9ce0713c0173d8592633b2e31aba87cce30f7308a03336636c7e8b9f354dbdab

Summary

Architecture IMAGE_FILE_MACHINE_AMD64
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date 2026-Jan-11 20:38:52
Detected languages English - United States
TLS Callbacks 1 callback(s) detected.
Debug artifacts hydra_installer.pdb
CompanyName hydralauncher
FileDescription HydraInstaller
FileVersion 0.1.0
ProductName HydraInstaller
ProductVersion 0.1.0

Plugin Output

Suspicious Strings found in the binary may indicate undesirable behavior: Miscellaneous malware strings:
  • cmd.exe
Contains domain names:
  • birthpopuptypesapplyImagebeinguppernoteseveryshowsmeansextramatchtrackknownearlybegansuperpapernorthlearngivennamedendedTermspartsGroupbrandusingwomanfalsereadyaudiotakeswhile.com
  • developer.microsoft.com
  • genretrucklooksValueFrame.net
  • github.com
  • http://dummy.testC
  • http://www.C
  • http://www.a
  • http://www.css
  • http://www.hortcut
  • http://www.icon
  • http://www.interpretation
  • http://www.language
  • http://www.style
  • http://www.text-decoration
  • http://www.w3.org
  • http://www.w3.org/shortcut
  • http://www.wencodeURIComponent
  • http://www.years
  • https://developer.microsoft.com
  • https://developer.microsoft.com/en-us/microsoft-edge/webview2
  • https://github.com
  • https://installer.hydralauncher.gg
  • https://installer.hydralauncher.gg/icons/128x128.pngicons/128x128
  • https://tauri.localhost
  • https://www.World
  • https://www.recent
  • microsoft.com
  • thing.org
  • www.w3.org
Info Cryptographic algorithms detected in the binary: Uses constants related to RC5 or RC6
Suspicious The PE is possibly packed. Unusual section name found: .taubndl
Malicious The PE contains functions mostly used by malware. [!] The program may be hiding some of its imports:
  • LoadLibraryA
  • LoadLibraryExW
  • GetProcAddress
  • LoadLibraryExA
  • LoadLibraryW
Functions which can be used for anti-debugging purposes:
  • SwitchToThread
Can access the registry:
  • RegOpenKeyExW
  • RegQueryValueExW
  • RegEnumKeyExW
  • RegGetValueW
  • RegCloseKey
Possibly launches other programs:
  • CreateProcessW
  • ShellExecuteW
Uses Windows's Native API:
  • NtWriteFile
  • NtCreateFile
  • NtOpenFile
  • NtCancelIoFileEx
  • NtCreateNamedPipeFile
  • NtDeviceIoControlFile
Can create temporary files:
  • GetTempPathW
  • CreateFileW
Uses functions commonly found in keyloggers:
  • MapVirtualKeyW
  • GetAsyncKeyState
  • GetForegroundWindow
Leverages the raw socket API to access the Internet:
  • ws2_32.dll
Can take screenshots:
  • GetDC
  • CreateCompatibleDC
  • BitBlt
Interacts with the certificate store:
  • CertOpenStore
  • CertAddCertificateContextToStore
Safe VirusTotal score: 0/70 (Scanned on 2026-09-20 10:31:00) All the AVs think this file is safe.

Hashes

MD5 22a7efa9705ee6fcc45c21e13d760f4e 🔍
SHA1 14b19bc1233ae1c35b80d91bfcb464c967fcd019 🔍
SHA256 9ce0713c0173d8592633b2e31aba87cce30f7308a03336636c7e8b9f354dbdab 🔍
SHA3 590712d17c22936ef8036a1b42441e915c06380af83856c6f1e6eb5c198196e6 🔍
SSDeep 98304:ptFsk/Tuu7zYj0aBzRr2WekYOjmkPJTY0d9A3lVVPuiGX4vvrf07GGovDy9VFce:ekD7A0a8Qjmkozftvm9Y 🔍
Imports Hash 0f0dd3577160923300e3e62c08ad89ff 🔍

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0xf0

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_AMD64
NumberofSections 7
TimeDateStamp 2026-Jan-11 20:38:52
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xf0
Characteristics IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE

Image Optional Header

Magic PE32+
LinkerVersion 14.0
SizeOfCode 0x75fa00
SizeOfInitializedData 0x391400
SizeOfUninitializedData 0
AddressOfEntryPoint 0x00000000007398F0 (Section: .text)
BaseOfCode 0x1000
ImageBase 0x140000000
SectionAlignment 0x1000
FileAlignment 0x200
OperatingSystemVersion 6.0
ImageVersion 0.0
SubsystemVersion 6.0
Win32VersionValue 0
SizeOfImage 0xaf5000
SizeOfHeaders 0x400
Checksum 0
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x100000
SizeofStackCommit 0x1000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 a5eaaaec0b11db08fd32a6050df27e1c 🔍
SHA1 b71cdbc76816153e91fba24266df7bcb87b3631b 🔍
SHA256 0c291412eb7f1951caa07b0fd3eec918ed3eaa5e726de661f6271f0d2302cf2f 🔍
SHA3 9db40a376aaa8909f29716e18845ec7473b27767ad2379871a6c346d37734a72 🔍
VirtualSize 0x75f830
VirtualAddress 0x1000
SizeOfRawData 0x75fa00
PointerToRawData 0x400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.15471

.rdata

MD5 0be0467bc5c500aa03197266ccf0c751 🔍
SHA1 742c6947459e31e1e764a0a209a47235a715f785 🔍
SHA256 0d0878f11b2e6b52d468072ad4470685e03f6872f0672fefa01a0b0c363f82d8 🔍
SHA3 b434e0876654daad7b7e2feeaa9fa0af91a328bd7e44d1608c52b8ae154cb602 🔍
VirtualSize 0x2fbdc8
VirtualAddress 0x761000
SizeOfRawData 0x2fbe00
PointerToRawData 0x75fe00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 5.48055

.data

MD5 8e02fb9a6b9ce5ba301cb7df4acf7f01 🔍
SHA1 7622c29d24a9fe446b2c2e743669ae7afc71f693 🔍
SHA256 bd356db08f1968314a16caca67e723db7bcd72bc441c1b6f8ee6c49e84408cc1 🔍
SHA3 bf8235245f4f721f7edb9404a6e09c23a0fbe6682cf66dd45e4cce1444673304 🔍
VirtualSize 0x5738
VirtualAddress 0xa5d000
SizeOfRawData 0x2e00
PointerToRawData 0xa5bc00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 2.27405

.pdata

MD5 2deb844a3a5ecd9538ca25e4178d6b14 🔍
SHA1 bec204f1365975a7ce95dfc402e2e963a0f0fdd4 🔍
SHA256 150446a0c26f71550cbe31e04f013c43d50baaf8342151f57e9e7dad5ade1878 🔍
SHA3 72474b1a565c5e4a23bd07cda38e866ecd2bdfa0e09576dae0b44c8da398eb96 🔍
VirtualSize 0x6cf9c
VirtualAddress 0xa63000
SizeOfRawData 0x6d000
PointerToRawData 0xa5ea00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 6.55137

.taubndl

MD5 d6fcd3b4d17be9e3457a87dcd2a530b7 🔍
SHA1 8f5677d2ab95b91e06a3e927e0dd86048e83c9b2 🔍
SHA256 04f8542eb3ab31bf1423c546a0c993a9aec47183bd4e9ad38da5bc6adc5e3689 🔍
SHA3 1533440da0f32dc33f29e4eb2cca5e0c2f85cde9b2259702ec68c84a6b336d2a 🔍
VirtualSize 0x10
VirtualAddress 0xad0000
SizeOfRawData 0x200
PointerToRawData 0xacba00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 0.122276

.rsrc

MD5 01220cab8d0081080c0745662ebf1f90 🔍
SHA1 bbea8ea4d220f7e440054744a9ce10fb438ae0df 🔍
SHA256 389087e1324a380df6e7280871d8f29d0c87177e4b6540dbf94c1f7add8a32f3 🔍
SHA3 9ba879849e6beb1a1cecc2e9827612dd41fc4c463e80a85d96344c30773a00f0 🔍
VirtualSize 0x1b400
VirtualAddress 0xad1000
SizeOfRawData 0x1b400
PointerToRawData 0xacbc00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 3.49785

.reloc

MD5 d48a45607c8cce3718f89b01b8616f77 🔍
SHA1 4e0ee3b88c2510acd5b60b2862b65034e50dcccc 🔍
SHA256 47b90432024ac52d76043b9a7885f25cd08d1d44e50d2a3fdda5d0cf5e6bda33 🔍
SHA3 a39c2cae90b3cbb67c8e554357d654e1c2cf8304ce99629b31dfb46fcfb1e498 🔍
VirtualSize 0x7790
VirtualAddress 0xaed000
SizeOfRawData 0x7800
PointerToRawData 0xae7000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy 5.46487

Imports

kernel32.dll lstrlenW
LoadLibraryA
CreateWaitableTimerExW
GetStdHandle
WriteConsoleW
FindNextFileW
FreeLibrary
MultiByteToWideChar
WaitForSingleObject
QueryPerformanceFrequency
SleepEx
ReadFileEx
ExitProcess
SetWaitableTimer
CreateThread
FreeEnvironmentStringsW
CompareStringOrdinal
GetTempPathW
GetSystemDirectoryW
GetFullPathNameW
SetEnvironmentVariableW
FindClose
FindFirstFileExW
GetFinalPathNameByHandleW
SwitchToThread
GetFileInformationByHandleEx
DeviceIoControl
CreateDirectoryW
GetWindowsDirectoryW
CreateProcessW
WriteFileEx
GetCommandLineW
GetEnvironmentStringsW
GetCurrentDirectoryW
SetLastError
GetCurrentThread
SetThreadStackGuarantee
AddVectoredExceptionHandler
SetFileInformationByHandle
SetFilePointerEx
ReleaseMutex
CreateMutexA
GetCurrentProcessId
WaitForSingleObjectEx
WideCharToMultiByte
HeapReAlloc
GetEnvironmentVariableW
GetSystemTimePreciseAsFileTime
LCIDToLocaleName
GetUserDefaultUILanguage
QueryPerformanceCounter
GetSystemInfo
GetConsoleMode
GetFileInformationByHandle
GetFileAttributesW
GetQueuedCompletionStatusEx
SetFileCompletionNotificationModes
CreateIoCompletionPort
CancelIoEx
TerminateProcess
GetCurrentProcess
DuplicateHandle
SetHandleInformation
WriteFile
ReadFile
OutputDebugStringA
OutputDebugStringW
GetModuleFileNameW
LoadLibraryExW
RtlCaptureContext
PostQueuedCompletionStatus
GetModuleHandleW
RtlLookupFunctionEntry
GetConsoleOutputCP
GetOverlappedResult
ReleaseSRWLockExclusive
AcquireSRWLockExclusive
WakeAllConditionVariable
RtlVirtualUnwind
SleepConditionVariableSRW
CreateFileW
SetNamedPipeHandleState
GetSystemTimeAsFileTime
IsDebuggerPresent
IsProcessorFeaturePresent
GetCurrentThreadId
RtlPcToFileHeader
InitializeCriticalSectionAndSpinCount
RaiseException
EncodePointer
TlsAlloc
GetModuleHandleA
Sleep
GetProcAddress
TlsGetValue
TlsSetValue
FormatMessageW
LoadLibraryExA
GetLastError
TlsFree
InitializeSListHead
UnhandledExceptionFilter
SetUnhandledExceptionFilter
RtlUnwindEx
HeapFree
DeleteCriticalSection
HeapAlloc
GetProcessHeap
LoadLibraryW
CloseHandle
advapi32.dll RegOpenKeyExW
RegQueryValueExW
RegEnumKeyExW
EventRegister
RegGetValueW
EventWriteTransfer
RegCloseKey
EventSetInformation
EventUnregister
oleaut32.dll GetErrorInfo
SysStringLen
SetErrorInfo
SysFreeString
bcryptprimitives.dll ProcessPrng
ntdll.dll NtWriteFile
NtCreateFile
NtOpenFile
NtCancelIoFileEx
NtCreateNamedPipeFile
RtlGetVersion
RtlNtStatusToDosError
NtDeviceIoControlFile
user32.dll SetMenu
GetClipCursor
ShowCursor
DestroyIcon
GetRawInputData
EnumDisplayMonitors
MonitorFromPoint
SetWindowTextW
GetWindowTextW
GetSystemMenu
ClipCursor
DestroyWindow
TranslateAcceleratorW
GetWindowTextLengthW
SetWindowDisplayAffinity
SendInput
SetForegroundWindow
EnableMenuItem
RegisterRawInputDevices
ReleaseCapture
SetCapture
DrawMenuBar
MsgWaitForMultipleObjectsEx
SetWindowLongW
IsWindowVisible
RegisterWindowMessageA
SetParent
MapWindowPoints
GetWindow
SetFocus
PostMessageW
ShowWindow
ReleaseDC
EnableWindow
GetMenuItemInfoW
GetWindowRect
SetWindowLongPtrW
GetParent
GetWindowLongPtrW
DrawIconEx
FindWindowExW
MapVirtualKeyW
GetMessageW
SetWindowRgn
GetMenu
IsProcessDPIAware
GetDC
GetKeyboardLayout
DestroyAcceleratorTable
CreateAcceleratorTableW
PostQuitMessage
SetPropW
TranslateMessage
TrackPopupMenu
InsertMenuW
AppendMenuW
SetMenuItemInfoW
CreateMenu
CreatePopupMenu
RemoveMenu
DispatchMessageW
CheckMenuItem
PostThreadMessageW
DestroyMenu
GetMenuBarInfo
OffsetRect
GetWindowDC
DrawTextW
RedrawWindow
IsWindowEnabled
DefWindowProcW
FlashWindowEx
ChangeDisplaySettingsExW
PeekMessageW
SetWindowPlacement
GetWindowPlacement
SetWindowPos
SystemParametersInfoA
GetKeyState
InvalidateRgn
ToUnicodeEx
MapVirtualKeyExW
LoadCursorW
GetKeyboardState
GetAsyncKeyState
GetForegroundWindow
GetActiveWindow
UpdateWindow
InvalidateRect
SetCursorPos
SetCursor
GetUpdateRect
ValidateRect
GetMonitorInfoW
MonitorFromWindow
GetCursorPos
CloseTouchInputHandle
GetTouchInputInfo
TrackMouseEvent
SystemParametersInfoW
FillRect
MonitorFromRect
ClientToScreen
GetClientRect
GetWindowLongW
ScreenToClient
IsIconic
SendMessageW
AdjustWindowRect
AdjustWindowRectEx
CreateIcon
EnumChildWindows
DispatchMessageA
GetMessageA
RegisterClassExW
CreateWindowExW
IsWindow
GetSystemMetrics
RegisterTouchWindow
comctl32.dll SetWindowSubclass
DefSubclassProc
RemoveWindowSubclass
TaskDialogIndirect
gdi32.dll SetBkMode
SetTextColor
DeleteObject
CreateSolidBrush
GetDeviceCaps
CreateRectRgn
CombineRgn
CreateCompatibleDC
DeleteDC
SelectObject
CreateDIBSection
BitBlt
dwmapi.dll DwmGetWindowAttribute
DwmEnableBlurBehindWindow
DwmSetWindowAttribute
ole32.dll CoTaskMemAlloc
CoTaskMemFree
CoUninitialize
CoCreateFreeThreadedMarshaler
OleInitialize
RegisterDragDrop
CoInitializeEx
RevokeDragDrop
CoCreateInstance
CoInitialize
shlwapi.dll SHCreateMemStream
api-ms-win-core-synch-l1-2-0.dll WaitOnAddress
WakeByAddressSingle
WakeByAddressAll
shell32.dll ILFree
ILCreateFromPathW
SHOpenFolderAndSelectItems
ShellExecuteExW
SHCreateItemFromParsingName
SHGetKnownFolderPath
SHAppBarMessage
ShellExecuteW
DragQueryFileW
DragFinish
ws2_32.dll connect
WSASocketW
bind
shutdown
WSAIoctl
ioctlsocket
WSAGetLastError
setsockopt
WSACleanup
WSAStartup
freeaddrinfo
WSASend
recv
getsockname
getpeername
getsockopt
getaddrinfo
closesocket
send
secur32.dll AcquireCredentialsHandleA
ApplyControlToken
DecryptMessage
FreeCredentialsHandle
EncryptMessage
QueryContextAttributesW
AcceptSecurityContext
FreeContextBuffer
InitializeSecurityContextW
DeleteSecurityContext
crypt32.dll CertFreeCertificateContext
CertDuplicateStore
CertDuplicateCertificateContext
CertVerifyCertificateChainPolicy
CertDuplicateCertificateChain
CertGetCertificateChain
CertCloseStore
CertEnumCertificatesInStore
CertFreeCertificateChain
CertOpenStore
CertAddCertificateContextToStore
api-ms-win-crt-math-l1-1-0.dll floor
__setusermatherr
roundf
pow
round
trunc
api-ms-win-crt-string-l1-1-0.dll strlen
wcsncmp
wcscmp
strcmp
strcpy_s
wcslen
_wcsicmp
wcsncat
api-ms-win-crt-convert-l1-1-0.dll wcstol
_wtoi
_ultow_s
api-ms-win-crt-runtime-l1-1-0.dll _initialize_onexit_table
_seh_filter_exe
_set_app_type
_cexit
_register_onexit_function
_initterm_e
_initterm
exit
_crt_atexit
_exit
_register_thread_local_exe_atexit_callback
abort
_get_initial_narrow_environment
_c_exit
__p___argv
_initialize_narrow_environment
__p___argc
terminate
_configure_narrow_argv
api-ms-win-crt-stdio-l1-1-0.dll __p__commode
_set_fmode
api-ms-win-crt-locale-l1-1-0.dll _configthreadlocale
api-ms-win-crt-heap-l1-1-0.dll malloc
_set_new_mode
free
_callnewh
calloc

Delayed Imports

1

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x2924
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.92827
Detected Filetype PNG graphic file
MD5 e2dd3d4e4b3be73b3990bc99438dacae 🔍
SHA1 6aedf99b7cafec60c2a493de76c3c02ce62cce07 🔍
SHA256 d68b68621da848562bc51307eb7619b348c9a15c3882cc20d9ee18ea4745f893 🔍
SHA3 8cd99aedccba857da7c015fc0cd60edcc7011ced4e742b61371d73725ecaf51b 🔍

2

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x10828
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.29322
MD5 22698088e9366d9ef26c9ee561c86c9e 🔍
SHA1 a8b2ba543d87d7fbcafb0461baa53a0d719f91a2 🔍
SHA256 59db75b442fd3f1c5b90e4cc0ee8634fce89b7369055737fe19eee5acdabc76d 🔍
SHA3 6e46890be2fec9fc4c8212ae43d5bd27959baf5c879558215be0b4046b899507 🔍

3

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x4228
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.94775
MD5 34454407da2602db031a7698d7eb0cc4 🔍
SHA1 96b7140043ecefea3e22d763a78b4ab2762b5941 🔍
SHA256 5639f45dfd5bc7e20af31490382a88da1b2f79abdabeab19a7d85f38cb3ce83d 🔍
SHA3 a98bf6da77f162e60ac90ea23db55ea6824bad2f6788c3726aec86e14db0a094 🔍

4

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x25a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.38033
MD5 1af6efad38dc8c9886d7df7c2df070ea 🔍
SHA1 ba0208aed5d9af785f3cf038fc6bb2c0a05502e1 🔍
SHA256 a0bdfa102fceffaf0c232588c5545682db6d08cb3b9fb244a55b40e65497e1ae 🔍
SHA3 02c8e940bdb6d06f95aa12c0dbc7a775bac6907628f3a0a7c8465a3ab10253bf 🔍

5

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x10a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.79428
MD5 4928370e9e4724fae6c475c1c9f6a4c1 🔍
SHA1 ba8014864e0b49a59000850bdff2bfe7bd020d5d 🔍
SHA256 0621d47e9e2a2fefa8839d694146b715d7b84e859744347202f37896dbf71fbc 🔍
SHA3 9e45e65ecf18ab1d2e31285d637273e2b6c7e2a6c089fbfa93e38cde7f3a4b97 🔍

6

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x468
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.48845
MD5 f91b6fd5a3721579fa7300073d5cfefe 🔍
SHA1 be34c6e4b0888e21cb29ac824ecb5639eed82396 🔍
SHA256 24c004e60cf5577318ac1719539308bd191478c254970090131f5a249c746e73 🔍
SHA3 95773fa9e07d16cbb5f1cbb36c2ab592017b7d9a3f7ad92221a41bb3e6f2228b 🔍

32512

Type RT_GROUP_ICON
Language English - United States
Codepage UNKNOWN
Size 0x5a
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.79908
Detected Filetype Icon file
MD5 4880363c33673959c64885b1b9d20e0a 🔍
SHA1 f42dd51a7e2e5a272c5026a80ef7e925ab360e8f 🔍
SHA256 7e6c8feb33e09be0ac245f19fe36e675a4bd253f9e895339a92aacd3761bacf1 🔍
SHA3 49b074a24034159510fc86a2c4b51b3e48bca299e47f554fbc153d4c41345e2b 🔍

1 (#2)

Type RT_VERSION
Language English - United States
Codepage UNKNOWN
Size 0x1fc
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.15087
MD5 c4d620427bcd66df335c4af8b4c018c0 🔍
SHA1 dc2193b97de6c5421523ddb53a1098f76a5dcfb6 🔍
SHA256 d164cc9271b0bcaa74469570ecdf16a34e3dc80ba028ec16b404712fe047e246 🔍
SHA3 aba71c46993fccb078a7e22f40176722823c080cd5e1e4b82ed46d38349c05c9 🔍

1 (#3)

Type RT_MANIFEST
Language English - United States
Codepage UNKNOWN
Size 0x14e
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.96056
MD5 01e4c8c046a47771f13cd120b53303e7 🔍
SHA1 2a4224d31c916a5cff4f2636a3cb47fdd84a5cc9 🔍
SHA256 b1cb832f790c153aa0e9a66f76e75460263cf1d41971d2dbcc9a4d87ec18b7d8 🔍
SHA3 680120ec819e7ba66519d9a8a3e446973c4cb28aa0146c91cceaa8c8fadc90ae 🔍

Version Info

Signature 0xfeef04bd
StructVersion 0x10000
FileVersion 0.1.0.0
ProductVersion 0.1.0.0
FileFlags (EMPTY)
FileOs VOS_DOS_WINDOWS32
VOS_NT
VOS_NT_WINDOWS32
VOS_WINCE
VOS__WINDOWS32
FileType VFT_APP
Language UNKNOWN
CompanyName hydralauncher
FileDescription HydraInstaller
FileVersion (#2) 0.1.0
ProductName HydraInstaller
ProductVersion (#2) 0.1.0
Resource LangID English - United States

IMAGE_DEBUG_TYPE_CODEVIEW

Characteristics 0
TimeDateStamp 2026-Jan-11 20:38:52
Version 0.0
SizeofData 44
AddressOfRawData 0x89f1f4
PointerToRawData 0x89dff4
Referenced File hydra_installer.pdb

IMAGE_DEBUG_TYPE_VC_FEATURE

Characteristics 0
TimeDateStamp 2026-Jan-11 20:38:52
Version 0.0
SizeofData 20
AddressOfRawData 0x89f220
PointerToRawData 0x89e020

IMAGE_DEBUG_TYPE_POGO

Characteristics 0
TimeDateStamp 2026-Jan-11 20:38:52
Version 0.0
SizeofData 1068
AddressOfRawData 0x89f234
PointerToRawData 0x89e034

TLS Callbacks

StartAddressOfRawData 0x14089f6a8
EndAddressOfRawData 0x14089f8b4
AddressOfIndex 0x140a62018
AddressOfCallbacks 0x140761d10
SizeOfZeroFill 0
Characteristics IMAGE_SCN_ALIGN_8BYTES
Callbacks 0x0000000140706B10

Load Configuration

Size 0x140
TimeDateStamp 1970-Jan-01 00:00:00
Version 0.0
GlobalFlagsClear (EMPTY)
GlobalFlagsSet (EMPTY)
CriticalSectionDefaultTimeout 0
DeCommitFreeBlockThreshold 0
DeCommitTotalFreeThreshold 0
LockPrefixTable 0
MaximumAllocationSize 0
VirtualMemoryThreshold 0
ProcessAffinityMask 0
ProcessHeapFlags (EMPTY)
CSDVersion 0
Reserved1 0
EditList 0
SecurityCookie 0x140a5fac0

RICH Header

XOR Key 0xc75d1141
Unmarked objects 0
Imports (VS2008 SP1 build 30729) 14
ASM objects (35207) 9
C objects (35207) 13
C++ objects (35207) 47
Total imports 507
Unmarked objects (#2) 647
Resource objects (35222) 1
Linker (35222) 1

Errors

Leave a comment

No comments yet.