12ebb81f1961b4763fc0896fad4d04c8

Summary

Architecture IMAGE_FILE_MACHINE_I386
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date 2051-Jul-12 01:47:22
Debug artifacts C:\Users\xscr33m\Documents\Repos\xscr33m\TraderPlusEditor\TraderPlusEditor\obj\Debug\TraderPlusEditor.pdb
Comments Editor for the DayZ Mod 'TraderPlus' by Dmitri
CompanyName xscr33mLabs
FileDescription TraderPlusEditor
FileVersion 1.2.0.3
InternalName TraderPlusEditor.exe
LegalCopyright Copyright © xscr33mLabs 2024
LegalTrademarks
OriginalFilename TraderPlusEditor.exe
ProductName TraderPlusEditor
ProductVersion 1.2.0.3
Assembly Version 1.2.0.3

Plugin Output

Hashes

MD5 12ebb81f1961b4763fc0896fad4d04c8
SHA1 07978b15cf95a1a341f8376f250d07acb9282de1
SHA256 124c039d5954c219bfea2cefa77cc9f00f5d2d9c44f3a1fe76052120a76c1302
SHA3 bba9b8912ce47eda725196432038afe718311b49277daa4435c3ed8bb76a9e8d
SSDeep 196608:vxdOk/QsaQxscWwm62XrYVFnXn7gmXZM4M:JdOPXQx5Wm2XUVFn37gN3
Imports Hash f34d5f2d4577ed6d9ceec516c1f5a744

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0x80

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_I386
NumberofSections 3
TimeDateStamp 2051-Jul-12 01:47:22
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xe0
Characteristics IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE

Image Optional Header

Magic PE32
LinkerVersion 48.0
SizeOfCode 0x663200
SizeOfInitializedData 0x3e00
SizeOfUninitializedData 0
AddressOfEntryPoint 0x00665126 (Section: .text)
BaseOfCode 0x2000
BaseOfData 0x666000
ImageBase 0x400000
SectionAlignment 0x2000
FileAlignment 0x200
OperatingSystemVersion 4.0
ImageVersion 0.0
SubsystemVersion 6.0
Win32VersionValue 0
SizeOfImage 0x66c000
SizeOfHeaders 0x200
Checksum 0
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NO_SEH
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x100000
SizeofStackCommit 0x1000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 b7ad45cedc5e04bcc72d810e76fc4ba2
SHA1 7f57ca7a23c73b8f0ae4a1d4b759bbca41e8c5ea
SHA256 ff53e5768fa0d423a9a49e353587ffb6afa520b702b818fb8251a21a54553557
SHA3 ca0c5312bd0bdd6900534a95158db3b7d9239b5372646503b8f865fb938dbb92
VirtualSize 0x66312c
VirtualAddress 0x2000
SizeOfRawData 0x663200
PointerToRawData 0x200
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 7.9588

.rsrc

MD5 13c722f99847b0400acfe7401a87a86c
SHA1 6cd69e5dc834128342cb588e5cad017a46152a72
SHA256 0d100dc02b7021f292b85149127c8bf05aed0a320865e1d2ae12b0b143143f2b
SHA3 70b22e14e2658d6b877678c581ea761db983f363614805bd49c9fc9f0a33a3fc
VirtualSize 0x3bbc
VirtualAddress 0x666000
SizeOfRawData 0x3c00
PointerToRawData 0x663400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 7.62285

.reloc

MD5 0db26987ea3664fa888b86874b43b6c9
SHA1 445557d6b56a919dfca31b55ba65638ba9805fe7
SHA256 41aa6ba03c0c1963495638e11bb6f9adef18fdad4a63828013feb2880662a4d3
SHA3 e5e06ce331a839f51e1cfec32683497747537dfc0e68d839c6f5788c36ebc1f3
VirtualSize 0xc
VirtualAddress 0x66a000
SizeOfRawData 0x200
PointerToRawData 0x667000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy 0.10191

Imports

mscoree.dll _CorExeMain

Delayed Imports

1

Type RT_ICON
Language UNKNOWN
Codepage UNKNOWN
Size 0x34a1
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.84903
MD5 50183d84a5bbb6a254e28e66018800b6
SHA1 5d839a59c253bc3069ee6b519dfae9ef7d40ece6
SHA256 e623a25cecf2233ae0be0d8984495d8ebc35e5c3ae4074e98295b0837b4874c2
SHA3 bc08f02a9064e1ec4e29c9eec1c77f704f87157dc76f1d70fcdf7dc59b46b681

32512

Type RT_GROUP_ICON
Language UNKNOWN
Codepage UNKNOWN
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 1.51664
MD5 af0a4a292259beb52c7ae8d3568d4aab
SHA1 289c725fd9c2ed31785a1a9a4cdbb792e0aaba55
SHA256 5bc84f5eb570385b730176f4f1d82fcdb98ff1cc1e1cf1f0c6153661eda7424c
SHA3 8b7f03d73b603a59d45f58dd9f52f511de39c7467ff20aa6704e07294d931211

1 (#2)

Type RT_VERSION
Language UNKNOWN
Codepage UNKNOWN
Size 0x3e4
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.39451
MD5 6e8c5322ccf579fd1597ffd7d5a751ca
SHA1 95fe27aa87f5d8b8923e5e820b62f25658161ebf
SHA256 770f33c4595276d250430d1b9f34fa2ce041efc1b69a57445ab0a233f71c3e86
SHA3 521652150ad1021ced9efa6431c4ad6dce68d099080e8563e2bc934ef4524d74

1 (#3)

Type RT_MANIFEST
Language UNKNOWN
Codepage UNKNOWN
Size 0x1ea
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.00112
MD5 b7db84991f23a680df8e95af8946f9c9
SHA1 cac699787884fb993ced8d7dc47b7c522c7bc734
SHA256 539dc26a14b6277e87348594ab7d6e932d16aabb18612d77f29fe421a9f1d46a
SHA3 4f72877413d13a67b52b292a8524e2c43a15253c26aaf6b5d0166a65bc615cff

Version Info

Signature 0xfeef04bd
StructVersion 0x10000
FileVersion 1.2.0.3
ProductVersion 1.2.0.3
FileFlags (EMPTY)
FileOs VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
FileType VFT_APP
Language UNKNOWN
Comments Editor for the DayZ Mod 'TraderPlus' by Dmitri
CompanyName xscr33mLabs
FileDescription TraderPlusEditor
FileVersion (#2) 1.2.0.3
InternalName TraderPlusEditor.exe
LegalCopyright Copyright © xscr33mLabs 2024
LegalTrademarks
OriginalFilename TraderPlusEditor.exe
ProductName TraderPlusEditor
ProductVersion (#2) 1.2.0.3
Assembly Version 1.2.0.3
Resource LangID UNKNOWN

IMAGE_DEBUG_TYPE_CODEVIEW

Characteristics 0
TimeDateStamp 2068-Jul-08 12:46:52
Version 0.0
SizeofData 130
AddressOfRawData 0x665050
PointerToRawData 0x663250
Referenced File C:\Users\xscr33m\Documents\Repos\xscr33m\TraderPlusEditor\TraderPlusEditor\obj\Debug\TraderPlusEditor.pdb

UNKNOWN

Characteristics 0
TimeDateStamp 1970-Jan-01 00:00:00
Version 0.0
SizeofData 0
AddressOfRawData 0
PointerToRawData 0

TLS Callbacks

Load Configuration

RICH Header

Errors

Could not load company_names.yara! [*] Warning: Please edit the configuration file with your VirusTotal API key. [!] Error: Could not load yara_rules/bitcoin.yara! [!] Error: Could not load yara_rules/monero.yara! [!] Error: Could not load yara_rules/compilers.yara! [!] Error: Could not load yara_rules/findcrypt.yara! [!] Error: Could not load yara_rules/suspicious_strings.yara! [!] Error: Could not load yara_rules/domains.yara! [!] Error: Could not load yara_rules/peid.yara!