoveWindow ShowWindow IsWindow UnhookWindowsHookEx RemoveMenu InsertMenuW GetMenuItemCount GetMenuItemID GetSubMenu GetMenuState GetMenuStringW UnregisterClassW PostMessageW PtInRect RegisterDeviceNotificationW DrawIcon GetClientRect GetSystemMetrics IsIconic SetTimer GetWindowRect AppendMenuW GetSystemMenu LoadIconW EnableWindow SendMessageW InvalidateRect MessageBoxW DestroyMenu |
| GDI32.dll |
DeleteObject
Escape ExcludeClipRect GetClipBox GetObjectType GetPixel GetViewportExtEx GetWindowExtEx IntersectClipRect LineTo PtVisible RectVisible RestoreDC SaveDC SelectClipRgn ExtSelectClipRgn SelectObject SelectPalette SetBkMode SetMapMode SetLayout GetLayout SetPolyFillMode SetROP2 SetTextAlign MoveToEx TextOutW ExtTextOutW CreateDCW SetViewportExtEx SetViewportOrgEx SetWindowExtEx SetWindowOrgEx OffsetViewportOrgEx OffsetWindowOrgEx ScaleViewportExtEx ScaleWindowExtEx CreateRectRgnIndirect PatBlt DeleteDC CombineRgn GetMapMode SetRectRgn DPtoLP GetTextMetricsW GetBkColor GetTextColor GetRgnBox CreatePalette GetNearestPaletteIndex GetPaletteEntries GetSystemPaletteEntries RealizePalette CreateCompatibleBitmap CreateDIBitmap EnumFontFamiliesW GetTextCharsetInfo SetPixel StretchBlt CreateDIBSection SetDIBColorTable CreateEllipticRgn Ellipse CreatePolygonRgn Polygon Polyline Rectangle EnumFontFamiliesExW OffsetRgn CreateRoundRectRgn RoundRect FrameRgn PtInRegion SetPixelV ExtFloodFill SetPaletteEntries FillRgn GetBoundsRect GetWindowOrgEx LPtoDP GetViewportOrgEx GetTextFaceW CreateRectRgn CreatePatternBrush CreatePen CreateHatchBrush CreateCompatibleDC BitBlt CreateBitmap GetObjectW SetTextColor SetBkColor CopyMetaFileW GetStockObject CreateSolidBrush CreateFontIndirectW GetTextExtentPoint32W CreateFontW GetDeviceCaps |
| MSIMG32.dll |
TransparentBlt
AlphaBlend |
| WINSPOOL.DRV |
ClosePrinter
OpenPrinterW DocumentPropertiesW |
| ADVAPI32.dll |
RegSetValueExW
RegEnumKeyExW RegEnumValueW RegQueryValueW RegEnumKeyW RegCloseKey RegDeleteValueW RegDeleteKeyW RegCreateKeyExW RegQueryValueExW RegOpenKeyExW |
| SHELL32.dll |
SHBrowseForFolderW
SHGetFileInfoW SHGetPathFromIDListW SHGetSpecialFolderLocation SHGetDesktopFolder ShellExecuteW SHAppBarMessage DragFinish DragQueryFileW |
| COMCTL32.dll |
InitCommonControlsEx
|
| SHLWAPI.dll |
PathFindFileNameW
PathRemoveFileSpecW PathIsUNCW PathStripToRootW PathFindExtensionW StrFormatKBSizeW |
| UxTheme.dll |
CloseThemeData
GetWindowTheme GetThemeSysColor GetThemePartSize DrawThemeText DrawThemeParentBackground OpenThemeData IsAppThemed IsThemeBackgroundPartiallyTransparent DrawThemeBackground GetThemeColor GetCurrentThemeName |
| ole32.dll |
CreateStreamOnHGlobal
OleUninitialize OleInitialize CoFreeUnusedLibraries CreateILockBytesOnHGlobal StgOpenStorageOnILockBytes StgCreateDocfileOnILockBytes CoGetClassObject CoDisconnectObject CoInitialize CLSIDFromProgID CLSIDFromString CoCreateInstance CoInitializeEx CoUninitialize ReleaseStgMedium OleDuplicateData CoRevokeClassObject CoTaskMemFree CoTaskMemAlloc RevokeDragDrop RegisterDragDrop CoLockObjectExternal OleGetClipboard IsAccelerator OleTranslateAccelerator OleDestroyMenuDescriptor OleCreateMenuDescriptor OleLockRunning DoDragDrop CoRegisterMessageFilter OleIsCurrentClipboard OleFlushClipboard CoCreateGuid |
| OLEAUT32.dll |
OleCreateFontIndirect
LoadTypeLib VarBstrFromDate VariantCopy SafeArrayDestroy VariantTimeToSystemTime SysStringLen SysAllocString VariantChangeType VariantClear VariantInit SysAllocStringLen SystemTimeToVariantTime SysFreeString |
| oledlg.dll |
OleUIBusyW
|
| OLEACC.dll |
CreateStdAccessibleObject
AccessibleObjectFromWindow LresultFromObject |
| gdiplus.dll |
GdipSetInterpolationMode
GdipCreateFromHDC GdipCreateBitmapFromHBITMAP GdipDrawImageI GdipDeleteGraphics GdipBitmapUnlockBits GdipBitmapLockBits GdipCreateBitmapFromScan0 GdipCreateBitmapFromStream GdipGetImagePaletteSize GdipGetImagePalette GdipGetImagePixelFormat GdipGetImageHeight GdipGetImageWidth GdipGetImageGraphicsContext GdipDisposeImage GdipCloneImage GdiplusStartup GdipFree GdipAlloc GdiplusShutdown GdipDrawImageRectI |
| IMM32.dll |
ImmGetContext
ImmReleaseContext ImmGetOpenStatus |
| WINMM.dll |
PlaySoundW
|
| About Update Tool(&A)... |
| Open |
| Save As |
| All Files (*.*) |
| Untitled |
| an unnamed file |
| &Hide |
| No error message is available. |
| Attempted an unsupported operation. |
| A required resource was unavailable. |
| Out of memory. |
| An unknown error has occurred. |
| Encountered an improper argument. |
| Incorrect filename. |
| Failed to open document. |
| Failed to save document. |
| Save changes to %1? |
| Failed to create empty document. |
| The file is too large to open. |
| Could not start print job. |
| Failed to launch help. |
| Internal application error. |
| Command failed. |
| Insufficient memory to perform operation. |
| System registry entries have been removed and the INI file (if any) was deleted. |
| Not all of the system registry entries (or INI file) were removed. |
| This program requires the file %s, which was not found on this system. |
| This program is linked to the missing export %s in the file %s. This machine may have an incompatible version of %s. |
| Enter an integer. |
| Enter a number. |
| Enter an integer between %1 and %2. |
| Enter a number between %1 and %2. |
| Enter no more than %1 characters. |
| Select a button. |
| Enter an integer between 0 and 255. |
| Enter a positive integer. |
| Enter a date and/or time. |
| Enter a currency. |
| Enter a GUID. |
| Enter a time. |
| Enter a date. |
| Unexpected file format. |
| %1 |
| Cannot find this file. |
| Verify that the correct path and file name are given. |
| Destination disk drive is full. |
| Unable to read from %1, it is opened by someone else. |
| Unable to write to %1, it is read-only or opened by someone else. |
| Encountered an unexpected error while reading %1. |
| Encountered an unexpected error while writing %1. |
| %1: %2 |
| Continue running script? |
| Dispatch exception: %1 |
| Unable to read write-only property. |
| Unable to write read-only property. |
| Unable to load mail system support. |
| Mail system DLL is invalid. |
| Send Mail failed to send message. |
| No error occurred. |
| An unknown error occurred while accessing %1. |
| %1 was not found. |
| %1 contains an incorrect path. |
| Could not open %1 because there are too many open files. |
| Access to %1 was denied. |
| An incorrect file handle was associated with %1. |
| Could not remove %1 because it is the current directory. |
| Could not create %1 because the directory is full. |
| Seek failed on %1 |
| Encountered a hardware I/O error while accessing %1. |
| Encountered a sharing violation while accessing %1. |
| Encountered a locking violation while accessing %1. |
| Disk full while accessing %1. |
| Attempted to access %1 past its end. |
| No error occurred. |
| An unknown error occurred while accessing %1. |
| Attempted to write to the reading %1. |
| Attempted to access %1 past its end. |
| Attempted to read from the writing %1. |
| %1 has a bad format. |
| %1 contained an unexpected object. |
| %1 contains an incorrect schema. |
| pixels |
| Uncheck |
| Check |
| Mixed |
| One or more auto-saved documents were found. |
| These are more recently saved than the currently open documents and contain changes that were made before the application closed. |
| Do you want to recover these auto-saved documents? |
| Note that if you choose to recover the auto-saved documents, you must explicitly save them to overwrite the original documents. If you choose to not recover the auto-saved versions, they will be deleted. |
| Recover the auto-saved documents |
| Open the auto-saved versions instead of the explicitly saved versions |
| Don't recover the auto-saved documents |
| Use the last explicitly saved versions of the documents |
| %s [Recovered] |
| Signature | 0xfeef04bd |
|---|---|
| StructVersion | 0x10000 |
| FileVersion | 1.0.0.1 |
| ProductVersion | 1.0.0.1 |
| FileFlags | (EMPTY) |
| FileOs |
VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
|
| FileType |
VFT_APP
|
| Language | Chinese - PRC |
| FileDescription | Update Tool |
| FileVersion (#2) | 1.0.0.1 |
| InternalName | Update Tool.exe |
| LegalCopyright | Copyright (C) 2020 |
| OriginalFilename | Update Tool.exe |
| ProductName | Update Tool |
| ProductVersion (#2) | 1.0.0.1 |
| Resource LangID | Chinese - Taiwan |
|---|
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2021-Aug-26 23:34:04 |
| Version | 0.0 |
| SizeofData | 287 |
| AddressOfRawData | 0x18e1e8 |
| PointerToRawData | 0x18cde8 |
| Referenced File | E:\MY WORK\PH_TOOL\è²çæ´æ°å·¥å ·\UpdateTool_1.0\èªåçå¯«å·¥å ·-è²çå®å¶-20210826-å·¥å-客æ·(æ¯æWIN8.1)\èªåçå¯«å·¥å ·-è²çå®å¶-20210826-æ°å¢F90(å·¥å端使ç¨)(æ¯æWIN8.1)-è±è¯çé¢\SH25F273_MP_TOOL\Release\SH25F273_MP_TOOL.pdb |
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2021-Aug-26 23:34:04 |
| Version | 0.0 |
| SizeofData | 20 |
| AddressOfRawData | 0x18e308 |
| PointerToRawData | 0x18cf08 |
| Size | 0x48 |
|---|---|
| TimeDateStamp | 1970-Jan-01 00:00:00 |
| Version | 0.0 |
| GlobalFlagsClear | (EMPTY) |
| GlobalFlagsSet | (EMPTY) |
| CriticalSectionDefaultTimeout | 0 |
| DeCommitFreeBlockThreshold | 0 |
| DeCommitTotalFreeThreshold | 0 |
| LockPrefixTable | 0 |
| MaximumAllocationSize | 0 |
| VirtualMemoryThreshold | 0 |
| ProcessAffinityMask | 0 |
| ProcessHeapFlags | (EMPTY) |
| CSDVersion | 0 |
| Reserved1 | 0 |
| EditList | 0 |
| SecurityCookie | 0x5ad1c0 |
| SEHandlerTable | 0x597300 |
| SEHandlerCount | 936 |
| XOR Key | 0x53e84e8a |
|---|---|
| Unmarked objects | 0 |
| C objects (65501) | 13 |
| C++ objects (65501) | 1 |
| 208 (65501) | 2 |
| ASM objects (20806) | 41 |
| C objects (20806) | 186 |
| C++ objects (20806) | 381 |
| Imports (65501) | 39 |
| Total imports | 770 |
| 229 (VS2013 build 21005) | 8 |
| Resource objects (VS2013 build 21005) | 1 |
| 151 | 1 |
| Linker (VS2013 build 21005) | 1 |
No comments yet.