Architecture |
IMAGE_FILE_MACHINE_I386
|
---|---|
Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_CUI
|
Compilation Date | 2014-Oct-27 13:54:18 |
Detected languages |
English - United States
|
Debug artifacts |
C:\Users\Latch Dimitrov\documents\visual studio 2013\Projects\ascii_to_motec\Release\ascii_to_motec.pdb
|
Info | Matching compiler(s): | Microsoft Visual C++ 6.0 - 8.0 |
Info | The PE contains common functions which appear in legitimate applications. |
[!] The program may be hiding some of its imports:
|
Safe | VirusTotal score: 0/67 (Scanned on 2018-06-10 16:22:32) | All the AVs think this file is safe. |
e_magic | MZ |
---|---|
e_cblp | 0x90 |
e_cp | 0x3 |
e_crlc | 0 |
e_cparhdr | 0x4 |
e_minalloc | 0 |
e_maxalloc | 0xffff |
e_ss | 0 |
e_sp | 0xb8 |
e_csum | 0 |
e_ip | 0 |
e_cs | 0 |
e_ovno | 0 |
e_oemid | 0 |
e_oeminfo | 0 |
e_lfanew | 0xe8 |
Signature | PE |
---|---|
Machine |
IMAGE_FILE_MACHINE_I386
|
NumberofSections | 5 |
TimeDateStamp | 2014-Oct-27 13:54:18 |
PointerToSymbolTable | 0 |
NumberOfSymbols | 0 |
SizeOfOptionalHeader | 0xe0 |
Characteristics |
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_EXECUTABLE_IMAGE
|
Magic | PE32 |
---|---|
LinkerVersion | 12.0 |
SizeOfCode | 0x25400 |
SizeOfInitializedData | 0x17c00 |
SizeOfUninitializedData | 0 |
AddressOfEntryPoint | 0x0000E389 (Section: .text) |
BaseOfCode | 0x1000 |
BaseOfData | 0x27000 |
ImageBase | 0x400000 |
SectionAlignment | 0x1000 |
FileAlignment | 0x200 |
OperatingSystemVersion | 6.0 |
ImageVersion | 0.0 |
SubsystemVersion | 6.0 |
Win32VersionValue | 0 |
SizeOfImage | 0x41000 |
SizeOfHeaders | 0x400 |
Checksum | 0 |
Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_CUI
|
DllCharacteristics |
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
|
SizeofStackReserve | 0x100000 |
SizeofStackCommit | 0x1000 |
SizeofHeapReserve | 0x100000 |
SizeofHeapCommit | 0x1000 |
LoaderFlags | 0 |
NumberOfRvaAndSizes | 16 |
KERNEL32.dll |
WideCharToMultiByte
EnterCriticalSection LeaveCriticalSection DeleteCriticalSection EncodePointer DecodePointer MultiByteToWideChar GetStringTypeW GetLastError HeapFree GetSystemTimeAsFileTime ExitProcess GetModuleHandleExW GetProcAddress AreFileApisANSI GetCommandLineA HeapAlloc RaiseException RtlUnwind GetCPInfo UnhandledExceptionFilter SetUnhandledExceptionFilter SetLastError InitializeCriticalSectionAndSpinCount Sleep GetCurrentProcess TerminateProcess TlsAlloc TlsGetValue TlsSetValue TlsFree GetStartupInfoW GetModuleHandleW IsProcessorFeaturePresent LCMapStringW GetLocaleInfoW IsValidLocale GetUserDefaultLCID EnumSystemLocalesW IsDebuggerPresent GetProcessHeap GetCurrentThreadId GetStdHandle GetFileType HeapSize IsValidCodePage GetACP GetOEMCP WriteFile GetConsoleCP GetConsoleMode ReadFile SetFilePointerEx FlushFileBuffers CloseHandle GetModuleFileNameW LoadLibraryExW GetModuleFileNameA QueryPerformanceCounter GetCurrentProcessId GetEnvironmentStringsW FreeEnvironmentStringsW HeapReAlloc ReadConsoleW SetStdHandle WriteConsoleW OutputDebugStringW CreateFileW SetEndOfFile |
---|
Characteristics |
0
|
---|---|
TimeDateStamp | 2014-Oct-27 13:54:18 |
Version | 0.0 |
SizeofData | 128 |
AddressOfRawData | 0x35d28 |
PointerToRawData | 0x34528 |
Referenced File | C:\Users\Latch Dimitrov\documents\visual studio 2013\Projects\ascii_to_motec\Release\ascii_to_motec.pdb |
Characteristics |
0
|
---|---|
TimeDateStamp | 2014-Oct-27 13:54:18 |
Version | 0.0 |
SizeofData | 20 |
AddressOfRawData | 0x35da8 |
PointerToRawData | 0x345a8 |
Size | 0x48 |
---|---|
TimeDateStamp | 1970-Jan-01 00:00:00 |
Version | 0.0 |
GlobalFlagsClear | (EMPTY) |
GlobalFlagsSet | (EMPTY) |
CriticalSectionDefaultTimeout | 0 |
DeCommitFreeBlockThreshold | 0 |
DeCommitTotalFreeThreshold | 0 |
LockPrefixTable | 0 |
MaximumAllocationSize | 0 |
VirtualMemoryThreshold | 0 |
ProcessAffinityMask | 0 |
ProcessHeapFlags | (EMPTY) |
CSDVersion | 0 |
Reserved1 | 0 |
EditList | 0 |
SecurityCookie | 0x439750 |
SEHandlerTable | 0x436a30 |
SEHandlerCount | 43 |
XOR Key | 0x10c07baf |
---|---|
Unmarked objects | 0 |
ASM objects (20806) | 32 |
C++ objects (20806) | 70 |
C objects (20806) | 213 |
Imports (65501) | 3 |
Total imports | 81 |
229 (VS2013 build 21005) | 5 |
Resource objects (VS2013 build 21005) | 1 |
Linker (VS2013 build 21005) | 1 |