| Architecture |
IMAGE_FILE_MACHINE_I386
|
|---|---|
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| Compilation Date | 2022-Jun-07 17:17:55 |
| Detected languages |
English - United States
|
| Debug artifacts |
C:\php-snap-build\php74\vc15\x86\obj\Release\php-win.pdb
|
| Comments | Thanks to Edin Kadribasic, Marcus Boerger, Johannes Schlueter, Moriyoshi Koizumi, Xinchen Hui |
| CompanyName | The PHP Group |
| FileDescription | CLI |
| FileVersion | 7.4.30 |
| InternalName | CLI_WIN32 SAPI |
| LegalCopyright | Copyright © The PHP Group |
| LegalTrademarks | PHP |
| OriginalFilename | php-win.exe |
| ProductName | PHP |
| ProductVersion | 7.4.30 |
| URL | http://www.php.net |
| Info | Interesting strings found in the binary: |
Contains domain names:
|
| Safe | VirusTotal score: 0/69 (Scanned on 2022-07-12 22:55:42) | All the AVs think this file is safe. |
| e_magic | MZ |
|---|---|
| e_cblp | 0x90 |
| e_cp | 0x3 |
| e_crlc | 0 |
| e_cparhdr | 0x4 |
| e_minalloc | 0 |
| e_maxalloc | 0xffff |
| e_ss | 0 |
| e_sp | 0xb8 |
| e_csum | 0 |
| e_ip | 0 |
| e_cs | 0 |
| e_ovno | 0 |
| e_oemid | 0 |
| e_oeminfo | 0 |
| e_lfanew | 0x108 |
| Signature | PE |
|---|---|
| Machine |
IMAGE_FILE_MACHINE_I386
|
| NumberofSections | 5 |
| TimeDateStamp | 2022-Jun-07 17:17:55 |
| PointerToSymbolTable | 0 |
| NumberOfSymbols | 0 |
| SizeOfOptionalHeader | 0xe0 |
| Characteristics |
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_EXECUTABLE_IMAGE
|
| Magic | PE32 |
|---|---|
| LinkerVersion | 14.0 |
| SizeOfCode | 0x3400 |
| SizeOfInitializedData | 0x4a00 |
| SizeOfUninitializedData | 0 |
| AddressOfEntryPoint | 0x000039A0 (Section: .text) |
| BaseOfCode | 0x1000 |
| BaseOfData | 0x5000 |
| ImageBase | 0x400000 |
| SectionAlignment | 0x1000 |
| FileAlignment | 0x200 |
| OperatingSystemVersion | 6.0 |
| ImageVersion | 0.0 |
| SubsystemVersion | 6.0 |
| Win32VersionValue | 0 |
| SizeOfImage | 0xc000 |
| SizeOfHeaders | 0x400 |
| Checksum | 0x13749 |
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| DllCharacteristics |
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_GUARD_CF
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
|
| SizeofStackReserve | 0x4000000 |
| SizeofStackCommit | 0x1000 |
| SizeofHeapReserve | 0x100000 |
| SizeofHeapCommit | 0x1000 |
| LoaderFlags | 0 |
| NumberOfRvaAndSizes | 16 |
| php7.dll |
php_ini_scanned_files
zend_string_init_interned php_win32_cp_cli_do_setup zend_hash_destroy@@4 zval_ptr_dtor zend_register_constant core_globals php_win32_cp_use_unicode compiler_globals php_output_end_all zend_llist_copy zend_llist_destroy zend_load_extension php_module_shutdown php_win32_cp_conv_ascii_to_w zend_str_tolower_dup@@8 php_module_startup object_init_ex zend_is_auto_global_str reflection_zend_extension_ptr zend_llist_sort php_win32_cp_conv_to_w reflection_function_ptr zend_hash_sort_ex@@16 module_registry __zend_malloc sapi_globals zend_ini_deactivate _php_stream_open_wrapper_ex _php_stream_free sapi_module zend_wrong_parameters_none_error@@0 php_error_docref php_win32_cp_get_by_id zend_parse_parameters zend_hash_copy@@12 php_module_shutdown_wrapper php_printf zend_highlight open_file_for_scanning php_win32_ioutil_normalize_path_w zend_printf zend_ce_exception _emalloc@@4 zend_stream_init_fp _efree@@4 php_output_write reflection_class_ptr zend_read_property php_info_print_module php_lint_script zend_llist_apply zend_eval_string_ex php_import_environment_variables php_get_highlight_struct php_execute_script zend_strip reflection_extension_ptr php_win32_cp_conv_w_to_cur php_register_variable php_win32_cp_get_orig zend_call_method php_win32_cp_conv_utf8_to_w zend_hash_str_update@@16 _zend_hash_init@@16 php_win32_code_to_errno zif_dl@@8 display_ini_entries php_win32_cp_conv_cur_to_w zend_sort php_ini_scanned_path php_print_info php_request_shutdown php_win32_ioutil_fopen_w php_request_startup zend_hash_str_find@@12 sapi_deactivate php_win32_cp_cli_do_restore php_getopt _php_stream_get_line get_zend_version tsrm_realpath zend_extensions executor_globals zend_register_bool_constant sapi_startup php_ini_opened_path zend_error reflection_method_ptr zend_write zend_print_zval sapi_shutdown |
|---|---|
| SHELL32.dll |
CommandLineToArgvW
|
| KERNEL32.dll |
SetLastError
SetConsoleCtrlHandler GetCommandLineW GetACP GetLastError LocalFree GetConsoleTitleW SetConsoleTitleW UnhandledExceptionFilter SetUnhandledExceptionFilter GetModuleHandleW GetStartupInfoW IsDebuggerPresent InitializeSListHead GetSystemTimeAsFileTime GetCurrentThreadId GetCurrentProcessId QueryPerformanceCounter IsProcessorFeaturePresent TerminateProcess GetCurrentProcess |
| VCRUNTIME140.dll |
strrchr
memset strstr _setjmp3 memmove memcpy strchr _except_handler4_common |
| api-ms-win-crt-runtime-l1-1-0.dll |
exit
_set_errno _errno terminate _controlfp_s _crt_atexit _register_onexit_function _initialize_onexit_table __p___argv _register_thread_local_exe_atexit_callback _c_exit _cexit _seh_filter_exe _exit _initterm_e _initterm _get_narrow_winmain_command_line _initialize_narrow_environment _configure_narrow_argv _set_app_type __p___argc |
| api-ms-win-crt-stdio-l1-1-0.dll |
ferror
fopen fread feof __stdio_common_vsprintf __acrt_iob_func __p__fmode __p__commode ftell fwrite _lseek _fileno _open fgets fflush _write _set_fmode _close _setmode __stdio_common_vfprintf fseek _read clearerr fclose |
| api-ms-win-crt-heap-l1-1-0.dll |
_set_new_mode
free realloc malloc |
| api-ms-win-crt-string-l1-1-0.dll |
wcsncmp
strncpy _strdup _stricmp isalnum |
| api-ms-win-crt-math-l1-1-0.dll |
__setusermatherr
|
| api-ms-win-crt-locale-l1-1-0.dll |
_configthreadlocale
|
| Ordinal | 1 |
|---|---|
| Address | 0x1110 |
| Ordinal | 2 |
|---|---|
| Address | 0x1210 |
| Ordinal | 3 |
|---|---|
| Address | 0x12a0 |
| Signature | 0xfeef04bd |
|---|---|
| StructVersion | 0x10000 |
| FileVersion | 7.4.30.0 |
| ProductVersion | 7.4.30.0 |
| FileFlags | (EMPTY) |
| FileOs |
VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
|
| FileType |
VFT_DLL
|
| Language | English - United States |
| Comments | Thanks to Edin Kadribasic, Marcus Boerger, Johannes Schlueter, Moriyoshi Koizumi, Xinchen Hui |
| CompanyName | The PHP Group |
| FileDescription | CLI |
| FileVersion (#2) | 7.4.30 |
| InternalName | CLI_WIN32 SAPI |
| LegalCopyright | Copyright © The PHP Group |
| LegalTrademarks | PHP |
| OriginalFilename | php-win.exe |
| ProductName | PHP |
| ProductVersion (#2) | 7.4.30 |
| URL | http://www.php.net |
| Resource LangID | English - United States |
|---|
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2022-Jun-07 17:17:55 |
| Version | 0.0 |
| SizeofData | 81 |
| AddressOfRawData | 0x67d4 |
| PointerToRawData | 0x4fd4 |
| Referenced File | C:\php-snap-build\php74\vc15\x86\obj\Release\php-win.pdb |
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2022-Jun-07 17:17:55 |
| Version | 0.0 |
| SizeofData | 20 |
| AddressOfRawData | 0x6828 |
| PointerToRawData | 0x5028 |
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2022-Jun-07 17:17:55 |
| Version | 0.0 |
| SizeofData | 660 |
| AddressOfRawData | 0x683c |
| PointerToRawData | 0x503c |
| Size | 0xa0 |
|---|---|
| TimeDateStamp | 1970-Jan-01 00:00:00 |
| Version | 0.0 |
| GlobalFlagsClear | (EMPTY) |
| GlobalFlagsSet | (EMPTY) |
| CriticalSectionDefaultTimeout | 0 |
| DeCommitFreeBlockThreshold | 0 |
| DeCommitTotalFreeThreshold | 0 |
| LockPrefixTable | 0 |
| MaximumAllocationSize | 0 |
| VirtualMemoryThreshold | 0 |
| ProcessAffinityMask | 0 |
| ProcessHeapFlags | (EMPTY) |
| CSDVersion | 0 |
| Reserved1 | 0 |
| EditList | 0 |
| SecurityCookie | 0x408004 |
| SEHandlerTable | 0x4067d0 |
| SEHandlerCount | 1 |
| GuardCFCheckFunctionPointer | 4215536 |
| GuardCFDispatchFunctionPointer | 0 |
| GuardCFFunctionTable | 0 |
| GuardCFFunctionCount | 0 |
| GuardFlags | (EMPTY) |
| CodeIntegrity.Flags | 0 |
| CodeIntegrity.Catalog | 0 |
| CodeIntegrity.CatalogOffset | 0 |
| CodeIntegrity.Reserved | 0 |
| GuardAddressTakenIatEntryTable | 0 |
| GuardAddressTakenIatEntryCount | 0 |
| GuardLongJumpTargetTable | 0 |
| GuardLongJumpTargetCount | 0 |
| XOR Key | 0xd7315771 |
|---|---|
| Unmarked objects | 0 |
| Imports (VS2008 SP1 build 30729) | 12 |
| Imports (VS 2015/2017 runtime 26706) | 2 |
| 199 (41118) | 2 |
| C++ objects (VS 2015/2017 runtime 26706) | 18 |
| C objects (VS 2015/2017 runtime 26706) | 12 |
| ASM objects (VS 2015/2017 runtime 26706) | 1 |
| Imports (26213) | 4 |
| Imports (27045) | 3 |
| Total imports | 182 |
| C objects (LTCG) (27045) | 3 |
| Exports (27045) | 1 |
| Resource objects (27045) | 1 |
| Linker (27045) | 1 |
No comments yet.