| Architecture |
IMAGE_FILE_MACHINE_I386
|
|---|---|
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| Compilation Date | 2003-Nov-16 16:48:29 |
| Info | Matching compiler(s): |
Microsoft Visual C++ v6.0 DLL
Microsoft Visual C++ 6.0 DLL (Debug) Microsoft Visual C++ 6.0 - 8.0 Microsoft Visual C++ Microsoft Visual C++ v6.0 |
| Info | The PE contains common functions which appear in legitimate applications. |
[!] The program may be hiding some of its imports:
|
| Safe | VirusTotal score: 0/71 (Scanned on 2026-03-06 16:50:43) | All the AVs think this file is safe. |
| e_magic | MZ |
|---|---|
| e_cblp | 0x90 |
| e_cp | 0x3 |
| e_crlc | 0 |
| e_cparhdr | 0x4 |
| e_minalloc | 0 |
| e_maxalloc | 0xffff |
| e_ss | 0 |
| e_sp | 0xb8 |
| e_csum | 0 |
| e_ip | 0 |
| e_cs | 0 |
| e_ovno | 0 |
| e_oemid | 0 |
| e_oeminfo | 0 |
| e_lfanew | 0xd0 |
| Signature | PE |
|---|---|
| Machine |
IMAGE_FILE_MACHINE_I386
|
| NumberofSections | 4 |
| TimeDateStamp | 2003-Nov-16 16:48:29 |
| PointerToSymbolTable | 0 |
| NumberOfSymbols | 0 |
| SizeOfOptionalHeader | 0xe0 |
| Characteristics |
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_DLL
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LINE_NUMS_STRIPPED
IMAGE_FILE_LOCAL_SYMS_STRIPPED
|
| Magic | PE32 |
|---|---|
| LinkerVersion | 6.0 |
| SizeOfCode | 0xa000 |
| SizeOfInitializedData | 0x6000 |
| SizeOfUninitializedData | 0 |
| AddressOfEntryPoint | 0x00004C98 (Section: .text) |
| BaseOfCode | 0x1000 |
| BaseOfData | 0xb000 |
| ImageBase | 0x10000000 |
| SectionAlignment | 0x1000 |
| FileAlignment | 0x1000 |
| OperatingSystemVersion | 4.0 |
| ImageVersion | 0.0 |
| SubsystemVersion | 4.0 |
| Win32VersionValue | 0 |
| SizeOfImage | 0x11000 |
| SizeOfHeaders | 0x1000 |
| Checksum | 0 |
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| SizeofStackReserve | 0x100000 |
| SizeofStackCommit | 0x1000 |
| SizeofHeapReserve | 0x100000 |
| SizeofHeapCommit | 0x1000 |
| LoaderFlags | 0 |
| NumberOfRvaAndSizes | 16 |
| ogg.dll |
ogg_sync_clear
ogg_stream_init ogg_sync_wrote ogg_sync_buffer ogg_sync_init ogg_stream_packetout ogg_stream_pagein ogg_stream_reset_serialno ogg_page_serialno ogg_sync_pageseek ogg_sync_reset ogg_page_granulepos ogg_page_eos ogg_stream_reset ogg_page_continued ogg_stream_packetpeek ogg_stream_clear |
|---|---|
| vorbis.dll |
vorbis_synthesis_headerin
vorbis_block_clear vorbis_comment_init vorbis_info_clear vorbis_comment_clear vorbis_info_init vorbis_packet_blocksize vorbis_synthesis_halfrate vorbis_synthesis_halfrate_p vorbis_synthesis_restart vorbis_synthesis_read vorbis_synthesis_pcmout vorbis_synthesis_blockin vorbis_synthesis_trackonly vorbis_info_blocksize vorbis_block_init vorbis_synthesis_init vorbis_synthesis _analysis_output_always vorbis_synthesis_lapout vorbis_window vorbis_dsp_clear |
| KERNEL32.dll |
RtlUnwind
LCMapStringW LCMapStringA GetStringTypeW GetStringTypeA MultiByteToWideChar LoadLibraryA GetOEMCP GetACP GetCPInfo InterlockedIncrement InterlockedDecrement FlushFileBuffers SetStdHandle WriteFile GetEnvironmentStringsW GetEnvironmentStrings WideCharToMultiByte FreeEnvironmentStringsW FreeEnvironmentStringsA GetModuleFileNameA GetCurrentProcess TerminateProcess GetModuleHandleA GetProcAddress RaiseException HeapFree HeapAlloc HeapReAlloc GetCommandLineA GetVersion HeapDestroy HeapCreate VirtualFree InitializeCriticalSection DeleteCriticalSection EnterCriticalSection LeaveCriticalSection ExitProcess VirtualAlloc GetCurrentThreadId TlsSetValue TlsAlloc TlsFree SetLastError TlsGetValue GetLastError SetHandleCount GetStdHandle GetFileType GetStartupInfoA SetFilePointer CloseHandle ReadFile |
| Ordinal | 1 |
|---|---|
| Address | 0x1ec0 |
| Ordinal | 2 |
|---|---|
| Address | 0x2020 |
| Ordinal | 3 |
|---|---|
| Address | 0x1000 |
| Ordinal | 4 |
|---|---|
| Address | 0x3520 |
| Ordinal | 5 |
|---|---|
| Address | 0x3970 |
| Ordinal | 6 |
|---|---|
| Address | 0x1d10 |
| Ordinal | 7 |
|---|---|
| Address | 0x1dd0 |
| Ordinal | 8 |
|---|---|
| Address | 0x34e0 |
| Ordinal | 9 |
|---|---|
| Address | 0x1ca0 |
| Ordinal | 10 |
|---|---|
| Address | 0x1100 |
| Ordinal | 11 |
|---|---|
| Address | 0x2b60 |
| Ordinal | 12 |
|---|---|
| Address | 0x3fb0 |
| Ordinal | 13 |
|---|---|
| Address | 0x2570 |
| Ordinal | 14 |
|---|---|
| Address | 0x3fd0 |
| Ordinal | 15 |
|---|---|
| Address | 0x33d0 |
| Ordinal | 16 |
|---|---|
| Address | 0x2150 |
| Ordinal | 17 |
|---|---|
| Address | 0x2250 |
| Ordinal | 18 |
|---|---|
| Address | 0x3e40 |
| Ordinal | 19 |
|---|---|
| Address | 0x33b0 |
| Ordinal | 20 |
|---|---|
| Address | 0x20d0 |
| Ordinal | 21 |
|---|---|
| Address | 0x3560 |
| Ordinal | 22 |
|---|---|
| Address | 0x38d0 |
| Ordinal | 23 |
|---|---|
| Address | 0x1eb0 |
| Ordinal | 24 |
|---|---|
| Address | 0x2090 |
| Ordinal | 25 |
|---|---|
| Address | 0x1ea0 |
| Ordinal | 26 |
|---|---|
| Address | 0x1e30 |
| Ordinal | 27 |
|---|---|
| Address | 0x1df0 |
| Ordinal | 28 |
|---|---|
| Address | 0x1e80 |
| Ordinal | 29 |
|---|---|
| Address | 0x31b0 |
| Ordinal | 30 |
|---|---|
| Address | 0x3ff0 |
| Ordinal | 31 |
|---|---|
| Address | 0x32b0 |
| Ordinal | 32 |
|---|---|
| Address | 0x4160 |
| Ordinal | 33 |
|---|---|
| Address | 0x33f0 |
| Ordinal | 34 |
|---|---|
| Address | 0x21c0 |
| XOR Key | 0x5a1c7536 |
|---|---|
| Unmarked objects | 0 |
| C++ objects (VS98 build 8168) | 1 |
| 14 (7299) | 21 |
| Total imports | 110 |
| 19 (8034) | 2 |
| C objects (VS98 build 8168) | 94 |
| Linker (VS98 build 8168) | 6 |
No comments yet.