bd08fe915748039a4d2db4a29156279c66b2484760a61ee77263ba6067dd2f18

Summary

Architecture IMAGE_FILE_MACHINE_AMD64
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date 2022-Sep-03 04:46:25
Detected languages Chinese - PRC
English - United States
CompanyName 3DMGAME
FileDescription Dying Light Enhanced Edition v1.10-v1.49 Plus 29 Trainer Fixed
FileVersion 1.0.0.0
InternalName Dying Light Enhanced Edition v1.10-v1.49 Plus 29 Trainer Fixed
LegalCopyright FLiNG Copyright (C) 2022
OriginalFilename Dying Light Enhanced Edition v1.10-v1.49 Plus 29 Trainer Fixed.exe
ProductName Dying Light Enhanced Edition v1.10-v1.49 Plus 29 Trainer Fixed
ProductVersion 1.0.368.10

Plugin Output

Suspicious Strings found in the binary may indicate undesirable behavior: Contains another PE executable:
  • This program cannot be run in DOS mode.
Miscellaneous malware strings:
  • virus
Contains domain names:
  • 3dmgame.com
  • FLiNGTrainer.com
  • bbs.3dmgame.com
  • flingtrainer.com
  • https://bbs.3dmgame.com
  • https://bbs.3dmgame.com/thread-
  • https://flingtrainer.com
Suspicious The PE contains functions most legitimate programs don't use. [!] The program may be hiding some of its imports:
  • LoadLibraryW
  • GetProcAddress
  • LoadLibraryA
  • LoadLibraryExW
Can create temporary files:
  • CreateFileW
  • GetTempPathW
Has Internet access capabilities:
  • InternetOpenUrlA
  • InternetReadFile
  • InternetOpenA
Enumerates local disk drives:
  • GetDriveTypeW
Changes object ACLs:
  • SetNamedSecurityInfoW
Malicious The PE is possibly a dropper. Resource 117 is possibly compressed or encrypted.
Resource 231 detected as a PE Executable.
Resource 101 is possibly compressed or encrypted.
Malicious VirusTotal score: 30/71 (Scanned on 2026-10-03 15:52:54) Antiy-AVL: RiskWare/Win64.Gamehack
CTX: exe.hacktool.generic
ClamAV: Win.Dropper.GameHack-9917263-0
CrowdStrike: win/grayware_confidence_100% (W)
Cylance: Unsafe
DeepInstinct: MALICIOUS
ESET-NOD32: Win64/GameHack.CT potentially unsafe application
Elastic: malicious (high confidence)
Fortinet: Riskware/GameHack
Google: Detected
Gridinsoft: Hack.Win64.GameHack.cl
Ikarus: PUA.GameHack
K7AntiVirus: Adware ( 006d9bef1 )
K7GW: Adware ( 006d9bef1 )
Lionic: Adware.Win32.GameHack.2!c
Malwarebytes: RiskWare.GameHack
MaxSecure: Trojan.Malware.300983.susgen
McAfeeD: ti!BD08FE915748
Paloalto: generic.ml
Rising: PUF.GameHack!8.223 (TFE:5:UBZOQhHyOtE)
Sangfor: Virus.Win32.Save.a
SentinelOne: Static AI - Suspicious PE
Skyhigh: BehavesLike.Win64.Dropper.th
Sophos: 3DMGAME Trainer (PUA)
Symantec: ML.Attribute.HighConfidence
TrellixENS: Artemis!F1ACD6B84A1B
Varist: W64/3DMGAMETrainer.B.gen!Eldorado
Xcitium: ApplicUnwnt@#3nel3yd7v86fg
Yandex: Trojan.Igent.bXNyOh.5
Zillya: Trojan.GameHack.Win64.1512

Hashes

MD5 f1acd6b84a1b78593048311c87200e75 🔍
SHA1 d47bb6dfcdf7d2275747dac41fcfb668926627e2 🔍
SHA256 bd08fe915748039a4d2db4a29156279c66b2484760a61ee77263ba6067dd2f18 🔍
SHA3 a464c830079117d805f2e2d4842955f7ab4c18fab589a0cbdbfe3bb1df18436b 🔍
SSDeep 24576:w2UlQci3khFwLhaOUYo8N3ZbXBFO5ZDSiTbJ7:WGfaw1aOU/orFO5tV7 🔍
Imports Hash 053a2861638be468247659cfe8e7cd16 🔍

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0x110

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_AMD64
NumberofSections 7
TimeDateStamp 2022-Sep-03 04:46:25
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xf0
Characteristics IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE

Image Optional Header

Magic PE32+
LinkerVersion 14.0
SizeOfCode 0x5c000
SizeOfInitializedData 0xcc000
SizeOfUninitializedData 0
AddressOfEntryPoint 0x00000000000333D0 (Section: .text)
BaseOfCode 0x1000
ImageBase 0x140000000
SectionAlignment 0x1000
FileAlignment 0x200
OperatingSystemVersion 6.0
ImageVersion 0.0
SubsystemVersion 6.0
Win32VersionValue 0
SizeOfImage 0x12b000
SizeOfHeaders 0x400
Checksum 0
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x100000
SizeofStackCommit 0x1000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 687ac749fac44a92a4cff02c9aaf6bec 🔍
SHA1 530fe85ab6ceb638b0181e2bc2ff98eb437c8153 🔍
SHA256 5e7c4fac079bfb34541b93be48ff514c7e613548fe43b5b7a4d35f35865f55bf 🔍
SHA3 9cba87924afa47a377283769f45596b14cb97d2592aac0773a5fb0e3274ecec3 🔍
VirtualSize 0x5becc
VirtualAddress 0x1000
SizeOfRawData 0x5c000
PointerToRawData 0x400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.43515

.rdata

MD5 ae469b0b418bd768b0810ffdc27edb00 🔍
SHA1 4aabb5ae1d518b4301e48dd99bff43d3c7e4947b 🔍
SHA256 baae29475f3a4e59279b58119a968af1ab28fc25625529dadf5d1d5525e6f8d0 🔍
SHA3 e1c819a2a28adefd940da807d3039916c0e180c6aabdf4f83104cc8c946601a5 🔍
VirtualSize 0x2089e
VirtualAddress 0x5d000
SizeOfRawData 0x20a00
PointerToRawData 0x5c400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 5.3959

.data

MD5 5ea7809b8a927247350fcb01e2e7134b 🔍
SHA1 b3fc3b9e2697d656f0c25c07edfc31d7ea513f27 🔍
SHA256 03a269b938640954c4cd529d23f51c07b246ab87d631c2af8963c1493a3366dd 🔍
SHA3 3ff97e7001620cb7b4d49a9f350822a77814abf2a30b06a088c614b91f64e52e 🔍
VirtualSize 0x3b14
VirtualAddress 0x7e000
SizeOfRawData 0x1800
PointerToRawData 0x7ce00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 3.24578

.pdata

MD5 5132a8eb07555a9b686967da9b66ecee 🔍
SHA1 229a32309dd0d9706b92afc277114fc7ded310bd 🔍
SHA256 ca8e6530da63ff8a7a039e1c982a74e89ec7ad4dd32626033ad552ecc1c68c69 🔍
SHA3 9f3bb4096c9ef0258a9bb28828a546ff38522ddc693009d44e79baf5d843b5d1 🔍
VirtualSize 0x3f3c
VirtualAddress 0x82000
SizeOfRawData 0x4000
PointerToRawData 0x7e600
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 5.68602

_RDATA

MD5 7acfecaeaa97d0edd17c52932b699461 🔍
SHA1 652543a4757edf313653aba1610276c293ee24f2 🔍
SHA256 d98dd6334008dce0d3e81a8216194901af34f50ec8ec2333a945ccc00c9e6ac8 🔍
SHA3 f00d4657bd7bf5a501a866026b758ff03bb128ed4157cd62574e615753aff8f6 🔍
VirtualSize 0x15c
VirtualAddress 0x86000
SizeOfRawData 0x200
PointerToRawData 0x82600
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 3.31243

.rsrc

MD5 9260f3adfd02eeea04038ea339c8194c 🔍
SHA1 2fb5b779880aefc19e4872ab381e5b847d5da22f 🔍
SHA256 ddfb131154bf8d70920bdd043252a09a4e0998acbef108a38f51761c4cef2a04 🔍
SHA3 dd56bbe73c8dd5e05e8043d82970f669107ed73a09310b3372585d315e2afd35 🔍
VirtualSize 0xa2bb0
VirtualAddress 0x87000
SizeOfRawData 0xa2c00
PointerToRawData 0x82800
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 7.31063

.reloc

MD5 affd7047ea7fbeabac944cce4f47edd2 🔍
SHA1 667b4c6d8111a319b002eedf2ae26fb683687abf 🔍
SHA256 133f3c48a341de01ad28b292c8173d387ba7c338b3a749b02cf6278ee206f133 🔍
SHA3 80ec23dc564a211b85e2b5213d3997424449d5f4d074097bdf375f61517c4e99 🔍
VirtualSize 0xaec
VirtualAddress 0x12a000
SizeOfRawData 0xc00
PointerToRawData 0x125400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy 5.2522

Imports

KERNEL32.dll GetCurrentProcessId
LoadLibraryW
GetProcAddress
WaitNamedPipeW
GetLastError
CreateFileW
ReadFile
WriteFile
GetModuleHandleA
LoadLibraryA
GetPrivateProfileStringW
WritePrivateProfileStringW
GetModuleHandleW
FindResourceW
LoadResource
SizeofResource
LockResource
RaiseException
InitializeCriticalSectionEx
DeleteCriticalSection
DecodePointer
Sleep
HeapFree
HeapReAlloc
HeapSize
GetProcessHeap
GetTempPathW
GetFileAttributesW
GetModuleFileNameW
LoadLibraryExW
FreeLibrary
MultiByteToWideChar
GetCurrentProcess
IsWow64Process
SetLastError
ResumeThread
WaitForSingleObject
LocalFree
CreateDirectoryW
WriteConsoleW
SetEnvironmentVariableW
FreeEnvironmentStringsW
GetEnvironmentStringsW
MapViewOfFile
CreateFileMappingW
UnmapViewOfFile
HeapAlloc
CloseHandle
GetCommandLineW
GetCommandLineA
GetOEMCP
GetACP
IsValidCodePage
FindNextFileW
FindFirstFileExW
FindClose
GetTimeZoneInformation
SetStdHandle
GetFullPathNameW
GetCurrentDirectoryW
EnumSystemLocalesW
GetUserDefaultLCID
IsValidLocale
GetLocaleInfoW
LCMapStringW
CompareStringW
WideCharToMultiByte
GetStringTypeW
WaitForSingleObjectEx
GetCurrentThreadId
GetExitCodeThread
InitializeSRWLock
ReleaseSRWLockExclusive
AcquireSRWLockExclusive
EnterCriticalSection
LeaveCriticalSection
TryEnterCriticalSection
EncodePointer
LCMapStringEx
QueryPerformanceCounter
FlsAlloc
FlsGetValue
FlsSetValue
FlsFree
GetSystemTimeAsFileTime
CompareStringEx
GetCPInfo
InitializeCriticalSectionAndSpinCount
CreateEventW
RtlCaptureContext
RtlLookupFunctionEntry
RtlVirtualUnwind
UnhandledExceptionFilter
SetUnhandledExceptionFilter
TerminateProcess
IsProcessorFeaturePresent
IsDebuggerPresent
GetStartupInfoW
InitializeSListHead
OutputDebugStringW
RtlUnwindEx
RtlPcToFileHeader
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
GetDriveTypeW
GetFileInformationByHandle
GetFileType
PeekNamedPipe
SystemTimeToTzSpecificLocalTime
FileTimeToSystemTime
ExitProcess
GetModuleHandleExW
CreateThread
ExitThread
FreeLibraryAndExitThread
GetStdHandle
SetFilePointerEx
FlushFileBuffers
GetConsoleOutputCP
GetConsoleMode
USER32.dll MessageBoxW
MessageBoxA
ADVAPI32.dll SetEntriesInAclW
ConvertStringSidToSidW
GetNamedSecurityInfoW
SetNamedSecurityInfoW
SHELL32.dll SHGetFolderPathW
ole32.dll CoInitializeEx
CoUninitialize
OLEAUT32.dll SysFreeString
SysAllocString
mscoree.dll CorBindToRuntime
CLRCreateInstance
WININET.dll InternetOpenUrlA
InternetReadFile
InternetOpenA
VERSION.dll VerQueryValueW
GetFileVersionInfoSizeW
GetFileVersionInfoW
WINMM.dll PlaySoundW

Delayed Imports

117

Type COVER
Language Chinese - PRC
Codepage UNKNOWN
Size 0xf276
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.98475
MD5 e6c571b28d681bab03e21893ce013701 🔍
SHA1 72ff3343b902c9c94634a89e12225f2065222b6a 🔍
SHA256 e6de754d3f37d3d00048a46a7bd00a7ec46b77a899aab56c982bc8a73f2d4409 🔍
SHA3 4eb88d17159b18f9a1da76c4c0c542a0dca708ffb6285052a6d0d9a6b0de3d2d 🔍

105

Type REMOTE
Language Chinese - PRC
Codepage UNKNOWN
Size 0x4
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 0
MD5 a54f0041a9e15b050f25c463f1db7449 🔍
SHA1 d9be6524a5f5047db5866813acf3277892a7a30a 🔍
SHA256 ad95131bc0b799c0b1af477fb14fcf26a6a9f76079e48bf090acb7e8367bfd0e 🔍
SHA3 904200c7d454fe3e8e1dfaa21b4e667f250cabd8f5730bd361feacf77fab1686 🔍

231

Type REMOTE
Language English - United States
Codepage UNKNOWN
Size 0x4b400
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.13084
Detected Filetype PE Executable
MD5 157f6a45b1d4aa1694a9f82ccefe5a00 🔍
SHA1 bc507d7879cd366c78bb08528ccacedebdef9346 🔍
SHA256 77264f8d22163c38608822d7014d6c05fc31a2bcd13e380d5ab15a0d781952d5 🔍
SHA3 fc98cbc2f1fffa687107293ffd913b31d22a6a751622027547562ef7ce73d5df 🔍

101

Type UI
Language Chinese - PRC
Codepage UNKNOWN
Size 0x2c400
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.94567
MD5 0ad02055981cca6776d73527c9d8ef96 🔍
SHA1 d5f7ee10e1d55c217368a933dc20015203d8aeb6 🔍
SHA256 f8d76bb062d17fdf34186f57ece8af298cb6d499ecda123a8472ead38758947b 🔍
SHA3 25a51bf380bf87ce1990040c49aba0eedc7c6113819410b5e287e02f98b8ee8d 🔍

103

Type WAVE
Language Chinese - PRC
Codepage UNKNOWN
Size 0x2a02
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.75428
Detected Filetype WAV Resource Interchange File Format
Detected Filetype (#2) Windows animated cursor
MD5 66ef17cf7672a90b1e3e788965266560 🔍
SHA1 d14ec49c74a164cf823dd660bd626ac7b581bb57 🔍
SHA256 99886fcb79df75f95c19c3a9504bf8bdea593d3447c8c1b4eaf4f044e1138a05 🔍
SHA3 868c104cd77862f976e3d918120ab980049e2759eaa2f2564687deb0300d6ad3 🔍

104

Type WAVE
Language Chinese - PRC
Codepage UNKNOWN
Size 0x2ccc
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.031
Detected Filetype WAV Resource Interchange File Format
Detected Filetype (#2) Windows animated cursor
MD5 358876c4000c1f391207c56c11ae9ed4 🔍
SHA1 1b7ce8967ba7f53d5e2a3d2a0c585753666272c4 🔍
SHA256 7a6a21f87454c38fb8a7ffd227680a74d9e0d7667fb08807200503e4f4866de9 🔍
SHA3 1fd6863bea4078d422e07dae0c31ae74b9ddc82e4006a1e301bc855ebabc5bcf 🔍

1

Type RT_ICON
Language Chinese - PRC
Codepage UNKNOWN
Size 0x1299c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.95488
Detected Filetype PNG graphic file
MD5 6329d2b89025253e8e3bbbed8477d4ec 🔍
SHA1 959fc28ea803ea12542500c0ca5ccf9b1e9ac958 🔍
SHA256 146865d774a3ec39bed23a542982fe5642ab61701ef9c3c25636600d37cf37d6 🔍
SHA3 a7283dbf866d0ced14013a7d1c55bcc2fcb459ba847f8261d7538276f23da4ba 🔍

2

Type RT_ICON
Language Chinese - PRC
Codepage UNKNOWN
Size 0x25a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.00357
MD5 f700621a113ad8d022648296f823863f 🔍
SHA1 1816ed906e602c518bc11ab579b7466e8325ca46 🔍
SHA256 310802e16f33d275b3eccdc079576a07f1ccff8c3cfabc6ce5ecd14c0392d984 🔍
SHA3 4a4746f9c96e6560550d57550637d6113854a029756d29e7f7e487927bfe4a96 🔍

3

Type RT_ICON
Language Chinese - PRC
Codepage UNKNOWN
Size 0x10a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.99705
MD5 71858424d836cef950ec19713cad7c11 🔍
SHA1 930eb7fbd79ab1b7894e1a89dd67e8c30bc71cd1 🔍
SHA256 b4f0bdf03ca9444a7854d1ba47c65c28f2dec2e5bedb030b0cac8f2af701a8fc 🔍
SHA3 f25d2941465af8228cc591a7619aa5d9ca6d1f1cc1ef3d3e8c269bfef1b1fcab 🔍

108

Type RT_GROUP_ICON
Language Chinese - PRC
Codepage UNKNOWN
Size 0x30
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.57863
Detected Filetype Icon file
MD5 cd2a6bcc75400d2d8a2f06d744b2d093 🔍
SHA1 1995268d1d1adda434477fa0763f1000b3c61b25 🔍
SHA256 ed19d065d5b7b0752c8c3a633a2a831631ea4bda5d2772b8e2227455187639ce 🔍
SHA3 b19cdba762359e133fa5b7f5c141aff32c3ce411652a15f8f26fe0471858eb8d 🔍

1 (#2)

Type RT_VERSION
Language Chinese - PRC
Codepage UNKNOWN
Size 0x468
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.44452
MD5 c222982c129d97f6b07b96701c249d77 🔍
SHA1 2e27a3e6e79a6e65921fac7b5abb8a06246740d9 🔍
SHA256 e95f962fc70904617aa1900e3018f0aa67c1cb95fcfd06d925756b2efe3eb8c2 🔍
SHA3 0cadb016a4e0296f456b0f6c8b3bc9d02fabf7df8d44d530b4085295102f2c03 🔍

1 (#3)

Type RT_MANIFEST
Language English - United States
Codepage UNKNOWN
Size 0x28d
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.05755
MD5 93d5224d5a82a661e8067030cadda827 🔍
SHA1 80ae07b1d4ae5129d749dee8815fc3608dd307f6 🔍
SHA256 8ccd16f837dc37da3052b31c1b21490a6b16409797d50b1298e9980999a6fc42 🔍
SHA3 358623f5ee1d9680dfdec18d01c1365b5ad31f48af6346283ca93d2e3cded683 🔍

Version Info

Signature 0xfeef04bd
StructVersion 0x10000
FileVersion 1.0.0.0
ProductVersion 1.0.0.1
FileFlags (EMPTY)
FileOs VOS_DOS_WINDOWS32
VOS_NT
VOS_NT_WINDOWS32
VOS_WINCE
VOS__WINDOWS32
FileType VFT_APP
Language UNKNOWN
CompanyName 3DMGAME
FileDescription Dying Light Enhanced Edition v1.10-v1.49 Plus 29 Trainer Fixed
FileVersion (#2) 1.0.0.0
InternalName Dying Light Enhanced Edition v1.10-v1.49 Plus 29 Trainer Fixed
LegalCopyright FLiNG Copyright (C) 2022
OriginalFilename Dying Light Enhanced Edition v1.10-v1.49 Plus 29 Trainer Fixed.exe
ProductName Dying Light Enhanced Edition v1.10-v1.49 Plus 29 Trainer Fixed
ProductVersion (#2) 1.0.368.10
Resource LangID Chinese - PRC

IMAGE_DEBUG_TYPE_POGO

Characteristics 0
TimeDateStamp 2022-Sep-03 04:46:25
Version 0.0
SizeofData 1008
AddressOfRawData 0x75f6c
PointerToRawData 0x7536c

IMAGE_DEBUG_TYPE_ILTCG

Characteristics 0
TimeDateStamp 2022-Sep-03 04:46:25
Version 0.0
SizeofData 0
AddressOfRawData 0
PointerToRawData 0

TLS Callbacks

StartAddressOfRawData 0x140076380
EndAddressOfRawData 0x140076388
AddressOfIndex 0x140080558
AddressOfCallbacks 0x14005d5c0
SizeOfZeroFill 0
Characteristics IMAGE_SCN_ALIGN_4BYTES
Callbacks (EMPTY)

Load Configuration

Size 0x140
TimeDateStamp 1970-Jan-01 00:00:00
Version 0.0
GlobalFlagsClear (EMPTY)
GlobalFlagsSet (EMPTY)
CriticalSectionDefaultTimeout 0
DeCommitFreeBlockThreshold 0
DeCommitTotalFreeThreshold 0
LockPrefixTable 0
MaximumAllocationSize 0
VirtualMemoryThreshold 0
ProcessAffinityMask 0
ProcessHeapFlags (EMPTY)
CSDVersion 0
Reserved1 0
EditList 0
SecurityCookie 0x14007e040

RICH Header

XOR Key 0xd2e1be2b
Unmarked objects 0
ASM objects (30795) 10
C++ objects (30795) 185
C objects (30795) 18
C++ objects (VS 2015-2022 runtime 30818) 2
C objects (VS2022 Update 2 (17.2.0-1) compiler 31328) 17
ASM objects (VS2022 Update 2 (17.2.0-1) compiler 31328) 10
C++ objects (VS2022 Update 2 (17.2.0-1) compiler 31328) 93
Imports (VS2008 build 21022) 2
Imports (30795) 19
Total imports 194
C++ objects (LTCG) (VS2022 Update 2 (17.2.5-6) compiler 31332) 17
Resource objects (VS2022 Update 2 (17.2.5-6) compiler 31332) 1
151 1
Linker (VS2022 Update 2 (17.2.5-6) compiler 31332) 1

Errors

Leave a comment

No comments yet.