Architecture |
IMAGE_FILE_MACHINE_AMD64
|
---|---|
Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_CUI
|
Compilation Date | 2017-Mar-10 21:08:38 |
Detected languages |
English - United States
|
Debug artifacts |
C:\Users\david\.jenkins\workspace\LoaderAndValidationLayers\build\demos\RelWithDebInfo\vulkaninfo.pdb
|
Info | Matching compiler(s): | MASM/TASM - sig1(h) |
Info | The PE contains common functions which appear in legitimate applications. |
[!] The program may be hiding some of its imports:
|
Info | The PE is digitally signed. |
Signer: LunarG
Issuer: DigiCert SHA2 Assured ID Code Signing CA |
Suspicious | VirusTotal score: 1/72 (Scanned on 2019-12-30 23:24:17) | eGambit: Unsafe.AI_Score_100% |
e_magic | MZ |
---|---|
e_cblp | 0x90 |
e_cp | 0x3 |
e_crlc | 0 |
e_cparhdr | 0x4 |
e_minalloc | 0 |
e_maxalloc | 0xffff |
e_ss | 0 |
e_sp | 0xb8 |
e_csum | 0 |
e_ip | 0 |
e_cs | 0 |
e_ovno | 0 |
e_oemid | 0 |
e_oeminfo | 0 |
e_lfanew | 0xf0 |
Signature | PE |
---|---|
Machine |
IMAGE_FILE_MACHINE_AMD64
|
NumberofSections | 7 |
TimeDateStamp | 2017-Mar-10 21:08:38 |
PointerToSymbolTable | 0 |
NumberOfSymbols | 0 |
SizeOfOptionalHeader | 0xf0 |
Characteristics |
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE
|
Magic | PE32+ |
---|---|
LinkerVersion | 12.0 |
SizeOfCode | 0x26000 |
SizeOfInitializedData | 0x18800 |
SizeOfUninitializedData | 0 |
AddressOfEntryPoint | 0x0000000000006E90 (Section: .text) |
BaseOfCode | 0x1000 |
ImageBase | 0x140000000 |
SectionAlignment | 0x1000 |
FileAlignment | 0x200 |
OperatingSystemVersion | 6.0 |
ImageVersion | 0.0 |
SubsystemVersion | 6.0 |
Win32VersionValue | 0 |
SizeOfImage | 0x42000 |
SizeOfHeaders | 0x400 |
Checksum | 0x3e2ae |
Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_CUI
|
DllCharacteristics |
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
|
SizeofStackReserve | 0x100000 |
SizeofStackCommit | 0x1000 |
SizeofHeapReserve | 0x100000 |
SizeofHeapCommit | 0x1000 |
LoaderFlags | 0 |
NumberOfRvaAndSizes | 16 |
KERNEL32.dll |
GetModuleHandleA
GetConsoleScreenBufferInfo SetConsoleScreenBufferSize SetConsoleWindowInfo SetConsoleTitleA GetConsoleProcessList Sleep GetStringTypeW EnumSystemLocalesW GetUserDefaultLCID IsValidLocale GetLocaleInfoW LCMapStringW CompareStringW CloseHandle GetStdHandle GetTimeFormatW GetDateFormatW HeapSize OutputDebugStringW WriteConsoleW SetFilePointerEx SetStdHandle HeapReAlloc FreeEnvironmentStringsW GetEnvironmentStringsW GetSystemTimeAsFileTime GetCurrentProcessId QueryPerformanceCounter GetModuleFileNameA GetFileType GetCurrentThreadId GetCurrentThread GetProcessHeap EnterCriticalSection LeaveCriticalSection EncodePointer DecodePointer GetLastError ExitProcess GetModuleHandleExW GetProcAddress AreFileApisANSI MultiByteToWideChar WideCharToMultiByte HeapFree HeapAlloc GetCommandLineA DeleteCriticalSection FatalAppExitA FlushFileBuffers WriteFile GetConsoleCP GetConsoleMode RtlUnwindEx IsDebuggerPresent IsProcessorFeaturePresent RtlCaptureContext RtlLookupFunctionEntry RtlVirtualUnwind UnhandledExceptionFilter SetUnhandledExceptionFilter SetLastError InitializeCriticalSectionAndSpinCount CreateEventW GetCurrentProcess TerminateProcess TlsAlloc TlsGetValue TlsSetValue TlsFree GetStartupInfoW GetTickCount GetModuleHandleW CreateSemaphoreW GetModuleFileNameW SetConsoleCtrlHandler FreeLibrary LoadLibraryExW IsValidCodePage GetACP GetOEMCP GetCPInfo CreateFileW |
---|---|
USER32.dll |
RegisterClassExA
CreateWindowExA DestroyWindow AdjustWindowRect LoadCursorA LoadIconA DefWindowProcA |
GDI32.dll |
GetStockObject
|
vulkan-1.dll |
vkGetInstanceProcAddr
vkGetPhysicalDeviceMemoryProperties vkGetPhysicalDeviceQueueFamilyProperties vkGetPhysicalDeviceProperties vkCreateDevice vkGetPhysicalDeviceFeatures vkEnumeratePhysicalDevices vkDestroyInstance vkCreateInstance vkDestroyDevice vkEnumerateInstanceExtensionProperties vkEnumerateDeviceExtensionProperties vkEnumerateInstanceLayerProperties vkDeviceWaitIdle vkDestroySurfaceKHR vkCreateWin32SurfaceKHR vkGetPhysicalDeviceFormatProperties |
Characteristics |
0
|
---|---|
TimeDateStamp | 2017-Mar-10 21:08:38 |
Version | 0.0 |
SizeofData | 126 |
AddressOfRawData | 0x3435c |
PointerToRawData | 0x3375c |
Referenced File | C:\Users\david\.jenkins\workspace\LoaderAndValidationLayers\build\demos\RelWithDebInfo\vulkaninfo.pdb |
Characteristics |
0
|
---|---|
TimeDateStamp | 2017-Mar-10 21:08:38 |
Version | 0.0 |
SizeofData | 20 |
AddressOfRawData | 0x343dc |
PointerToRawData | 0x337dc |
Size | 0x70 |
---|---|
TimeDateStamp | 1970-Jan-01 00:00:00 |
Version | 0.0 |
GlobalFlagsClear | (EMPTY) |
GlobalFlagsSet | (EMPTY) |
CriticalSectionDefaultTimeout | 0 |
DeCommitFreeBlockThreshold | 0 |
DeCommitTotalFreeThreshold | 0 |
LockPrefixTable | 0 |
MaximumAllocationSize | 0 |
VirtualMemoryThreshold | 0 |
ProcessAffinityMask | 0 |
ProcessHeapFlags | (EMPTY) |
CSDVersion | 0 |
Reserved1 | 0 |
EditList | 0 |
SecurityCookie | 0x1400373c0 |
XOR Key | 0xd7198af8 |
---|---|
Unmarked objects | 0 |
C++ objects (20806) | 30 |
C objects (20806) | 106 |
ASM objects (20806) | 9 |
221 (VS2013 UPD4 build 31101) | 2 |
Imports (65501) | 7 |
Total imports | 109 |
C objects (VS2013 UPD4 build 31101) | 1 |
Resource objects (VS2013 build 21005) | 1 |
Linker (VS2013 UPD4 build 31101) | 1 |