Architecture |
IMAGE_FILE_MACHINE_I386
|
---|---|
Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
Compilation Date | 2017-Jun-26 05:39:37 |
Detected languages |
English - United States
|
Debug artifacts |
C:\Users\paparao\Downloads\bitmapinfo\mvp_tips\BitMapInfo\Release\BitMapInfo.pdb
|
Comments | |
CompanyName | |
FileDescription | BitMapInfo |
FileVersion | 1, 0, 0, 1 |
InternalName | BitMapInfo |
LegalCopyright | Copyright © 2003, Joseph M. Newcomer, All Rights Reserved |
LegalTrademarks | |
OriginalFilename | BitMapInfo.EXE |
PrivateBuild | |
ProductName | BitMapInfo |
ProductVersion | 1, 0, 0, 1 |
SpecialBuild |
Info | Matching compiler(s): | MASM/TASM - sig1(h) |
Info | The PE contains common functions which appear in legitimate applications. |
[!] The program may be hiding some of its imports:
|
Suspicious | No VirusTotal score. | This file has never been scanned on VirusTotal. |
e_magic | MZ |
---|---|
e_cblp | 0x90 |
e_cp | 0x3 |
e_crlc | 0 |
e_cparhdr | 0x4 |
e_minalloc | 0 |
e_maxalloc | 0xffff |
e_ss | 0 |
e_sp | 0xb8 |
e_csum | 0 |
e_ip | 0 |
e_cs | 0 |
e_ovno | 0 |
e_oemid | 0 |
e_oeminfo | 0 |
e_lfanew | 0x100 |
Signature | PE |
---|---|
Machine |
IMAGE_FILE_MACHINE_I386
|
NumberofSections | 7 |
TimeDateStamp | 2017-Jun-26 05:39:37 |
PointerToSymbolTable | 0 |
NumberOfSymbols | 0 |
SizeOfOptionalHeader | 0xe0 |
Characteristics |
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_EXECUTABLE_IMAGE
|
Magic | PE32 |
---|---|
LinkerVersion | 14.0 |
SizeOfCode | 0xb400 |
SizeOfInitializedData | 0xc600 |
SizeOfUninitializedData | 0 |
AddressOfEntryPoint | 0x0000A2BB (Section: .text) |
BaseOfCode | 0x1000 |
BaseOfData | 0xd000 |
ImageBase | 0x400000 |
SectionAlignment | 0x1000 |
FileAlignment | 0x200 |
OperatingSystemVersion | 6.0 |
ImageVersion | 0.0 |
SubsystemVersion | 6.0 |
Win32VersionValue | 0 |
SizeOfImage | 0x1d000 |
SizeOfHeaders | 0x400 |
Checksum | 0 |
Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
DllCharacteristics |
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
|
SizeofStackReserve | 0x100000 |
SizeofStackCommit | 0x1000 |
SizeofHeapReserve | 0x100000 |
SizeofHeapCommit | 0x1000 |
LoaderFlags | 0 |
NumberOfRvaAndSizes | 16 |
mfc140.dll |
#4580
#12806 #12869 #10383 #12190 #8347 #1468 #7618 #8429 #2200 #1507 #265 #266 #2383 #2381 #2376 #2387 #6724 #5861 #8146 #310 #1526 #1529 #1692 #1696 #2986 #8426 #500 #6302 #6924 #11907 #12989 #12294 #2880 #1140 #12291 #14518 #12348 #14571 #2241 #2518 #450 #12894 #14184 #1106 #890 #1389 #4869 #3689 #2560 #4490 #14054 #7783 #14048 #12969 #14149 #3825 #9096 #6505 #3159 #12162 #3395 #458 #10421 #11343 #10963 #8997 #12115 #9167 #2758 #13677 #6193 #12074 #10986 #7459 #6806 #3250 #4227 #9092 #6464 #3140 #4210 #9083 #2210 #2297 #6473 #10962 #8996 #5938 #501 #1141 #4085 #6290 #906 #4098 #6768 #898 #13036 #13027 #13230 #6836 #1472 #301 #2520 #6533 #8770 #8326 #4640 #4866 #3949 #6460 #6761 #13011 #362 #8285 #2484 #13855 #13854 #6851 #10379 #11850 #1064 #1443 #1109 #4084 #5742 #10202 #2298 #9088 #1177 #2751 #14487 #3866 #2989 #8704 #4215 #3184 #6562 #6104 #7619 #6195 #13681 #3298 #3295 #10207 #8173 #2759 #14699 #10237 #10239 #10238 #10236 #10240 #5631 #11671 #11672 #12032 #3830 #11881 #14502 #8922 #12163 #6947 #10950 #9213 #3259 #13798 #12205 #12201 #1717 #1739 #1765 #1751 #1772 #4920 #4987 #4932 #4950 #4944 #4938 #4997 #4981 #4926 #5003 #4958 #4896 #4911 #4972 #4493 #5769 #9647 #4485 #3050 #14510 #7887 #14508 #6848 #11663 #13628 #5911 #2680 #12067 #3933 #3363 #3364 #3258 #12111 #1000 #5228 #5528 #5739 #9305 #5504 #5231 #5390 #5210 #7687 #7688 #7677 #5388 #8182 #9166 #13234 #4865 #358 #6463 #12485 #12484 #14509 #5336 #1066 #3874 #7886 #14507 #9353 #4143 #4082 #12888 #7905 #2027 #11928 #11927 #14380 #12474 #7964 #14581 #6322 #14583 #6324 #14582 #6323 #993 #6540 #4807 #6831 #3844 #5894 #1044 #12182 #8180 #10330 #316 #6853 #12194 #1661 #3396 #1509 #2407 |
---|---|
KERNEL32.dll |
DeleteCriticalSection
InitializeCriticalSectionEx GetProcessHeap HeapSize HeapFree HeapReAlloc HeapAlloc HeapDestroy RaiseException DecodePointer GlobalFree GlobalUnlock GlobalLock GlobalReAlloc GlobalAlloc lstrcpyA FormatMessageA LocalFree OutputDebugStringW OutputDebugStringA SetLastError InitializeCriticalSectionAndSpinCount GetModuleFileNameW GetModuleHandleA GetModuleHandleW GetProcAddress LoadLibraryW CloseHandle EnterCriticalSection LeaveCriticalSection SetEvent ResetEvent WaitForSingleObjectEx CreateEventW UnhandledExceptionFilter SetUnhandledExceptionFilter GetCurrentProcess GetLastError TerminateProcess IsProcessorFeaturePresent IsDebuggerPresent GetStartupInfoW QueryPerformanceCounter GetCurrentProcessId GetCurrentThreadId GetSystemTimeAsFileTime InitializeSListHead |
USER32.dll |
EnableWindow
GetClientRect GetSysColor DrawFocusRect FillRect RegisterWindowMessageA IsWindow IsWindowVisible IsIconic SetTimer LoadAcceleratorsA GetFocus GetSystemMetrics GetSystemMenu EnableMenuItem AppendMenuA DrawIcon GetWindowRect LoadIconW GetCaretBlinkTime GetDC ReleaseDC UnregisterClassA TranslateAcceleratorA SendMessageA PostMessageA |
GDI32.dll |
GetDeviceCaps
GetTextExtentPoint32A EndDoc StartPage EndPage Rectangle CreateFontIndirectA GetDIBits GetStockObject PatBlt RealizePalette SelectPalette StretchDIBits GetObjectA CreateCompatibleBitmap CreatePalette SetDIBits GetWindowOrgEx |
OLEAUT32.dll |
#6
|
VCRUNTIME140.dll |
_purecall
memcpy memset __std_terminate __vcrt_InitializeCriticalSectionEx _except_handler4_common __std_type_info_destroy_list memmove __CxxFrameHandler3 |
api-ms-win-crt-runtime-l1-1-0.dll |
terminate
_errno _register_thread_local_exe_atexit_callback _c_exit _controlfp_s _exit exit _initterm_e _initterm _get_narrow_winmain_command_line _set_app_type _seh_filter_exe _cexit _crt_at_quick_exit _crt_atexit _execute_onexit_table _register_onexit_function _initialize_onexit_table _initialize_narrow_environment _configure_narrow_argv _seh_filter_dll _invalid_parameter_noinfo |
api-ms-win-crt-multibyte-l1-1-0.dll |
_mbsrchr
|
api-ms-win-crt-time-l1-1-0.dll |
_localtime64_s
strftime |
api-ms-win-crt-heap-l1-1-0.dll |
_set_new_mode
_recalloc free |
api-ms-win-crt-math-l1-1-0.dll |
__setusermatherr
|
api-ms-win-crt-stdio-l1-1-0.dll |
__p__commode
_set_fmode |
api-ms-win-crt-locale-l1-1-0.dll |
_configthreadlocale
_setmbcp |
&About BitMapInfo... |
Bitmap files (*.bmp)|*.bmp|All files (*.*)|*.*|| |
Unknown error code %08x (%d) |
Current printer is unable to print bitmap images |
Opens a file |
Print the bitmap |
Exit the program |
Shows the About box |
Toggle the vitmap viewing |
Signature | 0xfeef04bd |
---|---|
StructVersion | 0x10000 |
FileVersion | 1.0.0.1 |
ProductVersion | 1.0.0.1 |
FileFlags | (EMPTY) |
FileOs |
VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
|
FileType |
VFT_APP
|
Language | English - United States |
Comments | |
CompanyName | |
FileDescription | BitMapInfo |
FileVersion (#2) | 1, 0, 0, 1 |
InternalName | BitMapInfo |
LegalCopyright | Copyright © 2003, Joseph M. Newcomer, All Rights Reserved |
LegalTrademarks | |
OriginalFilename | BitMapInfo.EXE |
PrivateBuild | |
ProductName | BitMapInfo |
ProductVersion (#2) | 1, 0, 0, 1 |
SpecialBuild |
Resource LangID | English - United States |
---|
Characteristics |
0
|
---|---|
TimeDateStamp | 2017-Jun-26 05:39:37 |
Version | 0.0 |
SizeofData | 105 |
AddressOfRawData | 0x12ae8 |
PointerToRawData | 0x112e8 |
Referenced File | C:\Users\paparao\Downloads\bitmapinfo\mvp_tips\BitMapInfo\Release\BitMapInfo.pdb |
Characteristics |
0
|
---|---|
TimeDateStamp | 2017-Jun-26 05:39:37 |
Version | 0.0 |
SizeofData | 20 |
AddressOfRawData | 0x12b54 |
PointerToRawData | 0x11354 |
Characteristics |
0
|
---|---|
TimeDateStamp | 2017-Jun-26 05:39:37 |
Version | 0.0 |
SizeofData | 912 |
AddressOfRawData | 0x12b68 |
PointerToRawData | 0x11368 |
StartAddressOfRawData | 0x417000 |
---|---|
EndAddressOfRawData | 0x417008 |
AddressOfIndex | 0x4156c8 |
AddressOfCallbacks | 0x40d6cc |
SizeOfZeroFill | 0 |
Characteristics |
IMAGE_SCN_ALIGN_4BYTES
|
Callbacks | (EMPTY) |
Size | 0x5c |
---|---|
TimeDateStamp | 1970-Jan-01 00:00:00 |
Version | 0.0 |
GlobalFlagsClear | (EMPTY) |
GlobalFlagsSet | (EMPTY) |
CriticalSectionDefaultTimeout | 0 |
DeCommitFreeBlockThreshold | 0 |
DeCommitTotalFreeThreshold | 0 |
LockPrefixTable | 0 |
MaximumAllocationSize | 0 |
VirtualMemoryThreshold | 0 |
ProcessAffinityMask | 0 |
ProcessHeapFlags | (EMPTY) |
CSDVersion | 0 |
Reserved1 | 0 |
EditList | 0 |
SecurityCookie | 0x415034 |
SEHandlerTable | 0x412a50 |
SEHandlerCount | 38 |
XOR Key | 0x40f85e8f |
---|---|
Unmarked objects | 0 |
Imports (VS2008 SP1 build 30729) | 14 |
C++ objects (23013) | 2 |
Imports (65501) | 8 |
ASM objects (VS2015 UPD3 build 24123) | 3 |
C objects (VS2015 UPD3 build 24123) | 14 |
C++ objects (VS2015 UPD3 build 24123) | 28 |
Total imports | 402 |
Imports (VS2015 UPD3 build 24123) | 5 |
C++ objects (VS2015 UPD3.1 build 24215) | 10 |
Resource objects (VS2015 UPD3 build 24210) | 1 |
151 | 1 |
Linker (VS2015 UPD3.1 build 24215) | 1 |