acb1a39401ecbea47c1f5d9b6c4a5d50c582ca3d53f626dc104ed45a439f545d

Summary

Architecture IMAGE_FILE_MACHINE_AMD64
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date 2026-Jul-18 12:12:27
Detected languages English - United States

Plugin Output

Info Matching compiler(s): MASM/TASM - sig1(h)
Info Interesting strings found in the binary: Contains domain names:
  • https://keyauth.win
Info Libraries used to perform cryptographic operations: Microsoft's Cryptography API
Suspicious The PE contains functions most legitimate programs don't use. Possibly launches other programs:
  • CreateProcessW
Uses Microsoft's cryptographic API:
  • CryptProtectData
  • CryptUnprotectData
Has Internet access capabilities:
  • WinHttpSetTimeouts
  • WinHttpSendRequest
  • WinHttpCloseHandle
  • WinHttpSetOption
  • WinHttpConnect
  • WinHttpReadData
  • WinHttpQueryHeaders
  • WinHttpOpen
  • WinHttpQueryDataAvailable
  • WinHttpCrackUrl
  • WinHttpReceiveResponse
  • WinHttpOpenRequest
Enumerates local disk drives:
  • GetVolumeInformationA
Can take screenshots:
  • BitBlt
  • CreateCompatibleDC
  • GetDC
Suspicious VirusTotal score: 1/69 (Scanned on 2026-07-20 00:00:58) Trapmine: suspicious.low.ml.score

Hashes

MD5 46c9810d7a5b65dfa6caf15751626cdf
SHA1 240a9b6c63fa5c598673d43cbbd5a028ba1fec2f
SHA256 acb1a39401ecbea47c1f5d9b6c4a5d50c582ca3d53f626dc104ed45a439f545d
SHA3 2dc4d25db37ada2656d13078e0a6a34efc698fbd3d8f1767fa66c0418048cda6
SSDeep 6144:yl9WQ1eg17EXMtWFkwtSs63C/0KzcXXOptJ:ylUQEkqSsDoXe
Imports Hash fa18feaa822e51de07624184f75f0a7e

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0xf8

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_AMD64
NumberofSections 6
TimeDateStamp 2026-Jul-18 12:12:27
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xf0
Characteristics IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE

Image Optional Header

Magic PE32+
LinkerVersion 14.0
SizeOfCode 0xf600
SizeOfInitializedData 0x21600
SizeOfUninitializedData 0
AddressOfEntryPoint 0x000000000000F120 (Section: .text)
BaseOfCode 0x1000
ImageBase 0x140000000
SectionAlignment 0x1000
FileAlignment 0x200
OperatingSystemVersion 6.0
ImageVersion 0.0
SubsystemVersion 6.0
Win32VersionValue 0
SizeOfImage 0x34000
SizeOfHeaders 0x400
Checksum 0
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_GUARD_CF
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x100000
SizeofStackCommit 0x1000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 3839f5b9448d7eeb67d51ae16f099d29
SHA1 ccf4242eff561f3b8c9786172166b72c4c19cc8a
SHA256 55c70f271d92732327962df3b8a4e061c43531565fab191be9de164834f30a3a
SHA3 dbff38944eda491901016d2a11a230a3551a5fd061ec3c8a694ab2bbd7032d83
VirtualSize 0xf5ac
VirtualAddress 0x1000
SizeOfRawData 0xf600
PointerToRawData 0x400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.32791

.rdata

MD5 d61f1cc785268e0b77a05e50cb2a1d62
SHA1 0b7afdf49add922389a7cae77455ed9cc350d301
SHA256 a50b51406fcc1a3249dea87303ac7d9a1c8bdeced0fd4b762c7b2c0e01472056
SHA3 ec431463f6358ceb4a3d5fdfa738e18b1601a04435fff07ed9974434adb29d4d
VirtualSize 0x8eca
VirtualAddress 0x11000
SizeOfRawData 0x9000
PointerToRawData 0xfa00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 5.24246

.data

MD5 e558ee3f9e0fe8b351e5bc420d0b119d
SHA1 8401f7d4ed84bbded8cb9e38ebd8e46f6a1c7cea
SHA256 4ccdc5a7f6ad0e60bff017181719dd0437faf010214bb7004d1ba8416c7729bc
SHA3 605aaf36fec97920897be8d3dc9dc0d096263ef4856eaae911242456e66bcc9c
VirtualSize 0xc88
VirtualAddress 0x1a000
SizeOfRawData 0x600
PointerToRawData 0x18a00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 3.04696

.pdata

MD5 35d99b9f7c4cb1b6a23faa4f2a102deb
SHA1 deec252525b12ee4c5d718f4abc613bc341ad0e9
SHA256 9e8cb479779fc00009f164a587b6c0240b028eb60df76aa1b7a1fe76c9fe52cb
SHA3 7761977a60d563f75553cd3e0365e9eac484b3cbc6dcc45f35592d720fcdfc28
VirtualSize 0x9cc
VirtualAddress 0x1b000
SizeOfRawData 0xa00
PointerToRawData 0x19000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 4.85537

.rsrc

MD5 ac856b9e3045b35e7a2b535954935b41
SHA1 3eec272660bb425571581e80be1ee19d41dfe066
SHA256 aa4a7d6324f9d1e4263a2c3d86c7b9e6a47abc3ab4a84ead65e0d44d2778bc13
SHA3 5a330a7dcd78925063d7085776452f45f1f73a23a918ba4fe2f9a381cd295703
VirtualSize 0x16a68
VirtualAddress 0x1c000
SizeOfRawData 0x16c00
PointerToRawData 0x19a00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 7.97123

.reloc

MD5 ccc74d363d72bc3c8fafb15d1793c04b
SHA1 20a7c7e6cb035b974c9a87186136b0b23b5a5d65
SHA256 4a71176bad34d2326627bac4a8cfdeaeb8ca5022154a291d4154737ef527432b
SHA3 40443da4a40ad4f40e4ca4903731907f72177f419a9f6fa751ae75a881d09f5d
VirtualSize 0xcc
VirtualAddress 0x33000
SizeOfRawData 0x200
PointerToRawData 0x30600
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy 2.51108

Imports

bcrypt.dll BCryptGenRandom
CRYPT32.dll CryptProtectData
CryptUnprotectData
dwmapi.dll DwmExtendFrameIntoClientArea
DwmSetWindowAttribute
gdiplus.dll GdipCreateSolidFill
GdipCreateFont
GdipSetStringFormatLineAlign
GdipCreatePath
GdipSetSmoothingMode
GdipDeletePath
GdipAlloc
GdipDrawRectangle
GdipFillRectangle
GdipDeleteBrush
GdipClosePathFigure
GdipCreateFontFamilyFromName
GdipDeleteFontFamily
GdipCreateStringFormat
GdipFree
GdipFillPath
GdiplusStartup
GdipDrawPath
GdipDrawString
GdipCreateFromHDC
GdipFillEllipse
GdipSetTextRenderingHint
GdipCloneBrush
GdipAddPathArc
GdipDeleteGraphics
GdipDrawArc
GdipDeleteStringFormat
GdipDeleteFont
GdipDeletePen
GdipCreatePen1
GdipSetStringFormatAlign
GdipSetStringFormatFlags
GdipSetStringFormatTrimming
GdipGraphicsClear
GdiplusShutdown
GdipDrawLine
GDI32.dll BitBlt
CreateCompatibleBitmap
SelectObject
CreateCompatibleDC
CreateFontW
DeleteDC
SetTextColor
SetBkMode
SetBkColor
DeleteObject
CreateSolidBrush
UxTheme.dll SetWindowTheme
WINHTTP.dll WinHttpSetTimeouts
WinHttpSendRequest
WinHttpCloseHandle
WinHttpSetOption
WinHttpConnect
WinHttpReadData
WinHttpQueryHeaders
WinHttpOpen
WinHttpQueryDataAvailable
WinHttpCrackUrl
WinHttpReceiveResponse
WinHttpOpenRequest
USER32.dll CallWindowProcW
PostMessageW
GetFocus
DestroyWindow
GetDC
MessageBoxW
SetWindowLongPtrW
CreateWindowExW
ScreenToClient
SendMessageW
SetWindowTextW
RegisterClassExW
DefWindowProcW
GetCapture
DispatchMessageW
SetTimer
DestroyIcon
TrackMouseEvent
SetFocus
TranslateMessage
LoadCursorW
SetCapture
SetCursor
GetClientRect
DrawTextW
KillTimer
GetMessageW
ShowWindow
PostQuitMessage
GetParent
PtInRect
UpdateWindow
ReleaseCapture
SetForegroundWindow
LoadImageW
InvalidateRect
ReleaseDC
GetCursorPos
BeginPaint
EndPaint
EnableWindow
GetWindowTextW
GetWindowTextLengthW
SystemParametersInfoW
KERNEL32.dll UnhandledExceptionFilter
RtlVirtualUnwind
RtlLookupFunctionEntry
RtlCaptureContext
GetFileSizeEx
FindFirstFileW
ReadFile
CreateDirectoryW
WriteFile
GetModuleFileNameW
GetEnvironmentVariableW
FindClose
SetUnhandledExceptionFilter
CreateFileW
GetCommandLineW
SetFileAttributesW
MultiByteToWideChar
Sleep
FormatMessageW
GetTickCount64
GetLastError
DeleteFileW
CloseHandle
FindResourceW
LocalFree
MoveFileExW
CreateProcessW
WideCharToMultiByte
GetCurrentProcess
TerminateProcess
IsProcessorFeaturePresent
IsDebuggerPresent
GetStartupInfoW
GetModuleHandleW
QueryPerformanceCounter
GetCurrentProcessId
GetCurrentThreadId
GetSystemTimeAsFileTime
InitializeSListHead
WaitForSingleObject
FlushFileBuffers
GetStdHandle
SetConsoleMode
GetVolumeInformationA
GetFileAttributesW
GetConsoleMode
FormatMessageA
FindNextFileW
ADVAPI32.dll GetCurrentHwProfileA
SHELL32.dll CommandLineToArgvW
MSVCP140.dll ?sputc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHD@Z
??0?$basic_ios@DU?$char_traits@D@std@@@std@@IEAA@XZ
?setstate@?$basic_ios@DU?$char_traits@D@std@@@std@@QEAAXH_N@Z
_Thrd_detach
?setw@std@@YA?AU?$_Smanip@_J@1@_J@Z
?uncaught_exception@std@@YA_NXZ
_Mtx_unlock
_Thrd_join
_Thrd_id
_Cnd_do_broadcast_at_thread_exit
_Mtx_lock
?_Xlength_error@std@@YAXPEBD@Z
?_Xout_of_range@std@@YAXPEBD@Z
?_Throw_Cpp_error@std@@YAXH@Z
?_Osfx@?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAXXZ
??0?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAA@PEAV?$basic_streambuf@DU?$char_traits@D@std@@@1@_N@Z
??1?$basic_ios@DU?$char_traits@D@std@@@std@@UEAA@XZ
??1?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAA@XZ
?_Lock@?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAAXXZ
?_Unlock@?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAAXXZ
?showmanyc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JXZ
?uflow@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAHXZ
?xsgetn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JPEAD_J@Z
?xsputn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JPEBD_J@Z
?setbuf@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAPEAV12@PEAD_J@Z
?sync@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAHXZ
?imbue@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAXAEBVlocale@2@@Z
??1?$basic_ostream@DU?$char_traits@D@std@@@std@@UEAA@XZ
??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@P6AAEAVios_base@1@AEAV21@@Z@Z
??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@I@Z
?flush@?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV12@XZ
?good@ios_base@std@@QEBA_NXZ
??0?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAA@XZ
VCRUNTIME140_1.dll __CxxFrameHandler4
VCRUNTIME140.dll memmove
__current_exception_context
__current_exception
__std_exception_destroy
__std_exception_copy
memset
memcpy
memcmp
__std_terminate
_CxxThrowException
__C_specific_handler
api-ms-win-crt-math-l1-1-0.dll lroundf
sin
__setusermatherr
api-ms-win-crt-runtime-l1-1-0.dll _crt_atexit
_cexit
_set_app_type
_register_onexit_function
_register_thread_local_exe_atexit_callback
_c_exit
_initialize_onexit_table
_exit
exit
_initterm_e
_invoke_watson
_beginthreadex
terminate
_initterm
_configure_wide_argv
_seh_filter_exe
_initialize_wide_environment
_get_wide_winmain_command_line
api-ms-win-crt-string-l1-1-0.dll _wcsicmp
isspace
isdigit
isalnum
tolower
api-ms-win-crt-heap-l1-1-0.dll _set_new_mode
free
malloc
_callnewh
api-ms-win-crt-stdio-l1-1-0.dll __stdio_common_vsprintf
fopen_s
__p__commode
_set_fmode
__acrt_iob_func
__stdio_common_vfprintf
fclose
api-ms-win-crt-time-l1-1-0.dll _localtime64_s
_time64
api-ms-win-crt-convert-l1-1-0.dll strtoull
api-ms-win-crt-locale-l1-1-0.dll _configthreadlocale

Delayed Imports

1

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x367
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.72127
Detected Filetype PNG graphic file
MD5 44928e59abbd8e4b1d357439117dadd7
SHA1 63c54180bfb8a12fa35b1d6f9aff19fda5bbe63f
SHA256 8132bfa9d2d0694de99c4adfb98ae955a70459c4563e2573aa2dd399804288ae
SHA3 7647f431581dc1f014f5136196ac4c0872bd0f86d9bc2b3b5d47e99dd9f52d2b

2

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x4b9
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.79147
Detected Filetype PNG graphic file
MD5 a5a1aac8dbd80b98ffcd7da004326ffe
SHA1 1261c8d0e85ce0fe55b65e55ddc8b29e2510a002
SHA256 fe8418922e9280a40c2a29efb3aec53cf20ff8438cc40d024d259344eee18b1c
SHA3 cb17adc94636b37ef65150d58c998fcaf1c16187ab6e071e13e5eea479c9d5f8

3

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x64f
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.84148
Detected Filetype PNG graphic file
MD5 4ac51f878045460574f8166a93fd93c3
SHA1 59c31ee2d124c1f9f6e973eddf83a0c9c5b2bd66
SHA256 f6b1e57283acc9429479420cffa5089476cf26cec49f30fc8e79ddb2f3c806a2
SHA3 edaea2115abf1985ba9157b2bb81024523b65ac0687c175ca17603a2e8ebd715

4

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x991
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.90956
Detected Filetype PNG graphic file
MD5 946f5e47ef09ebb24b9ebf9b3adb3383
SHA1 cb6146640c84a98b758357e62270e55af7c8dab1
SHA256 21bcfac4c0fd760d932833293fc087df0c39596359449ca81fe579be3f6ce189
SHA3 ab37c3fda146374efe31b79753e954decc52c50d27a74690985bc3e76ccda1cb

5

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0xcd4
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.93051
Detected Filetype PNG graphic file
MD5 58e9c20ef825f879fb2b6fd9ca60582d
SHA1 6d4120fdbc71b629bfdbda9816e66a0e9c84704a
SHA256 cbfd7d4d54dfd894178958098329507202f51fc07db7aee6e4aaababcf579050
SHA3 8450e8f2cc97566cd9915586742b0f72d39878391a4ccc0ee4dd0dd7b0a73739

6

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x10df
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.95237
Detected Filetype PNG graphic file
MD5 9afa27f21020f387874385b39ea32daa
SHA1 ee0e1cd4d5dc900d142f09e3f8b99c7ff62f834b
SHA256 75b8befb0c5a4a5b18af05a7618a32ec5bfb8bcfb143b8803bc79abeced271fc
SHA3 cb1b6a5f0644e17dabab76b35d24372d6a0aa9f558d18e317a64fb5702c4796a

7

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x1874
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.96353
Detected Filetype PNG graphic file
MD5 125766b1589768cb484796c107897c7f
SHA1 567bdfa61409da5f896438cde4e59df8a4ce2ed4
SHA256 b8d7f7b9606d6ebf3df100daf987f28a9b16f56db2c0ccf1b461b8f7d3cf351c
SHA3 bd786c63f5657956d2735137ca04bdff26af2cb09a9b9a5e6797dfc7fa306949

8

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x2b94
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.9706
Detected Filetype PNG graphic file
MD5 a4065043ba2a4bf42a270826e5bc8093
SHA1 3a0231d711f21c6d5616fc3528c390679416836f
SHA256 c03c3ecd1682b61bc623c3962bde966cc757da28f61d02e36f73b7be7f4b41d6
SHA3 77821157caede482f0f17dfb232caebc4dcd6c9d71f35327758b1308aecb5768

9

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x412f
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.9774
Detected Filetype PNG graphic file
MD5 7b8f06906ba0ee9259a5ac4b20049cd7
SHA1 c3f2797d3fe2d8d7e538f946caa0e7c969625599
SHA256 7b7e9cbd585b3153f20059cbc18523607fe70506ac928ea0ee5861e7fe885877
SHA3 6bc786551fdeb63c8d14dc10acc4405c881e60ac5bbd6f2f901354332e5b3273

10

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0xaaa4
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.98646
Detected Filetype PNG graphic file
MD5 23a8f0cc1be9b4af31593dc8fc4d0e11
SHA1 8574e012776b4840da193a1614b30d9c9d16f62b
SHA256 ee89ba1a8e89ff709b01dc7116194c5cfc000efa8338c8064455b60710a10d48
SHA3 f26a767a1616f4b7ce5b08e20e2baef9d48e45d32da9dfec04a4da92adb4094e

101

Type RT_GROUP_ICON
Language English - United States
Codepage UNKNOWN
Size 0x92
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.13235
Detected Filetype Icon file
MD5 5f4f0a71ab18edd3348c6acf861f3caf
SHA1 21679618e1f084fa3e9f1c1916b4043a8fd4db27
SHA256 d645f9c899e5f6b903a12dc2acd5ce16ddc477c5e7608d72bb3d8c9979735013
SHA3 99a606405c5bc7955f8bb2c8a468899c0cfdc08711ff4b55f19465cc6e99494e

1 (#2)

Type RT_MANIFEST
Language English - United States
Codepage UNKNOWN
Size 0x17d
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.91161
MD5 1e4a89b11eae0fcf8bb5fdd5ec3b6f61
SHA1 4260284ce14278c397aaf6f389c1609b0ab0ce51
SHA256 4bb79dcea0a901f7d9eac5aa05728ae92acb42e0cb22e5dd14134f4421a3d8df
SHA3 4bb9e8b5a714cae82782f3831cc2d45f4bf4a50a755fe584d2d1893129d68353

Version Info

IMAGE_DEBUG_TYPE_POGO

Characteristics 0
TimeDateStamp 2026-Jul-18 12:12:27
Version 0.0
SizeofData 796
AddressOfRawData 0x1638c
PointerToRawData 0x14d8c

UNKNOWN

Characteristics 0
TimeDateStamp 2026-Jul-18 12:12:27
Version 0.0
SizeofData 4
AddressOfRawData 0x166a8
PointerToRawData 0x150a8

TLS Callbacks

Load Configuration

Size 0x140
TimeDateStamp 1970-Jan-01 00:00:00
Version 0.0
GlobalFlagsClear (EMPTY)
GlobalFlagsSet (EMPTY)
CriticalSectionDefaultTimeout 0
DeCommitFreeBlockThreshold 0
DeCommitTotalFreeThreshold 0
LockPrefixTable 0
MaximumAllocationSize 0
VirtualMemoryThreshold 0
ProcessAffinityMask 0
ProcessHeapFlags (EMPTY)
CSDVersion 0
Reserved1 0
EditList 0
SecurityCookie 0x14001a040
GuardCFCheckFunctionPointer 5368780888
GuardCFDispatchFunctionPointer 0
GuardCFFunctionTable 0
GuardCFFunctionCount 0
GuardFlags (EMPTY)
CodeIntegrity.Flags 0
CodeIntegrity.Catalog 0
CodeIntegrity.CatalogOffset 0
CodeIntegrity.Reserved 0
GuardAddressTakenIatEntryTable 0
GuardAddressTakenIatEntryCount 0
GuardLongJumpTargetTable 0
GuardLongJumpTargetCount 0

RICH Header

XOR Key 0x6f7a44f8
Unmarked objects 0
Imports (VS2008 SP1 build 30729) 16
ASM objects (35207) 4
C objects (35207) 10
C++ objects (35207) 27
Imports (35207) 6
Imports (35222) 23
Total imports 277
C++ objects (LTCG) (35228) 2
Resource objects (35228) 1
151 1
Linker (35228) 1

Errors

Leave a comment

No comments yet.