46cb14ca8a6bc7df87a0dbc21d6138631b83df8a35d98d089931608b71437d26

Summary

Architecture IMAGE_FILE_MACHINE_AMD64
Subsystem IMAGE_SUBSYSTEM_WINDOWS_CUI
Compilation Date 2026-Feb-22 16:32:30
Detected languages English - United States
Debug artifacts C:\Users\sun\source\repos\sunone_aimbot_cpp\x64\DML\ai.pdb

Plugin Output

Info Interesting strings found in the binary: Contains domain names:
  • github.com
  • https://github.com
Info Cryptographic algorithms detected in the binary: Uses constants related to CRC32
Uses known Mersenne Twister constants
Malicious The PE contains functions mostly used by malware. [!] The program may be hiding some of its imports:
  • LoadLibraryExW
  • GetProcAddress
  • LoadLibraryA
Can access the registry:
  • RegEnumValueA
  • RegCloseKey
  • RegOpenKeyExA
  • RegQueryValueExA
Possibly launches other programs:
  • ShellExecuteW
  • ShellExecuteA
Uses functions commonly found in keyloggers:
  • GetAsyncKeyState
  • GetForegroundWindow
Leverages the raw socket API to access the Internet:
  • WS2_32.dll
Reads the contents of the clipboard:
  • GetClipboardData
Malicious VirusTotal score: 13/72 (Scanned on 2026-04-18 02:24:01) ALYac: Gen:Variant.Tedy.927633
APEX: Malicious
Arcabit: Trojan.Tedy.DE2791
BitDefender: Gen:Variant.Tedy.927633
CTX: exe.trojan.tedy
DeepInstinct: MALICIOUS
Emsisoft: Gen:Variant.Tedy.927633 (B)
GData: Gen:Variant.Tedy.927633
Google: Detected
Ikarus: Trojan.Win64.Krypt
MicroWorld-eScan: Gen:Variant.Tedy.927633
TrendMicro-HouseCall: TROJ_GEN.R002H09D226
VIPRE: Gen:Variant.Tedy.927633

Hashes

MD5 bf405fb6de33bcae5011742a3171c8d5 🔍
SHA1 fbee29dede5c32b3db68ea00c18b78dccea73bb2 🔍
SHA256 46cb14ca8a6bc7df87a0dbc21d6138631b83df8a35d98d089931608b71437d26 🔍
SHA3 b3ff116da5b45eb42e01b5b7d6e1a20156b2ff934e05acdf967ceb0bc9d3a9ab 🔍
SSDeep 24576:KUOpYGllZbPLn0JYJLuHkzM3bqctK7Ro9vQvsnCl/wDEm:K7pYGVLqYJL9zM3b/tdNfnCVwDEm 🔍
Imports Hash 4d3217a9f3c5d1c8c2a8064bc1f0383a 🔍

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0x120

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_AMD64
NumberofSections 7
TimeDateStamp 2026-Feb-22 16:32:30
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xf0
Characteristics IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE

Image Optional Header

Magic PE32+
LinkerVersion 14.0
SizeOfCode 0x102600
SizeOfInitializedData 0xa0e00
SizeOfUninitializedData 0
AddressOfEntryPoint 0x00000000000C763C (Section: .text)
BaseOfCode 0x1000
ImageBase 0x140000000
SectionAlignment 0x1000
FileAlignment 0x200
OperatingSystemVersion 6.0
ImageVersion 0.0
SubsystemVersion 6.0
Win32VersionValue 0
SizeOfImage 0x1a8000
SizeOfHeaders 0x400
Checksum 0
Subsystem IMAGE_SUBSYSTEM_WINDOWS_CUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x100000
SizeofStackCommit 0x1000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 362b0703ffa4a3684b69b24df15dff1a 🔍
SHA1 1d34d5c69590e45562c4c337f5a3f8768b107ab4 🔍
SHA256 da33c06a3452a792af87bb4ff0ad7b81398a069c88266ae107872a84593ebe93 🔍
SHA3 73c8c0ae49be5751f9409e627dab0de137bb8da9a73fc0a56e6f4d51ed646199 🔍
VirtualSize 0x102590
VirtualAddress 0x1000
SizeOfRawData 0x102600
PointerToRawData 0x400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.51786

.rdata

MD5 37dfd3fc3711a9116ba085d994126dee 🔍
SHA1 103af6841856844314fc2f6c9d99fcbd40ccf199 🔍
SHA256 0a9a9c56181d506e2fd18d734cef0855bcbae2c220972d43d2bdd634e305c31f 🔍
SHA3 45d9e99a45ec69e3e6de433f18b6cb5c092cad2d4630c494a0c3a59375e06267 🔍
VirtualSize 0x40218
VirtualAddress 0x104000
SizeOfRawData 0x40400
PointerToRawData 0x102a00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 6.01887

.data

MD5 497593265371f2b5ef0848846ac9715b 🔍
SHA1 593f66a90197004de8eebb6507781d24bdb6c971 🔍
SHA256 fbdcd389de989c6bb1f4fcbce98d48aab570a10743d0dd86377099954682ff9e 🔍
SHA3 52d2f46a134d0e524dc1d571f6b4671612672aee36091b1a9424067f2d9ba022 🔍
VirtualSize 0x54884
VirtualAddress 0x145000
SizeOfRawData 0xde00
PointerToRawData 0x142e00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 6.33332

.pdata

MD5 6d4f77075a153d3586a6679a64827d46 🔍
SHA1 d27b3d57b78a14ec8b2b447def47eb17218acd4b 🔍
SHA256 64f16d8e472e73c479e990cbc6b1649281f0ef418314cf851aeddf61bf6d90cc 🔍
SHA3 cf8e1d7403a6c44f5f86ad6e83c63fd3de5716c0c3e85dff5265cc7a5064d6d9 🔍
VirtualSize 0xabe4
VirtualAddress 0x19a000
SizeOfRawData 0xac00
PointerToRawData 0x150c00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 6.10955

.fptable

MD5 bf619eac0cdf3f68d496ea9344137e8b 🔍
SHA1 5c3eb80066420002bc3dcc7ca4ab6efad7ed4ae5 🔍
SHA256 076a27c79e5ace2a3d47f9dd2e83e4ff6ea8872b3c2218f66c92b89b55f36560 🔍
SHA3 622de1e1568ddef36c4b89b706b05201c13481c3575d0fc804ff8224787fcb59 🔍
VirtualSize 0x100
VirtualAddress 0x1a5000
SizeOfRawData 0x200
PointerToRawData 0x15b800
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 0

.rsrc

MD5 6e461b9f1d3ccbe56a179c1b926d12ee 🔍
SHA1 ffa61c546d623cbeee463656bd222175a435fd30 🔍
SHA256 8f9b9eb2a19cf3d7a38fa7505c38f38053da22115b502e80fd40e8339d41d088 🔍
SHA3 1d9d9d075815399f58a929b8602ad2933a8ccbf40dee5eca00f266832a964f05 🔍
VirtualSize 0x1e0
VirtualAddress 0x1a6000
SizeOfRawData 0x200
PointerToRawData 0x15ba00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 4.71377

.reloc

MD5 5a5eb5af34e540693820f6edcf18763b 🔍
SHA1 2dac77697ae2d0a54d1dafdf41ec2cd26ba07e97 🔍
SHA256 60edd48e22efbc40c2355e826f5d9add13302c0fda518a97af816ed8f1fb60db 🔍
SHA3 b08b71854d760a104f78dbf340737ab12efeea419920b74776b8ed2bd22cddd0 🔍
VirtualSize 0xf98
VirtualAddress 0x1a7000
SizeOfRawData 0x1000
PointerToRawData 0x15bc00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy 5.39493

Imports

opencv_world4130.dll ?empty@Mat@cv@@QEBA_NXZ
?minMaxLoc@cv@@YAXAEBV_InputArray@1@PEAN1PEAV?$Point_@H@1@20@Z
?noArray@cv@@YAAEBV_InputOutputArray@1@XZ
??0Mat@cv@@QEAA@AEBV01@AEBVRange@1@1@Z
??0Mat@cv@@QEAA@HHHPEAX_K@Z
?setLogLevel@logging@utils@cv@@YA?AW4LogLevel@123@W44123@@Z
?getBuildInformation@cv@@YAAEBV?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@XZ
?copyTo@Mat@cv@@QEBAXAEBV_OutputArray@2@@Z
?convertTo@Mat@cv@@QEBAXAEBV_OutputArray@2@HNN@Z
?cvtColor@cv@@YAXAEBV_InputArray@1@AEBV_OutputArray@1@HHW4AlgorithmHint@1@@Z
??0VideoCapture@cv@@QEAA@HH@Z
??0VideoCapture@cv@@QEAA@XZ
??1VideoCapture@cv@@UEAA@XZ
?isOpened@VideoCapture@cv@@UEBA_NXZ
?release@VideoCapture@cv@@UEAAXXZ
?check_failed_auto@detail@cv@@YAX_K0AEBUCheckContext@12@@Z
?imdecode@cv@@YA?AVMat@1@AEBV_InputArray@1@H@Z
??0Mat@cv@@QEAA@HHH@Z
?circle@cv@@YAXAEBV_InputOutputArray@1@V?$Point_@H@1@HAEBV?$Scalar_@N@1@HHH@Z
?copyTo@Mat@cv@@QEBAXAEBV_OutputArray@2@AEBV_InputArray@2@@Z
?zeros@Mat@cv@@SA?AVMatExpr@2@V?$Size_@H@2@H@Z
?resize@cv@@YAXAEBV_InputArray@1@AEBV_OutputArray@1@V?$Size_@H@1@NNH@Z
??0Mat@cv@@QEAA@$$QEAV01@@Z
??0Mat@cv@@QEAA@AEBV01@AEBV?$Rect_@H@1@@Z
??0Mat@cv@@QEAA@AEBV01@@Z
??0Mat@cv@@QEAA@XZ
??1Mat@cv@@QEAA@XZ
??4Mat@cv@@QEAAAEAV01@$$QEAV01@@Z
??4Mat@cv@@QEAAAEAV01@AEBV01@@Z
?clone@Mat@cv@@QEBA?AV12@XZ
?release@Mat@cv@@QEAAXXZ
?imwrite@cv@@YA_NAEBV?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@AEBV_InputArray@1@AEBV?$vector@HV?$allocator@H@std@@@3@@Z
api-ms-win-mm-time-l1-1-0.dll timeBeginPeriod
timeEndPeriod
dxgi.dll CreateDXGIFactory1
d3d11.dll CreateDirect3D11DeviceFromDXGIDevice
D3D11CreateDevice
WS2_32.dll WSAGetLastError
inet_addr
htons
WSACleanup
setsockopt
bind
closesocket
sendto
ioctlsocket
inet_pton
WSAStartup
recvfrom
socket
OLEAUT32.dll SysFreeString
GetErrorInfo
SetErrorInfo
SysStringLen
VariantInit
VariantClear
api-ms-win-core-com-l1-1-0.dll CoCreateInstance
CoInitializeEx
CoUninitialize
api-ms-win-core-string-l1-1-0.dll MultiByteToWideChar
CompareStringW
GetStringTypeW
WideCharToMultiByte
api-ms-win-ntuser-sysparams-l1-1-0.dll GetMonitorInfoW
GetSystemMetrics
EnumDisplayMonitors
api-ms-win-core-heap-l2-1-0.dll LocalAlloc
GlobalFree
LocalFree
GlobalAlloc
api-ms-win-core-heap-obsolete-l1-1-0.dll GlobalUnlock
GlobalLock
D3DCOMPILER_47.dll D3DCompile
api-ms-win-core-libraryloader-l1-2-0.dll FreeLibraryAndExitThread
LoadLibraryExW
GetModuleFileNameA
GetProcAddress
GetModuleHandleW
GetModuleHandleExW
GetModuleFileNameW
FreeLibrary
api-ms-win-core-localization-l1-2-0.dll FormatMessageA
GetLocaleInfoA
FormatMessageW
GetCPInfo
LCMapStringEx
IsValidCodePage
EnumSystemLocalesW
GetUserDefaultLCID
IsValidLocale
GetACP
GetLocaleInfoEx
LCMapStringW
GetLocaleInfoW
GetOEMCP
api-ms-win-core-libraryloader-l1-2-1.dll LoadLibraryA
api-ms-win-core-profile-l1-1-0.dll QueryPerformanceFrequency
QueryPerformanceCounter
api-ms-win-core-sysinfo-l1-2-0.dll VerSetConditionMask
GetSystemTimePreciseAsFileTime
api-ms-win-core-processtopology-obsolete-l1-1-0.dll SetThreadAffinityMask
api-ms-win-core-processthreads-l1-1-0.dll ExitProcess
GetExitCodeThread
ExitThread
TerminateProcess
GetStartupInfoW
CreateThread
GetCurrentThread
GetCurrentProcessId
GetCurrentThreadId
SetThreadPriority
GetCurrentProcess
SetPriorityClass
api-ms-win-core-errorhandling-l1-1-0.dll SetLastError
RaiseException
SetUnhandledExceptionFilter
GetLastError
UnhandledExceptionFilter
api-ms-win-core-file-l1-1-0.dll FindFirstFileExW
FindNextFileW
FlushFileBuffers
GetFileType
FindFirstFileW
GetFullPathNameW
FindClose
CreateFileA
SetFilePointerEx
WriteFile
ReadFile
GetFileAttributesExW
CreateDirectoryW
GetFileSizeEx
SetEndOfFile
api-ms-win-core-registry-l1-1-0.dll RegEnumValueA
RegCloseKey
RegOpenKeyExA
RegQueryValueExA
api-ms-win-core-comm-l1-1-0.dll SetCommState
SetCommTimeouts
ClearCommError
GetCommState
api-ms-win-core-handle-l1-1-0.dll CloseHandle
api-ms-win-core-io-l1-1-1.dll CancelIo
api-ms-win-core-io-l1-1-0.dll DeviceIoControl
GetOverlappedResult
api-ms-win-core-synch-l1-1-0.dll WaitForSingleObjectEx
CreateEventW
EnterCriticalSection
LeaveCriticalSection
InitializeCriticalSectionEx
DeleteCriticalSection
TryAcquireSRWLockExclusive
AcquireSRWLockExclusive
ReleaseSRWLockExclusive
CreateMutexA
ReleaseMutex
WaitForSingleObject
ResetEvent
api-ms-win-core-synch-l1-2-0.dll WakeAllConditionVariable
InitOnceBeginInitialize
InitOnceComplete
Sleep
WakeConditionVariable
SleepConditionVariableSRW
DWrite.dll DWriteCreateFactory
d2d1.dll #1
api-ms-win-core-largeinteger-l1-1-0.dll MulDiv
api-ms-win-core-kernel32-legacy-l1-1-1.dll VerifyVersionInfoW
api-ms-win-core-console-l2-2-0.dll SetConsoleTitleW
api-ms-win-core-console-l2-1-0.dll SetConsoleOutputCP
SETUPAPI.dll SetupDiGetClassDevsW
SetupDiDestroyDeviceInfoList
SetupDiOpenDevRegKey
SetupDiEnumDeviceInfo
SetupDiGetDeviceRegistryPropertyA
SetupDiGetClassDevsA
SetupDiEnumDeviceInterfaces
SetupDiGetDeviceInterfaceDetailA
KERNEL32.dll CreateFileW
USER32.dll GetAsyncKeyState
GetKeyState
GetMessageExtraInfo
MonitorFromWindow
DestroyWindow
GetCapture
PostMessageW
ClientToScreen
TrackMouseEvent
DefWindowProcW
GetKeyboardLayout
GetForegroundWindow
LoadCursorW
SetCapture
SetCursor
GetClientRect
SendInput
ReleaseCapture
SetForegroundWindow
SetCursorPos
GetCursorPos
OpenClipboard
CloseClipboard
EmptyClipboard
GetClipboardData
SetClipboardData
IsWindowVisible
EnumWindows
GetWindowTextW
SetWindowLongW
SetLayeredWindowAttributes
GetWindowRect
MonitorFromPoint
AdjustWindowRectEx
GetWindowLongW
PostQuitMessage
SetWindowDisplayAffinity
PeekMessageW
DispatchMessageW
ShowWindow
RegisterClassExW
GetWindowLongPtrW
UnregisterClassW
CreateWindowExW
SetWindowLongPtrW
IsWindowUnicode
SetWindowPos
ScreenToClient
TranslateMessage
COMDLG32.dll GetOpenFileNameA
SHELL32.dll ShellExecuteW
ShellExecuteA
onnxruntime.dll #4
#1
IMM32.dll ImmReleaseContext
ImmSetCandidateWindow
ImmSetCompositionWindow
ImmGetContext
dwmapi.dll DwmIsCompositionEnabled
DwmExtendFrameIntoClientArea
DwmGetWindowAttribute
dcomp.dll DCompositionCreateDevice
api-ms-win-core-processenvironment-l1-1-0.dll GetStdHandle
GetCommandLineA
SetStdHandle
GetCommandLineW
GetEnvironmentStringsW
FreeEnvironmentStringsW
SetEnvironmentVariableW
SetCurrentDirectoryW
api-ms-win-core-file-l1-2-0.dll CreateFile2
api-ms-win-core-file-l1-2-2.dll AreFileApisANSI
api-ms-win-core-file-l2-1-0.dll GetFileInformationByHandleEx
api-ms-win-core-sysinfo-l1-1-0.dll GetTickCount64
GetSystemTimeAsFileTime
api-ms-win-core-rtlsupport-l1-1-0.dll RtlLookupFunctionEntry
RtlUnwindEx
RtlUnwind
RtlCaptureContext
RtlPcToFileHeader
RtlVirtualUnwind
api-ms-win-core-threadpool-l1-2-0.dll CloseThreadpoolWork
SubmitThreadpoolWork
CreateThreadpoolWork
FreeLibraryWhenCallbackReturns
api-ms-win-core-util-l1-1-0.dll EncodePointer
DecodePointer
api-ms-win-core-interlocked-l1-1-0.dll InterlockedPushEntrySList
InitializeSListHead
api-ms-win-core-fibers-l1-1-0.dll FlsGetValue
FlsAlloc
FlsFree
FlsSetValue
api-ms-win-core-processthreads-l1-1-1.dll IsProcessorFeaturePresent
api-ms-win-core-debug-l1-1-0.dll IsDebuggerPresent
api-ms-win-core-console-l1-1-0.dll GetConsoleMode
WriteConsoleW
GetConsoleOutputCP
ReadConsoleW
api-ms-win-core-heap-l1-1-0.dll HeapFree
GetProcessHeap
HeapSize
HeapReAlloc
HeapAlloc
api-ms-win-core-memory-l1-1-0.dll VirtualProtect
api-ms-win-core-winrt-error-l1-1-1.dll RoOriginateLanguageException
api-ms-win-core-winrt-l1-1-0.dll RoGetActivationFactory

Delayed Imports

hid_close

Ordinal 1
Address 0x7e880

hid_enumerate

Ordinal 2
Address 0x7d780

hid_error

Ordinal 3
Address 0x7ed90

hid_exit

Ordinal 4
Address 0x7d750

hid_free_enumeration

Ordinal 5
Address 0x7dc60

hid_get_feature_report

Ordinal 6
Address 0x7e680

hid_get_indexed_string

Ordinal 7
Address 0x7ec60

hid_get_manufacturer_string

Ordinal 8
Address 0x7e8d0

hid_get_product_string

Ordinal 9
Address 0x7ea00

hid_get_serial_number_string

Ordinal 10
Address 0x7eb30

hid_init

Ordinal 11
Address 0x7d560

hid_open

Ordinal 12
Address 0x7dcc0

hid_open_path

Ordinal 13
Address 0x7dd80

hid_read

Ordinal 14
Address 0x7e540

hid_read_timeout

Ordinal 15
Address 0x7e2f0

hid_send_feature_report

Ordinal 16
Address 0x7e560

hid_set_nonblocking

Ordinal 17
Address 0x7e550

hid_write

Ordinal 18
Address 0x7e0c0

hid_write2

Ordinal 19
Address 0x7e0b0

1

Type RT_MANIFEST
Language English - United States
Codepage UNKNOWN
Size 0x17d
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.91161
MD5 1e4a89b11eae0fcf8bb5fdd5ec3b6f61 🔍
SHA1 4260284ce14278c397aaf6f389c1609b0ab0ce51 🔍
SHA256 4bb79dcea0a901f7d9eac5aa05728ae92acb42e0cb22e5dd14134f4421a3d8df 🔍
SHA3 4bb9e8b5a714cae82782f3831cc2d45f4bf4a50a755fe584d2d1893129d68353 🔍

Version Info

IMAGE_DEBUG_TYPE_CODEVIEW

Characteristics 0
TimeDateStamp 2026-Feb-22 16:32:30
Version 0.0
SizeofData 83
AddressOfRawData 0x12da10
PointerToRawData 0x12c410
Referenced File C:\Users\sun\source\repos\sunone_aimbot_cpp\x64\DML\ai.pdb

IMAGE_DEBUG_TYPE_VC_FEATURE

Characteristics 0
TimeDateStamp 2026-Feb-22 16:32:30
Version 0.0
SizeofData 20
AddressOfRawData 0x12da64
PointerToRawData 0x12c464

IMAGE_DEBUG_TYPE_POGO

Characteristics 0
TimeDateStamp 2026-Feb-22 16:32:30
Version 0.0
SizeofData 1068
AddressOfRawData 0x12da78
PointerToRawData 0x12c478

IMAGE_DEBUG_TYPE_ILTCG

Characteristics 0
TimeDateStamp 2026-Feb-22 16:32:30
Version 0.0
SizeofData 0
AddressOfRawData 0
PointerToRawData 0

TLS Callbacks

StartAddressOfRawData 0x14012df00
EndAddressOfRawData 0x14012df30
AddressOfIndex 0x14015390c
AddressOfCallbacks 0x140104dc0
SizeOfZeroFill 0
Characteristics IMAGE_SCN_ALIGN_8BYTES
Callbacks (EMPTY)

Load Configuration

Size 0x140
TimeDateStamp 1970-Jan-01 00:00:00
Version 0.0
GlobalFlagsClear (EMPTY)
GlobalFlagsSet (EMPTY)
CriticalSectionDefaultTimeout 0
DeCommitFreeBlockThreshold 0
DeCommitTotalFreeThreshold 0
LockPrefixTable 0
MaximumAllocationSize 0
VirtualMemoryThreshold 0
ProcessAffinityMask 0
ProcessHeapFlags (EMPTY)
CSDVersion 0
Reserved1 0
EditList 0
SecurityCookie 0x140145300

RICH Header

XOR Key 0x6782762a
Unmarked objects 0
C++ objects (33145) 186
ASM objects (33145) 32
C objects (35403) 17
ASM objects (35403) 12
C++ objects (35403) 105
Imports (33820) 2
C objects (33145) 39
Imports (33145) 18
Imports (VS2008 SP1 build 30729) 106
Imports (33523) 3
Total imports 328
C++ objects (LTCG) (35724) 52
Exports (35724) 1
Resource objects (35724) 1
Linker (35724) 1

Errors

Leave a comment

No comments yet.