| Architecture |
IMAGE_FILE_MACHINE_I386
|
|---|---|
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| Compilation Date | 2019-Mar-12 06:51:21 |
| Detected languages |
English - United States
Japanese - Japan Process Default Language |
| Debug artifacts |
C:\dev\dmc4\devil4\Devil4\buildout\MasterReleaseDX10Win32\out\Devil4_MasterReleaseDX10.pdb
|
| CompanyName | CAPCOM CO., LTD. |
| FileDescription | DEVIL MAY CRY 4 Special Edition |
| FileVersion | 1, 0, 0, 0 |
| InternalName | DEVIL MAY CRY 4 Special Edition |
| LegalCopyright | (C)CAPCOM CO., LTD. 2008,2015 ALL RIGHTS RESERVED. |
| OriginalFilename | DevilMayCry4SpecialEdition.exe |
| ProductName | DEVIL MAY CRY 4 Special Edition |
| ProductVersion | 1, 0, 0, 0 |
| Info | Matching compiler(s): |
Microsoft Visual C++ v6.0 DLL
Microsoft Visual C++ 6.0 - 8.0 MASM/TASM - sig1(h) |
| Suspicious | Strings found in the binary may indicate undesirable behavior: |
Tries to detect virtualized environments:
|
| Info | Cryptographic algorithms detected in the binary: |
Uses constants related to CRC32
Uses constants related to AES Uses constants related to Blowfish Uses constants related to DES |
| Suspicious | The PE contains functions most legitimate programs don't use. |
[!] The program may be hiding some of its imports:
|
| Malicious | The PE's digital signature is invalid. |
Signer: CAPCOM CO.
Issuer: DigiCert SHA2 Assured ID Code Signing CA The file was modified after it was signed. |
| Safe | VirusTotal score: 0/72 (Scanned on 2026-03-01 15:52:42) | All the AVs think this file is safe. |
| e_magic | MZ |
|---|---|
| e_cblp | 0x90 |
| e_cp | 0x3 |
| e_crlc | 0 |
| e_cparhdr | 0x4 |
| e_minalloc | 0 |
| e_maxalloc | 0xffff |
| e_ss | 0 |
| e_sp | 0xb8 |
| e_csum | 0 |
| e_ip | 0 |
| e_cs | 0 |
| e_ovno | 0 |
| e_oemid | 0 |
| e_oeminfo | 0 |
| e_lfanew | 0x150 |
| Signature | PE |
|---|---|
| Machine |
IMAGE_FILE_MACHINE_I386
|
| NumberofSections | 4 |
| TimeDateStamp | 2019-Mar-12 06:51:21 |
| PointerToSymbolTable | 0 |
| NumberOfSymbols | 0 |
| SizeOfOptionalHeader | 0xe0 |
| Characteristics |
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_RELOCS_STRIPPED
|
| Magic | PE32 |
|---|---|
| LinkerVersion | 11.0 |
| SizeOfCode | 0xb24e00 |
| SizeOfInitializedData | 0x440c00 |
| SizeOfUninitializedData | 0 |
| AddressOfEntryPoint | 0x00A84338 (Section: .text) |
| BaseOfCode | 0x1000 |
| BaseOfData | 0xb26000 |
| ImageBase | 0x400000 |
| SectionAlignment | 0x1000 |
| FileAlignment | 0x200 |
| OperatingSystemVersion | 6.0 |
| ImageVersion | 0.0 |
| SubsystemVersion | 6.0 |
| Win32VersionValue | 0 |
| SizeOfImage | 0xf68000 |
| SizeOfHeaders | 0x400 |
| Checksum | 0xed46f3 |
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| DllCharacteristics |
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
|
| SizeofStackReserve | 0x100000 |
| SizeofStackCommit | 0x1000 |
| SizeofHeapReserve | 0x100000 |
| SizeofHeapCommit | 0x1000 |
| LoaderFlags | 0 |
| NumberOfRvaAndSizes | 16 |
| KERNEL32.dll |
SystemTimeToFileTime
CompareFileTime WriteFile ReadFile CreateDirectoryA QueryPerformanceFrequency SetThreadExecutionState GetDateFormatA SetEnvironmentVariableA CreateFileW WriteConsoleW GetStringTypeW CloseHandle CompareStringW OutputDebugStringW GetConsoleCP FlushFileBuffers SetStdHandle MoveFileExW GetFileSize VirtualQuery LoadLibraryExW GetTimeZoneInformation GetModuleHandleW TlsFree TlsSetValue TlsGetValue TlsAlloc SetUnhandledExceptionFilter UnhandledExceptionFilter FreeEnvironmentStringsW GetEnvironmentStringsW QueryPerformanceCounter GetCPInfo GetOEMCP GetACP IsValidCodePage SetLastError GetModuleFileNameW HeapSize GetDiskFreeSpaceExA LCMapStringW GetLocalTime GetStartupInfoW InitializeCriticalSectionAndSpinCount CreateFileA lstrcpyA lstrlenA GetCurrentDirectoryA SetCurrentDirectoryA GetFileAttributesA ExpandEnvironmentStringsA DeleteCriticalSection InitializeCriticalSection GetFileType GetUserDefaultLangID ReadConsoleW GetConsoleMode SetFilePointerEx HeapReAlloc RtlUnwind AreFileApisANSI GetModuleHandleExW GetSystemTimeAsFileTime DecodePointer EncodePointer IsProcessorFeaturePresent GetProcessHeap HeapAlloc HeapFree GlobalFree GetModuleHandleA InterlockedDecrement InterlockedIncrement EnterCriticalSection DeleteFileW LeaveCriticalSection VirtualAlloc VirtualFree Sleep DeleteFileA FileTimeToLocalFileTime FindClose FindFirstFileA FindNextFileA GetDiskFreeSpaceA ReadFileEx RemoveDirectoryA SetEndOfFile SetFilePointer GetLastError SleepEx GetModuleFileNameA CopyFileA MoveFileA FileTimeToSystemTime InterlockedExchangeAdd InterlockedCompareExchange GetCurrentThreadId GetPrivateProfileStringA WritePrivateProfileStringA GlobalAlloc GlobalLock GlobalUnlock TryEnterCriticalSection SetEvent ResetEvent WaitForSingleObject CreateEventA CreateThread ResumeThread FreeLibrary GetProcAddress LoadLibraryA WideCharToMultiByte DebugBreak ReleaseSemaphore GetCurrentProcessId GetExitCodeThread SetThreadIdealProcessor WaitForMultipleObjects CreateSemaphoreA GetCommandLineA IsDebuggerPresent ReleaseMutex CreateMutexA RaiseException ExitProcess SetThreadPriority GetSystemInfo VerSetConditionMask VerifyVersionInfoA InterlockedExchange LoadLibraryW MultiByteToWideChar GetStdHandle GetCurrentProcess TerminateProcess CreateProcessA |
|---|---|
| USER32.dll |
MessageBoxW
GetSystemMetrics GetPropA DefWindowProcA ScreenToClient ClientToScreen GetCursorPos GetAsyncKeyState UnregisterHotKey RegisterHotKey SendMessageA SystemParametersInfoA LoadIconW LoadIconA LoadCursorA FindWindowW ClipCursor SetCursor ShowCursor MessageBoxA RemovePropA SetPropA EndPaint BeginPaint UpdateWindow DeleteMenu EnableMenuItem GetSystemMenu LoadAcceleratorsA IsIconic GetWindowThreadProcessId CloseClipboard SetClipboardData EmptyClipboard ShowWindow SetWindowPos SetForegroundWindow GetClientRect GetWindowRect AdjustWindowRect SetWindowLongA TranslateMessage DispatchMessageW PeekMessageA SendMessageW DefWindowProcW PostQuitMessage RegisterClassExA RegisterClassExW CreateWindowExA CreateWindowExW DestroyWindow |
| SHELL32.dll |
SHGetFolderPathA
ShellExecuteA DragAcceptFiles |
| PSAPI.DLL |
GetModuleFileNameExA
|
| IMM32.dll |
ImmGetCompositionStringA
ImmReleaseContext ImmGetDefaultIMEWnd ImmGetContext |
| d3d10.dll |
D3D10CreateDeviceAndSwapChain
D3D10DisassembleShader D3D10ReflectShader |
| DINPUT8.dll |
DirectInput8Create
|
| XINPUT1_3.dll |
#2
#5 #3 #4 |
| steam_api.dll |
SteamAPI_IsSteamRunning
SteamAPI_RegisterCallback SteamAPI_GetHSteamPipe SteamAPI_GetHSteamUser SteamInternal_CreateInterface SteamInternal_ContextInit SteamAPI_RegisterCallResult SteamAPI_UnregisterCallback SteamAPI_UnregisterCallResult SteamAPI_Init SteamAPI_Shutdown SteamAPI_RestartAppIfNecessary SteamAPI_RunCallbacks |
| WS2_32.dll |
WSAStartup
WSACleanup |
| IPHLPAPI.DLL |
GetIfEntry
GetAdaptersAddresses |
| MSVFW32.dll |
ICCompressorFree
ICCompressorChoose |
| AVIFIL32.dll |
AVIStreamRelease
AVIStreamSetFormat AVIFileOpenA AVIFileRelease AVIFileExit AVIFileInit AVIStreamWrite AVIMakeCompressedStream AVIFileCreateStreamA |
| WINMM.dll |
timeGetTime
timeEndPeriod timeBeginPeriod |
| WMVCore.DLL |
WMCreateSyncReader
WMCreateWriter WMCreateProfileManager |
| gdiplus.dll |
GdipCloneImage
GdipLoadImageFromFile GdipDisposeImage GdiplusStartup GdipFree GdipSaveImageToFile GdipGetImageEncodersSize GdipGetImageEncoders GdiplusShutdown GdipAlloc |
| GDI32.dll |
GetStockObject
|
| ADVAPI32.dll |
RegCloseKey
RegQueryValueExA RegOpenKeyExA |
| ole32.dll |
CoSetProxyBlanket
CoTaskMemAlloc CoTaskMemFree CoCreateInstance CoInitialize CoUninitialize |
| OLEAUT32.dll |
SysAllocString
SysFreeString |
| Signature | 0xfeef04bd |
|---|---|
| StructVersion | 0x10000 |
| FileVersion | 1.0.0.0 |
| ProductVersion | 1.0.0.0 |
| FileFlags | (EMPTY) |
| FileOs |
VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
|
| FileType |
VFT_APP
|
| Language | Process Default Language |
| CompanyName | CAPCOM CO., LTD. |
| FileDescription | DEVIL MAY CRY 4 Special Edition |
| FileVersion (#2) | 1, 0, 0, 0 |
| InternalName | DEVIL MAY CRY 4 Special Edition |
| LegalCopyright | (C)CAPCOM CO., LTD. 2008,2015 ALL RIGHTS RESERVED. |
| OriginalFilename | DevilMayCry4SpecialEdition.exe |
| ProductName | DEVIL MAY CRY 4 Special Edition |
| ProductVersion (#2) | 1, 0, 0, 0 |
| Resource LangID | Japanese - Japan |
|---|
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2019-Mar-12 06:51:21 |
| Version | 0.0 |
| SizeofData | 115 |
| AddressOfRawData | 0xc4b660 |
| PointerToRawData | 0xc4a860 |
| Referenced File | C:\dev\dmc4\devil4\Devil4\buildout\MasterReleaseDX10Win32\out\Devil4_MasterReleaseDX10.pdb |
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2019-Mar-12 06:51:21 |
| Version | 0.0 |
| SizeofData | 16 |
| AddressOfRawData | 0xc4b6d4 |
| PointerToRawData | 0xc4a8d4 |
| Size | 0x48 |
|---|---|
| TimeDateStamp | 1970-Jan-01 00:00:00 |
| Version | 0.0 |
| GlobalFlagsClear | (EMPTY) |
| GlobalFlagsSet | (EMPTY) |
| CriticalSectionDefaultTimeout | 0 |
| DeCommitFreeBlockThreshold | 0 |
| DeCommitTotalFreeThreshold | 0 |
| LockPrefixTable | 0 |
| MaximumAllocationSize | 0 |
| VirtualMemoryThreshold | 0 |
| ProcessAffinityMask | 0 |
| ProcessHeapFlags | (EMPTY) |
| CSDVersion | 0 |
| Reserved1 | 0 |
| EditList | 0 |
| SecurityCookie | 0x1065ef8 |
| SEHandlerTable | 0x104b9e0 |
| SEHandlerCount | 4 |
| XOR Key | 0x50aa62c2 |
|---|---|
| Unmarked objects | 0 |
| 199 (41118) | 3 |
| ASM objects (50929) | 55 |
| C objects (50929) | 196 |
| 191 (30716) | 1 |
| 221 (VS2013 UPD5 build 40629) | 2 |
| C objects (VS2008 build 21022) | 21 |
| Imports (VS2010 build 30319) | 2 |
| C++ objects (VS2010 build 30319) | 3 |
| Imports (VS2008 SP1 build 30729) | 2 |
| C objects (VS2008 SP1 build 30729) | 3 |
| Imports (VS2012 build 50727 / VS2005 build 50727) | 2 |
| C++ objects (50929) | 61 |
| C objects (61219) | 6 |
| C++ objects (61219) | 385 |
| 188 (30716) | 3 |
| 190 (30716) | 2 |
| Total imports | 347 |
| 185 (30716) | 37 |
| 211 (61219) | 999 |
| Resource objects (VS2012 UPD4 build 61030) | 1 |
| 151 | 1 |
| Linker (VS2012 UPD4 build 61030) | 1 |
No comments yet.