| Architecture |
IMAGE_FILE_MACHINE_AMD64
|
|---|---|
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| Compilation Date | 2026-Mar-18 10:59:21 |
| Detected languages |
English - United States
|
| TLS Callbacks | 2 callback(s) detected. |
| CompanyName | RUNE |
| FileDescription | PlayStation PC SDK Emulator |
| FileVersion | 1.1.0.0 |
| LegalCopyright | Copyright (c) 2o25-2o26 |
| ProductName | PlayStation PC SDK Emulator |
| ProductVersion | 1.1.0.0 |
| Info | Matching compiler(s): | MASM/TASM - sig1(h) |
| Info | Cryptographic algorithms detected in the binary: | Uses known Mersenne Twister constants |
| Suspicious | The PE is possibly packed. | Unusual section name found: .fptable |
| Suspicious | The PE contains functions most legitimate programs don't use. |
[!] The program may be hiding some of its imports:
|
| Malicious | VirusTotal score: 11/72 (Scanned on 2026-04-16 17:14:04) |
Cynet:
Malicious (score: 100)
DeepInstinct: MALICIOUS Fortinet: W32/PossibleThreat Google: Detected Gridinsoft: Trojan.Win64.Malgent.bot Ikarus: Trojan.Win32.Malgent MaxSecure: Trojan.Malware.658493781.susgen Microsoft: Trojan:Win32/Malgent Panda: PUP/Generic TrendMicro-HouseCall: TROJ_GEN.R002H01CL26 alibabacloud: Trojan:Win/Malgent.Gen |
| e_magic | MZ |
|---|---|
| e_cblp | 0x90 |
| e_cp | 0x3 |
| e_crlc | 0 |
| e_cparhdr | 0x4 |
| e_minalloc | 0 |
| e_maxalloc | 0xffff |
| e_ss | 0 |
| e_sp | 0xb8 |
| e_csum | 0 |
| e_ip | 0 |
| e_cs | 0 |
| e_ovno | 0 |
| e_oemid | 0 |
| e_oeminfo | 0 |
| e_lfanew | 0x110 |
| Signature | PE |
|---|---|
| Machine |
IMAGE_FILE_MACHINE_AMD64
|
| NumberofSections | 7 |
| TimeDateStamp | 2026-Mar-18 10:59:21 |
| PointerToSymbolTable | 0 |
| NumberOfSymbols | 0 |
| SizeOfOptionalHeader | 0xf0 |
| Characteristics |
IMAGE_FILE_DLL
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE
|
| Magic | PE32+ |
|---|---|
| LinkerVersion | 14.0 |
| SizeOfCode | 0x61400 |
| SizeOfInitializedData | 0x9ca00 |
| SizeOfUninitializedData | 0 |
| AddressOfEntryPoint | 0x0000000000041700 (Section: .text) |
| BaseOfCode | 0x1000 |
| ImageBase | 0x180000000 |
| SectionAlignment | 0x1000 |
| FileAlignment | 0x200 |
| OperatingSystemVersion | 6.0 |
| ImageVersion | 0.0 |
| SubsystemVersion | 6.0 |
| Win32VersionValue | 0 |
| SizeOfImage | 0x103000 |
| SizeOfHeaders | 0x400 |
| Checksum | 0 |
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| DllCharacteristics |
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
|
| SizeofStackReserve | 0x100000 |
| SizeofStackCommit | 0x1000 |
| SizeofHeapReserve | 0x100000 |
| SizeofHeapCommit | 0x1000 |
| LoaderFlags | 0 |
| NumberOfRvaAndSizes | 16 |
| KERNEL32.dll |
CloseHandle
UnmapViewOfFile MapViewOfFileFromApp CreateFileMappingFromApp GetFileSizeEx CreateFile2 MultiByteToWideChar GetProcAddress RemoveVectoredExceptionHandler VirtualProtect VirtualFree GetModuleHandleExW VirtualAlloc GetSystemInfo AddVectoredExceptionHandler VirtualQuery WriteConsoleW HeapSize GetConsoleMode GetConsoleOutputCP FlushFileBuffers WriteFile GetProcessHeap SetEnvironmentVariableW FreeEnvironmentStringsW GetEnvironmentStringsW GetCommandLineW GetCommandLineA GetOEMCP GetACP IsValidCodePage GetTimeZoneInformation SetFilePointerEx GetStdHandle GetCurrentDirectoryW CreateFileW FindClose FindFirstFileExW FindNextFileW GetFileInformationByHandle GetFullPathNameW AreFileApisANSI GetLastError GetModuleHandleW WideCharToMultiByte FormatMessageA LocalFree GetLocaleInfoEx ReleaseSRWLockExclusive AcquireSRWLockExclusive TryAcquireSRWLockExclusive GetCurrentThreadId SleepConditionVariableSRW Sleep InitOnceBeginInitialize InitOnceComplete WaitForSingleObjectEx SwitchToThread GetExitCodeThread GetNativeSystemInfo RtlPcToFileHeader RaiseException QueryPerformanceCounter QueryPerformanceFrequency WakeConditionVariable WakeAllConditionVariable EncodePointer DecodePointer EnterCriticalSection LeaveCriticalSection InitializeCriticalSectionEx DeleteCriticalSection LCMapStringEx CompareStringEx GetCPInfo GetSystemTimeAsFileTime GetStringTypeW RtlCaptureContext RtlLookupFunctionEntry RtlVirtualUnwind UnhandledExceptionFilter SetUnhandledExceptionFilter GetCurrentProcess TerminateProcess IsProcessorFeaturePresent IsDebuggerPresent GetStartupInfoW GetCurrentProcessId InitializeSListHead RtlUnwindEx InterlockedFlushSList SetLastError InitializeCriticalSectionAndSpinCount TlsAlloc TlsGetValue TlsSetValue TlsFree FreeLibrary LoadLibraryExW GetDriveTypeW GetFileType PeekNamedPipe SystemTimeToTzSpecificLocalTime FileTimeToSystemTime CreateThread ExitThread FreeLibraryAndExitThread ExitProcess GetModuleFileNameW HeapFree HeapReAlloc HeapAlloc FlsAlloc FlsGetValue FlsSetValue FlsFree CompareStringW LCMapStringW GetLocaleInfoW IsValidLocale GetUserDefaultLCID EnumSystemLocalesW SetStdHandle |
|---|---|
| WS2_32.dll |
WSAStartup
getaddrinfo freeaddrinfo WSASocketW socket bind listen WSAAccept WSACleanup send getpeername getsockname ntohs getnameinfo WSAPoll recv shutdown closesocket setsockopt |
| Ordinal | 1 |
|---|---|
| Address | 0x3d560 |
| Ordinal | 2 |
|---|---|
| Address | 0x3d566 |
| Ordinal | 3 |
|---|---|
| Address | 0x3d56c |
| Ordinal | 4 |
|---|---|
| Address | 0x3d572 |
| Ordinal | 5 |
|---|---|
| Address | 0x3d998 |
| Ordinal | 6 |
|---|---|
| Address | 0x3d578 |
| Ordinal | 7 |
|---|---|
| Address | 0x3d57e |
| Ordinal | 8 |
|---|---|
| Address | 0x3d584 |
| Ordinal | 9 |
|---|---|
| Address | 0x3d58a |
| Ordinal | 10 |
|---|---|
| Address | 0x3d590 |
| Ordinal | 11 |
|---|---|
| Address | 0x1230 |
| Ordinal | 12 |
|---|---|
| Address | 0x3d596 |
| Ordinal | 13 |
|---|---|
| Address | 0x3d59c |
| Ordinal | 14 |
|---|---|
| Address | 0x3d5a2 |
| Ordinal | 15 |
|---|---|
| Address | 0x3d5a8 |
| Ordinal | 16 |
|---|---|
| Address | 0x3d5ae |
| Ordinal | 17 |
|---|---|
| Address | 0x3d5b4 |
| Ordinal | 18 |
|---|---|
| Address | 0x3d5ba |
| Ordinal | 19 |
|---|---|
| Address | 0x3d5c0 |
| Ordinal | 20 |
|---|---|
| Address | 0x3d5c6 |
| Ordinal | 21 |
|---|---|
| Address | 0x3d5cc |
| Ordinal | 22 |
|---|---|
| Address | 0x3d5d2 |
| Ordinal | 23 |
|---|---|
| Address | 0x3d5d8 |
| Ordinal | 24 |
|---|---|
| Address | 0x3d5de |
| Ordinal | 25 |
|---|---|
| Address | 0x3d5e4 |
| Ordinal | 26 |
|---|---|
| Address | 0x3d5ea |
| Ordinal | 27 |
|---|---|
| Address | 0x3d5f0 |
| Ordinal | 28 |
|---|---|
| Address | 0x3d5f6 |
| Ordinal | 29 |
|---|---|
| Address | 0x3d5fc |
| Ordinal | 30 |
|---|---|
| Address | 0x3d602 |
| Ordinal | 31 |
|---|---|
| Address | 0x3d608 |
| Ordinal | 32 |
|---|---|
| Address | 0x3d60e |
| Ordinal | 33 |
|---|---|
| Address | 0x3d614 |
| Ordinal | 34 |
|---|---|
| Address | 0x3d61a |
| Ordinal | 35 |
|---|---|
| Address | 0x3d620 |
| Ordinal | 36 |
|---|---|
| Address | 0x3d626 |
| Ordinal | 37 |
|---|---|
| Address | 0x3d62c |
| Ordinal | 38 |
|---|---|
| Address | 0x3d632 |
| Ordinal | 39 |
|---|---|
| Address | 0x3d638 |
| Ordinal | 40 |
|---|---|
| Address | 0x3d63e |
| Ordinal | 41 |
|---|---|
| Address | 0x3d644 |
| Ordinal | 42 |
|---|---|
| Address | 0x3d64a |
| Ordinal | 43 |
|---|---|
| Address | 0x3d650 |
| Ordinal | 44 |
|---|---|
| Address | 0x3d656 |
| Ordinal | 45 |
|---|---|
| Address | 0x3d65c |
| Ordinal | 46 |
|---|---|
| Address | 0x3d662 |
| Ordinal | 47 |
|---|---|
| Address | 0x3d668 |
| Ordinal | 48 |
|---|---|
| Address | 0x3d66e |
| Ordinal | 49 |
|---|---|
| Address | 0x3d674 |
| Ordinal | 50 |
|---|---|
| Address | 0x3d67a |
| Ordinal | 51 |
|---|---|
| Address | 0x3d680 |
| Ordinal | 52 |
|---|---|
| Address | 0x3d686 |
| Ordinal | 53 |
|---|---|
| Address | 0x3d68c |
| Ordinal | 54 |
|---|---|
| Address | 0x3d692 |
| Ordinal | 55 |
|---|---|
| Address | 0x3d698 |
| Ordinal | 56 |
|---|---|
| Address | 0x3d69e |
| Ordinal | 57 |
|---|---|
| Address | 0x3d6a4 |
| Ordinal | 58 |
|---|---|
| Address | 0x3d6aa |
| Ordinal | 59 |
|---|---|
| Address | 0x3d6b0 |
| Ordinal | 60 |
|---|---|
| Address | 0x3d6b6 |
| Ordinal | 61 |
|---|---|
| Address | 0x3d6bc |
| Ordinal | 62 |
|---|---|
| Address | 0x3d6c2 |
| Ordinal | 63 |
|---|---|
| Address | 0x3d6c8 |
| Ordinal | 64 |
|---|---|
| Address | 0x3d6ce |
| Ordinal | 65 |
|---|---|
| Address | 0x3d6d4 |
| Ordinal | 66 |
|---|---|
| Address | 0x3d6da |
| Ordinal | 67 |
|---|---|
| Address | 0x3d6e0 |
| Ordinal | 68 |
|---|---|
| Address | 0x3d6e6 |
| Ordinal | 69 |
|---|---|
| Address | 0x3d6ec |
| Ordinal | 70 |
|---|---|
| Address | 0x3d6f2 |
| Ordinal | 71 |
|---|---|
| Address | 0x3d6f8 |
| Ordinal | 72 |
|---|---|
| Address | 0x3d6fe |
| Ordinal | 73 |
|---|---|
| Address | 0x3d704 |
| Ordinal | 74 |
|---|---|
| Address | 0x3d70a |
| Ordinal | 75 |
|---|---|
| Address | 0x3d710 |
| Ordinal | 76 |
|---|---|
| Address | 0x3d716 |
| Ordinal | 77 |
|---|---|
| Address | 0x3d71c |
| Ordinal | 78 |
|---|---|
| Address | 0x3d722 |
| Ordinal | 79 |
|---|---|
| Address | 0x3d728 |
| Ordinal | 80 |
|---|---|
| Address | 0x3d72e |
| Ordinal | 81 |
|---|---|
| Address | 0x3d734 |
| Ordinal | 82 |
|---|---|
| Address | 0x3d73a |
| Ordinal | 83 |
|---|---|
| Address | 0x3d740 |
| Ordinal | 84 |
|---|---|
| Address | 0x3d746 |
| Ordinal | 85 |
|---|---|
| Address | 0x3d74c |
| Ordinal | 86 |
|---|---|
| Address | 0x3d752 |
| Ordinal | 87 |
|---|---|
| Address | 0x3d758 |
| Ordinal | 88 |
|---|---|
| Address | 0x3d75e |
| Ordinal | 89 |
|---|---|
| Address | 0x3d764 |
| Ordinal | 90 |
|---|---|
| Address | 0x3d76a |
| Ordinal | 91 |
|---|---|
| Address | 0x3d770 |
| Ordinal | 92 |
|---|---|
| Address | 0x3d776 |
| Ordinal | 93 |
|---|---|
| Address | 0x3d77c |
| Ordinal | 94 |
|---|---|
| Address | 0x3d782 |
| Ordinal | 95 |
|---|---|
| Address | 0x3d788 |
| Ordinal | 96 |
|---|---|
| Address | 0x3d78e |
| Ordinal | 97 |
|---|---|
| Address | 0x3d794 |
| Ordinal | 98 |
|---|---|
| Address | 0x3d79a |
| Ordinal | 99 |
|---|---|
| Address | 0x3d7a0 |
| Ordinal | 100 |
|---|---|
| Address | 0x3d7a6 |
| Ordinal | 101 |
|---|---|
| Address | 0x3d7ac |
| Ordinal | 102 |
|---|---|
| Address | 0x3d7b2 |
| Ordinal | 103 |
|---|---|
| Address | 0x3d7b8 |
| Ordinal | 104 |
|---|---|
| Address | 0x3d7be |
| Ordinal | 105 |
|---|---|
| Address | 0x3d7c4 |
| Ordinal | 106 |
|---|---|
| Address | 0x3d7ca |
| Ordinal | 107 |
|---|---|
| Address | 0x3d7d0 |
| Ordinal | 108 |
|---|---|
| Address | 0x3d7d6 |
| Ordinal | 109 |
|---|---|
| Address | 0x3d7dc |
| Ordinal | 110 |
|---|---|
| Address | 0x3d7e2 |
| Ordinal | 111 |
|---|---|
| Address | 0x3d7e8 |
| Ordinal | 112 |
|---|---|
| Address | 0x3d7ee |
| Ordinal | 113 |
|---|---|
| Address | 0x3d7f4 |
| Ordinal | 114 |
|---|---|
| Address | 0x3d7fa |
| Ordinal | 115 |
|---|---|
| Address | 0x3d800 |
| Ordinal | 116 |
|---|---|
| Address | 0x3d806 |
| Ordinal | 117 |
|---|---|
| Address | 0x3d80c |
| Ordinal | 118 |
|---|---|
| Address | 0x3d812 |
| Ordinal | 119 |
|---|---|
| Address | 0x3d818 |
| Ordinal | 120 |
|---|---|
| Address | 0x3d81e |
| Ordinal | 121 |
|---|---|
| Address | 0x3d824 |
| Ordinal | 122 |
|---|---|
| Address | 0x3d82a |
| Ordinal | 123 |
|---|---|
| Address | 0x3d830 |
| Ordinal | 124 |
|---|---|
| Address | 0x3d836 |
| Ordinal | 125 |
|---|---|
| Address | 0x3d83c |
| Ordinal | 126 |
|---|---|
| Address | 0x3d842 |
| Ordinal | 127 |
|---|---|
| Address | 0x3d848 |
| Ordinal | 128 |
|---|---|
| Address | 0x3d84e |
| Ordinal | 129 |
|---|---|
| Address | 0x3d854 |
| Ordinal | 130 |
|---|---|
| Address | 0x3d85a |
| Ordinal | 131 |
|---|---|
| Address | 0x3d860 |
| Ordinal | 132 |
|---|---|
| Address | 0x3d866 |
| Ordinal | 133 |
|---|---|
| Address | 0x3d86c |
| Ordinal | 134 |
|---|---|
| Address | 0x3d872 |
| Ordinal | 135 |
|---|---|
| Address | 0x3d878 |
| Ordinal | 136 |
|---|---|
| Address | 0x3d87e |
| Ordinal | 137 |
|---|---|
| Address | 0x3d884 |
| Ordinal | 138 |
|---|---|
| Address | 0x3d88a |
| Ordinal | 139 |
|---|---|
| Address | 0x3d890 |
| Ordinal | 140 |
|---|---|
| Address | 0x3d896 |
| Ordinal | 141 |
|---|---|
| Address | 0x3d89c |
| Ordinal | 142 |
|---|---|
| Address | 0x3d8a2 |
| Ordinal | 143 |
|---|---|
| Address | 0x3d8a8 |
| Ordinal | 144 |
|---|---|
| Address | 0x3d8ae |
| Ordinal | 145 |
|---|---|
| Address | 0x3d8b4 |
| Ordinal | 146 |
|---|---|
| Address | 0x3d8ba |
| Ordinal | 147 |
|---|---|
| Address | 0x3d8c0 |
| Ordinal | 148 |
|---|---|
| Address | 0x3d8c6 |
| Ordinal | 149 |
|---|---|
| Address | 0x3d8cc |
| Ordinal | 150 |
|---|---|
| Address | 0x3d8d2 |
| Ordinal | 151 |
|---|---|
| Address | 0x3d8d8 |
| Ordinal | 152 |
|---|---|
| Address | 0x3d8de |
| Ordinal | 153 |
|---|---|
| Address | 0x3d8e4 |
| Ordinal | 154 |
|---|---|
| Address | 0x3d8ea |
| Ordinal | 155 |
|---|---|
| Address | 0x3d8f0 |
| Ordinal | 156 |
|---|---|
| Address | 0x3d8f6 |
| Ordinal | 157 |
|---|---|
| Address | 0x3d8fc |
| Ordinal | 158 |
|---|---|
| Address | 0x3d902 |
| Ordinal | 159 |
|---|---|
| Address | 0x3d908 |
| Ordinal | 160 |
|---|---|
| Address | 0x3d90e |
| Ordinal | 161 |
|---|---|
| Address | 0x3d914 |
| Ordinal | 162 |
|---|---|
| Address | 0x3d91a |
| Ordinal | 163 |
|---|---|
| Address | 0x3d920 |
| Ordinal | 164 |
|---|---|
| Address | 0x3d926 |
| Ordinal | 165 |
|---|---|
| Address | 0x3d92c |
| Ordinal | 166 |
|---|---|
| Address | 0x3d932 |
| Ordinal | 167 |
|---|---|
| Address | 0x3d938 |
| Ordinal | 168 |
|---|---|
| Address | 0x3d93e |
| Ordinal | 169 |
|---|---|
| Address | 0x3d944 |
| Ordinal | 170 |
|---|---|
| Address | 0x3d94a |
| Ordinal | 171 |
|---|---|
| Address | 0x3d950 |
| Ordinal | 172 |
|---|---|
| Address | 0x3d956 |
| Ordinal | 173 |
|---|---|
| Address | 0x3d95c |
| Ordinal | 174 |
|---|---|
| Address | 0x3d962 |
| Ordinal | 175 |
|---|---|
| Address | 0x3d968 |
| Ordinal | 176 |
|---|---|
| Address | 0x3d96e |
| Ordinal | 177 |
|---|---|
| Address | 0x3d974 |
| Ordinal | 178 |
|---|---|
| Address | 0x3d97a |
| Ordinal | 179 |
|---|---|
| Address | 0x3d980 |
| Ordinal | 180 |
|---|---|
| Address | 0x3d986 |
| Ordinal | 181 |
|---|---|
| Address | 0x3d98c |
| Ordinal | 182 |
|---|---|
| Address | 0x3d992 |
| Signature | 0xfeef04bd |
|---|---|
| StructVersion | 0x10000 |
| FileVersion | 1.1.0.0 |
| ProductVersion | 1.1.0.0 |
| FileFlags | (EMPTY) |
| FileOs |
VOS_DOS_WINDOWS32
VOS_NT
VOS_NT_WINDOWS32
VOS_WINCE
VOS__WINDOWS32
|
| FileType |
VFT_DLL
|
| Language | English - United States |
| CompanyName | RUNE |
| FileDescription | PlayStation PC SDK Emulator |
| FileVersion (#2) | 1.1.0.0 |
| LegalCopyright | Copyright (c) 2o25-2o26 |
| ProductName | PlayStation PC SDK Emulator |
| ProductVersion (#2) | 1.1.0.0 |
| Resource LangID | English - United States |
|---|
| StartAddressOfRawData | 0x1800e53d0 |
|---|---|
| EndAddressOfRawData | 0x1800e697c |
| AddressOfIndex | 0x1800f65ac |
| AddressOfCallbacks | 0x1800635c0 |
| SizeOfZeroFill | 0 |
| Characteristics |
IMAGE_SCN_ALIGN_16BYTES
|
| Callbacks |
0x0000000180040C70
0x00000001800412A8 |
| Size | 0x140 |
|---|---|
| TimeDateStamp | 1970-Jan-01 00:00:00 |
| Version | 0.0 |
| GlobalFlagsClear | (EMPTY) |
| GlobalFlagsSet | (EMPTY) |
| CriticalSectionDefaultTimeout | 0 |
| DeCommitFreeBlockThreshold | 0 |
| DeCommitTotalFreeThreshold | 0 |
| LockPrefixTable | 0 |
| MaximumAllocationSize | 0 |
| VirtualMemoryThreshold | 0 |
| ProcessAffinityMask | 0 |
| ProcessHeapFlags | (EMPTY) |
| CSDVersion | 0 |
| Reserved1 | 0 |
| EditList | 0 |
| SecurityCookie | 0x1800f1200 |
| XOR Key | 0xadbc3d7c |
|---|---|
| Unmarked objects | 0 |
| C++ objects (33145) | 162 |
| C objects (33145) | 18 |
| ASM objects (33145) | 8 |
| C objects (35207) | 15 |
| ASM objects (35207) | 12 |
| C++ objects (35207) | 86 |
| Imports (33145) | 5 |
| Total imports | 190 |
| C++ objects (LTCG) (35214) | 4 |
| ASM objects (35214) | 1 |
| Exports (35214) | 1 |
| Resource objects (35214) | 1 |
| Linker (35214) | 1 |
No comments yet.