File Path | Type and Hashes |
---|---|
C:\Users\user\AppData\Local\Temp\_MEI22722\zstandard\backend_c.cp310-win_amd64.pyd |
Type : PE32+ executable (DLL) (GUI) x86-64, for MS Windows MD5 : 4ec296c5608d46afdb37048b920a676b SHA-1 : c94c21c9e9621940f59bcec2f6a576a991b42a03 SHA-256 : a0f31c62e0c1b25857330afa3d8c23b68d2e2b1d18ffc6d69ffb3db481fae40d SHA-512 : 7c49668bc1e9cca2b07533ae7e1dfac27a6c660ddb33553b0300a3946188d32e471bcae1c1cc203388b21265bdcf04fcbfae94c767537dca5f3dc8d17be34e24 Size : 525.312 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\cryptography-41.0.1.dist-info\LICENSE.APACHE |
Type : ASCII text MD5 : 4e168cce331e5c827d4c2b68a6200e1b SHA-1 : de33ead2bee64352544ce0aa9e410c0c44fdf7d9 SHA-256 : aac73b3148f6d1d7111dbca32099f68d26c644c6813ae1e4f05f6579aa2663fe SHA-512 : f451048e81a49fbfa11b49de16ff46c52a8e3042d1bcc3a50aaf7712b097bed9ae9aed9149c21476c2a1e12f1583d4810a6d36569e993fe1ad3879942e5b0d52 Size : 11.36 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\_cffi_backend.cp310-win_amd64.pyd |
Type : PE32+ executable (DLL) (GUI) x86-64, for MS Windows MD5 : 6f1b90884343f717c5dc14f94ef5acea SHA-1 : cca1a4dcf7a32bf698e75d58c5f130fb3572e423 SHA-256 : 2093e7e4f5359b38f0819bdef8314fda332a1427f22e09afc416e1edd5910fe1 SHA-512 : e2c673b75162d3432bab497bad3f5f15a9571910d25f1dffb655755c74457ac78e5311bd5b38d29a91aec4d3ef883ae5c062b9a3255b5800145eb997863a7d73 Size : 181.248 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\_hashlib.pyd |
Type : PE32+ executable (DLL) (GUI) x86-64, for MS Windows MD5 : d856a545a960bf2dca1e2d9be32e5369 SHA-1 : 67a15ecf763cdc2c2aa458a521db8a48d816d91e SHA-256 : cd33f823e608d3bda759ad441f583a20fc0198119b5a62a8964f172559acb7d3 SHA-512 : 34a074025c8b28f54c01a7fd44700fdedb391f55be39d578a003edb90732dec793c2b0d16da3da5cdbd8adbaa7b3b83fc8887872e284800e7a8389345a30a6a4 Size : 61.824 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\_ssl.pyd |
Type : PE32+ executable (DLL) (GUI) x86-64, for MS Windows MD5 : 9ddb64354ef0b91c6999a4b244a0a011 SHA-1 : 86a9dc5ea931638699eb6d8d03355ad7992d2fee SHA-256 : e33b7a4aa5cdd5462ee66830636fdd38048575a43d06eb7e2f688358525ddeab SHA-512 : 4c86478861fa4220680a94699e7d55fbdc90d2785caee10619cecb058f833292ee7c3d6ac2ed1ef34b38fbff628b79d672194a337701727a54bb6bbc5bf9aeca Size : 159.096 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\_bz2.pyd |
Type : PE32+ executable (DLL) (GUI) x86-64, for MS Windows MD5 : bbe89cf70b64f38c67b7bf23c0ea8a48 SHA-1 : 44577016e9c7b463a79b966b67c3ecc868957470 SHA-256 : 775fbc6e9a4c7e9710205157350f3d6141b5a9e8f44cb07b3eac38f2789c8723 SHA-512 : 3ee72ba60541116bbca1a62db64074276d40ad8ed7d0ca199a9c51d65c3f0762a8ef6d0e1e9ebf04bf4efe1347f120e4bc3d502dd288339b4df646a59aad0ec1 Size : 83.32 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\brotli\_brotli.pyd |
Type : PE32+ executable (DLL) (GUI) x86-64, for MS Windows MD5 : 5cd8cbde51c687b96a732c6cab46b016 SHA-1 : 9584be1465af75937f9cff3c6609ce2f6228498f SHA-256 : 9d007f4dd7e138404aa849eb1afa8637b8d28606f7e3349bc99fb9279184319f SHA-512 : 1f9681c65f8f803d7e150c03a126ccee715e680035b30d0dcdcd538735d2e294ee8766f5afaa4a2d663eb5da13ec85eef01f57d967753f09649017911fdd2d27 Size : 838.144 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\python3.dll |
Type : PE32+ executable (DLL) (GUI) x86-64, for MS Windows MD5 : c17b7a4b853827f538576f4c3521c653 SHA-1 : 6115047d02fbbad4ff32afb4ebd439f5d529485a SHA-256 : d21e60f3dfbf2bab0cc8a06656721fa3347f026df10297674fc635ebf9559a68 SHA-512 : 8e08e702d69df6840781d174c4565e14a28022b40f650fda88d60172be2d4ffd96a3e9426d20718c54072ca0da27e0455cc0394c098b75e062a27559234a3df7 Size : 64.896 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\certifi\cacert.pem |
Type : ASCII text MD5 : 8d0619bfe30deadf6f21196f0f8d53d3 SHA-1 : e7abd65a8ccafeff6caf6a2ff98d27d24d87c9ad SHA-256 : b301535dca491d9814ea28faa320ac7a19d0f5d94237996fa0a3b5a936432514 SHA-512 : 5a88e4a06b98832aaa9bbb89e382f6c7e9b65c5ecba48de8f4ff1fa58bb06a74b9c2f6b2ec185c2a306cb0b5d68d0b28d74b323432a0b2953d8dfc29fed920d7 Size : 278.952 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\cryptography-41.0.1.dist-info\top_level.txt |
Type : ASCII text MD5 : e7274bd06ff93210298e7117d11ea631 SHA-1 : 7132c9ec1fd99924d658cc672f3afe98afefab8a SHA-256 : 28d693f929f62b8bb135a11b7ba9987439f7a960cc969e32f8cb567c1ef79c97 SHA-512 : aa6021c4e60a6382630bebc1e16944f9b312359d645fc61219e9a3f19d876fd600e07dca6932dcd7a1e15bfdeac7dbdceb9fffcd5ca0e5377b82268ed19de225 Size : 0.013 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\unicodedata.pyd |
Type : PE32+ executable (DLL) (GUI) x86-64, for MS Windows MD5 : 4c8af8a30813e9380f5f54309325d6b8 SHA-1 : 169a80d8923fb28f89bc26ebf89ffe37f8545c88 SHA-256 : 4b6e3ba734c15ec789b5d7469a5097bd082bdfd8e55e636ded0d097cf6511e05 SHA-512 : ea127779901b10953a2bf9233e20a4fab2fba6f97d7baf40c1b314b7cd03549e0f4d2fb9bad0fbc23736e21eb391a418d79a51d64402245c1cd8899e4d765c5a Size : 1122.176 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\cryptography-41.0.1.dist-info\INSTALLER |
Type : ASCII text MD5 : 365c9bfeb7d89244f2ce01c1de44cb85 SHA-1 : d7a03141d5d6b1e88b6b59ef08b6681df212c599 SHA-256 : ceebae7b8927a3227e5303cf5e0f1f7b34bb542ad7250ac03fbcde36ec2f1508 SHA-512 : d220d322a4053d84130567d626a9f7bb2fb8f0b854da1621f001826dc61b0ed6d3f91793627e6f0ac2ac27aea2b986b6a7a63427f05fe004d8a2adfbdadc13c1 Size : 0.004 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\bcrypt\_bcrypt.pyd |
Type : PE32+ executable (DLL) (GUI) x86-64, for MS Windows MD5 : 03ef5e8da65667751e1fd3fa0c182d3e SHA-1 : 4608d1efca23143006c1338deda144a2f3bb8a16 SHA-256 : 3d1c66bdcb4fa0b8e917895e1b4d62ee14260eaa1bd6fe908877c47585ec6127 SHA-512 : c094a3dfbd863726524c56dab2592b3513a3a8c445bcaac6cfb41a5ddec3079d9b1f849c6826c1cc4241ca8b0aa44e33d2502bb20856313966af31f480ba8811 Size : 301.568 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\cryptography-41.0.1.dist-info\WHEEL |
Type : ASCII text MD5 : c20f485ec06558eb04b2edce8362fd4f SHA-1 : d621f40b4522e88fd3e56ebeaa6332c7bdf40bed SHA-256 : 005f333e44a4700866383a4bb757adf739b247823d0a0fb35c4a9f7c91557f39 SHA-512 : c701255a1793c5478f8b8ff7cbd86adb4fe2320808c6a395461459b422d159312472519f01f337fd2801271d9732db19f9f18e8bd4d0541c0f38387af4a87f52 Size : 0.1 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\cryptography-41.0.1.dist-info\LICENSE.BSD |
Type : ASCII text MD5 : 5ae30ba4123bc4f2fa49aa0b0dce887b SHA-1 : ea5b412c09f3b29ba1d81a61b878c5c16ffe69d8 SHA-256 : 602c4c7482de6479dd2e9793cda275e5e63d773dacd1eca689232ab7008fb4fb SHA-512 : ddbb20c80adbc8f4118c10d3e116a5cd6536f72077c5916d87258e155be561b89eb45c6341a1e856ec308b49a4cb4dba1408eabd6a781fbe18d6c71c32b72c41 Size : 1.532 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\libssl-1_1.dll |
Type : PE32+ executable (DLL) (GUI) x86-64, for MS Windows MD5 : 8769adafca3a6fc6ef26f01fd31afa84 SHA-1 : 38baef74bdd2e941ccd321f91bfd49dacc6a3cb6 SHA-256 : 2aebb73530d21a2273692a5a3d57235b770daf1c35f60c74e01754a5dac05071 SHA-512 : fac22f1a2ffbfb4789bdeed476c8daf42547d40efe3e11b41fadbc4445bb7ca77675a31b5337df55fdeb4d2739e0fb2cbcac2feabfd4cd48201f8ae50a9bd90b Size : 702.816 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\select.pyd |
Type : PE32+ executable (DLL) (GUI) x86-64, for MS Windows MD5 : c119811a40667dca93dfe6faa418f47a SHA-1 : 113e792b7dcec4366fc273e80b1fc404c309074c SHA-256 : 8f27cd8c5071cb740a2191b3c599e99595b121f461988166f07d9f841e7116b7 SHA-512 : 107257dbd8cf2607e4a1c7bef928a6f61ebdfc21be1c4bdc3a649567e067e9bb7ea40c0ac8844d2cedd08682447b963148b52f85adb1837f243df57af94c04b3 Size : 29.048 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\_lzma.pyd |
Type : PE32+ executable (DLL) (GUI) x86-64, for MS Windows MD5 : 0a94c9f3d7728cf96326db3ab3646d40 SHA-1 : 8081df1dca4a8520604e134672c4be79eb202d14 SHA-256 : 0a70e8546fa6038029f2a3764e721ceebea415818e5f0df6b90d6a40788c3b31 SHA-512 : 6f047f3bdaead121018623f52a35f7e8b38c58d3a9cb672e8056a5274d02395188975de08cabae948e2cc2c1ca01c74ca7bc1b82e2c23d652e952f3745491087 Size : 157.56 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\base_library.zip |
Type : Zip archive data, at least v2.0 to extract MD5 : 524a85217dc9edc8c9efc73159ca955d SHA-1 : a4238cbde50443262d00a843ffe814435fb0f4e2 SHA-256 : 808549964adb09afafb410cdc030df4813c5c2a7276a94e7f116103af5de7621 SHA-512 : f5a929b35a63f073bdc7600155ba2f0f262e6f60cf67efb38fa44e8b3be085cf1d5741d66d25a1ecaaf3f94abfe9bbe97d135f8a47c11f2b811d2aac6876f46c Size : 831.92 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\cryptography-41.0.1.dist-info\LICENSE |
Type : ASCII text MD5 : 8c3617db4fb6fae01f1d253ab91511e4 SHA-1 : e442040c26cd76d1b946822caf29011a51f75d6d SHA-256 : 3e0c7c091a948b82533ba98fd7cbb40432d6f1a9acbf85f5922d2f99a93ae6bb SHA-512 : 77a1919e380730bcce5b55d76fbffba2f95874254fad955bd2fe1de7fc0e4e25b5fdaab0feffd6f230fa5dc895f593cf8bfedf8fdc113efbd8e22fadab0b8998 Size : 0.197 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\python310.dll |
Type : PE32+ executable (DLL) (GUI) x86-64, for MS Windows MD5 : deaf0c0cc3369363b800d2e8e756a402 SHA-1 : 3085778735dd8badad4e39df688139f4eed5f954 SHA-256 : 156cf2b64dd0f4d9bdb346b654a11300d6e9e15a65ef69089923dafc1c71e33d SHA-512 : 5cac1d92af7ee18425b5ee8e7cd4e941a9ddffb4bc1c12bb8aeabeed09acec1ff0309abc41a2e0c8db101fee40724f8bfb27a78898128f8746c8fe01c1631989 Size : 4492.664 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\_decimal.pyd |
Type : PE32+ executable (DLL) (GUI) x86-64, for MS Windows MD5 : 6339fa92584252c3b24e4cce9d73ef50 SHA-1 : dccda9b641125b16e56c5b1530f3d04e302325cd SHA-256 : 4ae6f6fb3992bb878416211221b3d62515e994d78f72eab51e0126ca26d0ee96 SHA-512 : 428b62591d4eba3a4e12f7088c990c48e30b6423019bebf8ede3636f6708e1f4151f46d442516d2f96453694ebeef78618c0c8a72e234f679c6e4d52bebc1b84 Size : 248.704 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\_socket.pyd |
Type : PE32+ executable (DLL) (GUI) x86-64, for MS Windows MD5 : 0f5e64e33f4d328ef11357635707d154 SHA-1 : 8b6dcb4b9952b362f739a3f16ae96c44bea94a0e SHA-256 : 8af6d70d44bb9398733f88bcfb6d2085dd1a193cd00e52120b96a651f6e35ebe SHA-512 : 4be9febb583364da75b6fb3a43a8b50ee29ca8fc1dda35b96c0fcc493342372f69b4f27f2604888bca099c8d00f38a16f4c9463c16eff098227d812c29563643 Size : 77.696 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\zstandard\_cffi.cp310-win_amd64.pyd |
Type : PE32+ executable (DLL) (GUI) x86-64, for MS Windows MD5 : 117e86f2144e337b04c04949df435e8f SHA-1 : fffb49bd8a50368f25c014ed725f060eae6ff3d3 SHA-256 : 3ae3f79f0fa25e5978937c83fa77650a6ce2ae6507d7d9deafd9aa19035b05e5 SHA-512 : 2e4fc563a11805add9eda9cc68f9d3f988d970d402a688c2abee57960f21e3988f4a6b4667f615d261a2ba34e3ee9a3fc0fc40e82604890946bdc1e543d20c6c Size : 655.36 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\libcrypto-1_1.dll |
Type : PE32+ executable (DLL) (GUI) x86-64, for MS Windows MD5 : 6f4b8eb45a965372156086201207c81f SHA-1 : 8278f9539463f0a45009287f0516098cb7a15406 SHA-256 : 976ce72efd0a8aeeb6e21ad441aa9138434314ea07f777432205947cdb149541 SHA-512 : 2c5c54842aba9c82fb9e7594ae9e264ac3cbdc2cc1cd22263e9d77479b93636799d0f28235ac79937070e40b04a097c3ea3b7e0cd4376a95ed8ca90245b7891f Size : 3441.504 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\VCRUNTIME140.dll |
Type : PE32+ executable (DLL) (console) x86-64, for MS Windows MD5 : 870fea4e961e2fbd00110d3783e529be SHA-1 : a948e65c6f73d7da4ffde4e8533c098a00cc7311 SHA-256 : 76fdb83fde238226b5bebaf3392ee562e2cb7ca8d3ef75983bf5f9d6c7119644 SHA-512 : 0b636a3cdefa343eb4cb228b391bb657b5b4c20df62889cd1be44c7bee94ffad6ec82dc4db79949edef576bff57867e0d084e0a597bf7bf5c8e4ed1268477e88 Size : 109.392 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\_queue.pyd |
Type : PE32+ executable (DLL) (GUI) x86-64, for MS Windows MD5 : 52d0a6009d3de40f4fa6ec61db98c45c SHA-1 : 5083a2aff5bcce07c80409646347c63d2a87bd25 SHA-256 : 007bcf19d9b036a7e73f5ef31f39bfb1910f72c9c10e4a1b0658352cfe7a8b75 SHA-512 : cd552a38efaa8720a342b60318f62320ce20c03871d2e50d3fa3a9a730b84dacdbb8eb4d0ab7a1c8a97215b537826c8dc532c9a55213bcd0c1d13d7d8a9ad824 Size : 30.592 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\cryptography\hazmat\bindings\_rust.pyd |
Type : PE32+ executable (DLL) (GUI) x86-64, for MS Windows MD5 : c43b06ff74532d3f019ec49b305b6691 SHA-1 : 536dbd74295e2de0fab50ae763d32e04e8dee4e4 SHA-256 : 66b292e36fdb53a3b827bb23959551d4772942df2b300e99e719de29144164f1 SHA-512 : 1f6af3f6abc231221c2dc708a6a838b5dbec5ee8e7e5bedd473ca2eb768c98783bae5660fd064c115873aedc0d5f55657b60498119a36710243d40c6c86dc37a Size : 6596.608 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\cryptography-41.0.1.dist-info\METADATA |
Type : ASCII text, with CRLF line terminators MD5 : 4e5169613d93ec27ee0b3a0e80db6640 SHA-1 : 7d721c24ead56b9cd623ed9b5e0811de9a71b85b SHA-256 : 855ed42caab9fbdcc6a95c098a02bc58c9035757d40129a9b715d8f7f4189624 SHA-512 : 14179fca4596cbdf4201ed38e8c0866bcc67f334b880d2f0a447b283a7b7fb61f7fb75b0fde98dd6918ff6c578fdc61654302595503062900ebbbd7cc98392f7 Size : 5.308 Kilobytes. |
C:\Users\user\AppData\Local\Temp\_MEI22722\cryptography-41.0.1.dist-info\RECORD |
Type : ASCII text, with CRLF line terminators MD5 : e37c1ab144452fdb2ed9f66c119ae9c0 SHA-1 : d4a3c94df3fdcbe9eff8011123537db160f334a7 SHA-256 : 201644eed53b9ab5e903a8a9269d1e6f4eff6b4f2b3cca0248f5922311306b86 SHA-512 : 0f94409ef84cb2fad2b4a45d0c42ed5a484444b4de9870eb00d6c6a799167eb496b5a785520312bf0b9ce282030a959190f12b2aba2642957b378b37ffbae3b5 Size : 15.24 Kilobytes. |
Match Rules |
---|
File Name: | d191af7816640acd232d85dff54294cf0890d15d6d5d2c0fdfaa95babccf9a6c.exe |
File Type: | PE32+ executable (GUI) x86-64, for MS Windows |
SHA1: | 45b63e00c568632d21828d652ee538085ad64e11 |
MD5: | 3affbe6f0688c8a598fef9d8bcef1c6b |
First Seen Date: | 2023-07-29 09:40:16.947451 ( ) |
Number of Clients Seen: | 4 |
Last Analysis Date: | 2023-07-29 09:53:25.973789 ( ) |
Human Expert Analysis Date: | 2023-07-30 11:36:23.817092 ( ) |
Human Expert Analysis Result: | Malware |
Property | Value |
---|---|
magic literal enum | 4 |
file type enum | 7 |
debug artifacts | [] |
number of sections | 7 |
trid | [] |
compilation time stamp | 0x64C3AC48 [Fri Jul 28 11:53:44 2023 UTC] |
entry point | 0x14000afa0 (.text) |
machine type | AMD64 only, not Itaniums, with 0200 - 64 bit |
file size | 10348611 |
ssdeep | |
sha256 | d191af7816640acd232d85dff54294cf0890d15d6d5d2c0fdfaa95babccf9a6c |
exifinfo | [] |
mime type | application/x-dosexec |
imphash |
File Path on Client | Seen Count |
---|---|
45b63e00c568632d21828d652ee538085ad64e11 | 1 |
Name | Virtual Address | Virtual Size | Raw Size | Entropy | MD5 |
---|---|---|---|---|---|
.text | 0x1000 | 0x28710 | 0x28800 | 6.48667752666 | e4f89af1ba6511882cb4cd14d9f6eca0 |
.rdata | 0x2a000 | 0x1282e | 0x12a00 | 5.81299986053 | 5caf5ab57d3fed70c8b6793b4ca01772 |
.data | 0x3d000 | 0x103e8 | 0xe00 | 1.80114268406 | 8197d15b5af8fff7ec6022f8809b64c8 |
.pdata | 0x4e000 | 0x20a0 | 0x2200 | 5.32574879678 | 77e2f2d72516a8aa1832e8298e54381f |
_RDATA | 0x51000 | 0x15c | 0x200 | 2.7579156834 | 0ed86077474ad8a4a0621ecbc29cb84c |
.rsrc | 0x52000 | 0xf49c | 0xf600 | 7.5555827686 | 2a561f84ac4c20f82b09919c46bf97cc |
.reloc | 0x62000 | 0x754 | 0x800 | 5.23933364424 | 7fed9a3addc55d51107d5af5a380ab8e |
{u'lang': u'LANG_NEUTRAL', u'name': u'RT_ICON', u'offset': 336392, u'sha256': u'7cccfafd00332ac9c9f6ac0112cc0653991eb169943919e55d05f3fa15929821', u'type': u'data', u'size': 3752}
{u'lang': u'LANG_NEUTRAL', u'name': u'RT_ICON', u'offset': 340144, u'sha256': u'd73c1848a067a0fd094423213dc1e855b5b29b0b441f0bcb315feb90d662972e', u'type': u'data', u'size': 2216}
{u'lang': u'LANG_NEUTRAL', u'name': u'RT_ICON', u'offset': 342360, u'sha256': u'5a008270f7254f5ca861e9936f4b5b7a23c04d63165895234fd1782bc03ec0e5', u'type': u'GLS_BINARY_LSB_FIRST', u'size': 1384}
{u'lang': u'LANG_NEUTRAL', u'name': u'RT_ICON', u'offset': 343744, u'sha256': u'3919b11194f130d310dfe08bdce2891c5b64f2703107f53a5a1cbc016fdb609f', u'type': u'PNG image data, 256 x 256, 8-bit/color RGBA, non-interlaced', u'size': 38188}
{u'lang': u'LANG_NEUTRAL', u'name': u'RT_ICON', u'offset': 381932, u'sha256': u'7ef5a24efde1748c0eb12c5817b14cfe1397ae968489a7824a269d02c8223cee', u'type': u'data', u'size': 9640}
{u'lang': u'LANG_NEUTRAL', u'name': u'RT_ICON', u'offset': 391572, u'sha256': u'c5536b396be6dcfc96f4e4f77cc7007b2a56730ee57598a6979cc1c1c71c920a', u'type': u'data', u'size': 4264}
{u'lang': u'LANG_NEUTRAL', u'name': u'RT_ICON', u'offset': 395836, u'sha256': u'ac2e25dc4a4f7bd96a0bcf3ea63cd1bcf26a6f6a05835e32f96ef99cb4323f30', u'type': u'GLS_BINARY_LSB_FIRST', u'size': 1128}
{u'lang': u'LANG_NEUTRAL', u'name': u'RT_GROUP_ICON', u'offset': 396964, u'sha256': u'f5b94a42f1c77c9eef858a0dfd656419fea900b00318c2c0bf49c2fce345d838', u'type': u'MS Windows icon resource - 7 icons, 48x48', u'size': 104}
{u'lang': u'LANG_NEUTRAL', u'name': u'RT_MANIFEST', u'offset': 397068, u'sha256': u'94146f7cbbb2a5a4662325321c6d5d057c50f06308fbbb6f2c5a3bdaf0adbaac', u'type': u'XML 1.0 document, ASCII text, with CRLF line terminators', u'size': 1422}