a0c2c99504d9034a1f0e75434c3267cf818b081b34552ece684f6baea6758190

Summary

Architecture IMAGE_FILE_MACHINE_AMD64
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date 2026-Jun-01 20:06:29
Detected languages English - United States
Debug artifacts C:\Users\chbi raba rabek\Desktop\ImmortalLoader_srcwithauth\ImmortalLoader_srcwithauth\Vgx Loader\examples\Vgx Loader\Release\Vgx Loader.pdb

Plugin Output

Info Matching compiler(s): MASM/TASM - sig1(h)
Suspicious PEiD Signature: UPolyX V0.1 -> Delikon
Suspicious Strings found in the binary may indicate undesirable behavior: Miscellaneous malware strings:
  • cmd.exe
Contains domain names:
  • ac.pvp.net
  • ap.vg.ac.pvp.net
  • cv.iptc.org
  • github.com
  • http://c2pa-ocsp.pki.goog
  • http://c2pa-ocsp.pki.goog/0
  • http://c2pa-ocsp.pki.goog/04
  • http://cv.iptc.org
  • http://cv.iptc.org/newscodes/digitalsourcetype/trainedAlgorithmicMedia
  • http://pki.goog
  • https://github.com
  • https://immortal1234.pythonanywhere.com
  • https://scripts.sil.org
  • https://scripts.sil.org/OFLThis
  • https://scripts.sil.org/OFLhttps
  • https://www.lexend.comBonnie
  • immortal1234.pythonanywhere.com
  • pythonanywhere.com
  • scripts.sil.org
  • vg.ac.pvp.net
Info Cryptographic algorithms detected in the binary: Uses constants related to CRC32
Uses constants related to SHA256
Uses known Mersenne Twister constants
Suspicious The PE contains functions most legitimate programs don't use. [!] The program may be hiding some of its imports:
  • LoadLibraryA
  • GetProcAddress
Functions which can be used for anti-debugging purposes:
  • CreateToolhelp32Snapshot
Can access the registry:
  • RegCreateKeyExA
  • RegQueryValueExA
  • RegCloseKey
  • RegSetValueExA
Possibly launches other programs:
  • CreateProcessA
  • system
Has Internet access capabilities:
  • InternetCloseHandle
  • InternetReadFile
  • InternetOpenUrlA
  • InternetOpenA
  • InternetConnectA
  • WinHttpQueryDataAvailable
  • WinHttpOpen
  • WinHttpQueryHeaders
  • WinHttpReadData
  • WinHttpOpenRequest
  • WinHttpSetOption
  • WinHttpCloseHandle
  • WinHttpSendRequest
  • WinHttpConnect
  • WinHttpReceiveResponse
Manipulates other processes:
  • Process32NextW
  • Process32FirstW
Reads the contents of the clipboard:
  • GetClipboardData
Malicious VirusTotal score: 43/70 (Scanned on 2026-09-05 19:08:30) ALYac: Gen:Variant.Yogi.1594
APEX: Malicious
AVG: Win64:MalwareX-gen [Cryp]
AhnLab-V3: Trojan/Win.GenKryptik.C5893817
Alibaba: Trojan:Win64/GenKryptik.cd8e533e
Antiy-AVL: Trojan/Win64.GenKryptik
Arcabit: Trojan.Yogi.D63A
Avast: Win64:MalwareX-gen [Cryp]
Avira: TR/W64.MalwareX
BitDefender: Gen:Variant.Yogi.1594
Bkav: W32.Malware.B7204F7E
CTX: exe.trojan.genkryptik
CrowdStrike: win/malicious_confidence_90% (W)
Cylance: Unsafe
Cynet: Malicious (score: 99)
DeepInstinct: MALICIOUS
ESET-NOD32: Win64/GenKryptik.HRNO trojan
Elastic: malicious (high confidence)
Emsisoft: Gen:Variant.Yogi.1594 (B)
F-Secure: Trojan.TR/W64.MalwareX
Fortinet: W64/GenKryptik.HRNO!tr
GData: Gen:Variant.Yogi.1594
Google: Detected
Gridinsoft: Trojan.Win64.Kryptik.sa
Lionic: Trojan.Win32.Generic.4!c
Malwarebytes: Generic.HackTool.RiskWare.DDS
MaxSecure: Trojan.Malware.345033516.susgen
McAfeeD: ti!A0C2C99504D9
MicroWorld-eScan: Gen:Variant.Yogi.1594
Microsoft: Trojan:Win32/Wacatac.B!ml
Paloalto: generic.ml
Rising: Dropper.Agent!8.2F (TFE:5:kMRAyy9JefE)
Sangfor: Trojan.Win64.Kryptik.Vaet
SentinelOne: Static AI - Malicious PE
Sophos: Mal/Generic-S
Symantec: ML.Attribute.HighConfidence
Tencent: Malware.Win32.Gencirc.14aeab07
TrellixENS: Artemis!EEFEAFAC36A2
VIPRE: Gen:Variant.Yogi.1594
Varist: W64/ABTrojan.QVJJ-4597
Zillya: Trojan.GenKryptik.Win64.71345
alibabacloud: Trojan:Win/Wacatac.C9nj
huorong: TrojanDropper/Agent.arb

Hashes

MD5 eefeafac36a292f3b67ef24953e96d4a 🔍
SHA1 07b29872d1a641d1b1e781993cd7cfd43338adfa 🔍
SHA256 a0c2c99504d9034a1f0e75434c3267cf818b081b34552ece684f6baea6758190 🔍
SHA3 b5998d6ab0a7bf1e71fe227cf0e46a2d8e868692bca1ecc4e0af3f4994d836e6 🔍
SSDeep 49152:YxUaN013nWmVjspcuouoDMmP963SuDKhzcttYYEg:xGgdgpz47P9mvD6cttYYR 🔍
Imports Hash eb8f9b89b893610f7fae8b9df030fff7 🔍

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0xf8

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_AMD64
NumberofSections 6
TimeDateStamp 2026-Jun-01 20:06:29
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xf0
Characteristics IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE

Image Optional Header

Magic PE32+
LinkerVersion 14.0
SizeOfCode 0x62800
SizeOfInitializedData 0x14a000
SizeOfUninitializedData 0
AddressOfEntryPoint 0x00000000000600D0 (Section: .text)
BaseOfCode 0x1000
ImageBase 0x140000000
SectionAlignment 0x1000
FileAlignment 0x200
OperatingSystemVersion 6.0
ImageVersion 0.0
SubsystemVersion 6.0
Win32VersionValue 0
SizeOfImage 0x1b1000
SizeOfHeaders 0x400
Checksum 0
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x100000
SizeofStackCommit 0x1000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 3f71369543a9260d31b773eb4ad2eb1a 🔍
SHA1 56d20f8ff0594e21004099ab11690a4d5a3498dd 🔍
SHA256 6e144072cab59f61c20754cfc948abf909ee2a6dfa91aadab901fd846df44315 🔍
SHA3 04cd0e10ebabb4a7706c92ad581eb129157a58f293529b650fb271e64062f306 🔍
VirtualSize 0x62751
VirtualAddress 0x1000
SizeOfRawData 0x62800
PointerToRawData 0x400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.5051

.rdata

MD5 fe590b01d2d62cab75d10bdc68d20be9 🔍
SHA1 d28afc4357d5a8bef917b0d4491398bb09e6ab10 🔍
SHA256 a36c191f85e3815d9774064096fc4a516836c0fffb841ef63028f3f96e612c62 🔍
SHA3 840aa26e8a15f1929a694db4023ca480f93ee683879a2af557fc88e0f7b92d42 🔍
VirtualSize 0x20608
VirtualAddress 0x64000
SizeOfRawData 0x20800
PointerToRawData 0x62c00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 6.06595

.data

MD5 b9d55ceb6213d5647eee5c5a05678cbf 🔍
SHA1 aab6a05481e580587c9703ab2d2561610f024692 🔍
SHA256 32a00ca72daa95b0563955c8f837b5a330b0adcd57dcfbf200256ba2d98227ad 🔍
SHA3 3e9a41716b9da4de27a4321efcf313fa4f6cca487e5b9f65f30c964e81f65dbf 🔍
VirtualSize 0x124e50
VirtualAddress 0x85000
SizeOfRawData 0x124000
PointerToRawData 0x83400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 7.71389

.pdata

MD5 73f98048f17036ff5e23cd9ccb359998 🔍
SHA1 d4928730ae5f0096a0c0757038a6ffe001eeb052 🔍
SHA256 a29671730ec090fd26c9e0c6b8b8620f30616663502c1abfb12404d7a3a59446 🔍
SHA3 4ad8888dfcb40bcbe751ad50e9c742dc9b3eca0ffe945ec574186089fcd2168b 🔍
VirtualSize 0x408c
VirtualAddress 0x1aa000
SizeOfRawData 0x4200
PointerToRawData 0x1a7400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 5.81747

.rsrc

MD5 135a9003bf6e824dd04c53d180fbda7b 🔍
SHA1 45d8999828152fcdffe34226ec49f57c2adf9a8c 🔍
SHA256 8ecd9349e28dbdb59819c2bceecde408e0fcffbdffb9f8b60415385e56111574 🔍
SHA3 0a8cb4362f1fd1c9389a099518263e7fd2b075a0f32fce26f314d64fd784a3eb 🔍
VirtualSize 0x1e0
VirtualAddress 0x1af000
SizeOfRawData 0x200
PointerToRawData 0x1ab600
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 4.71768

.reloc

MD5 f9dd1ccdcbfcd698402c552113c8bfd0 🔍
SHA1 e460349fd20a40ab3a70622b068dc47321c63cb1 🔍
SHA256 5c6d5b4626d97ccf814db0b3fc586206bd882c9ea00de11135baa68d312ad6d7 🔍
SHA3 fad166e567e2467de29a6d52ce288816e95b77ae2c12a52a141b3ca88ccc2126 🔍
VirtualSize 0x300
VirtualAddress 0x1b0000
SizeOfRawData 0x400
PointerToRawData 0x1ab800
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy 4.49779

Imports

d3d11.dll D3D11CreateDeviceAndSwapChain
D3DCOMPILER_47.dll D3DCompile
WININET.dll HttpSendRequestA
InternetCloseHandle
InternetReadFile
InternetOpenUrlA
HttpQueryInfoA
HttpOpenRequestA
InternetOpenA
InternetConnectA
SHELL32.dll ShellExecuteExA
ADVAPI32.dll RegCreateKeyExA
RegQueryValueExA
RegCloseKey
RegSetValueExA
KERNEL32.dll InitializeSListHead
GetSystemTimeAsFileTime
ReleaseSRWLockExclusive
AcquireSRWLockExclusive
MultiByteToWideChar
GlobalAlloc
GlobalFree
GlobalLock
WideCharToMultiByte
GlobalUnlock
LoadLibraryA
QueryPerformanceFrequency
GetProcAddress
WakeAllConditionVariable
FreeLibrary
QueryPerformanceCounter
ReadFile
SetHandleInformation
WriteFile
TerminateProcess
CreateNamedPipeW
GetProcessId
CreatePipe
WaitForSingleObject
CreateFileW
CreateToolhelp32Snapshot
Sleep
GetLastError
GetFileAttributesA
Process32NextW
DeleteFileA
Process32FirstW
CloseHandle
SetFileAttributesA
Beep
GetModuleHandleW
CreateProcessA
CreateDirectoryA
ConnectNamedPipe
SleepConditionVariableSRW
SetUnhandledExceptionFilter
GetStartupInfoW
GetCurrentProcessId
GetCurrentThreadId
USER32.dll DefWindowProcW
DestroyWindow
CreateWindowExW
GetSystemMetrics
UnregisterClassW
RegisterClassExW
SetClipboardData
ShowWindow
DispatchMessageW
PeekMessageW
TranslateMessage
PostQuitMessage
UpdateWindow
GetKeyState
ScreenToClient
GetCapture
ClientToScreen
TrackMouseEvent
GetForegroundWindow
LoadCursorW
SetCapture
SetCursor
GetClientRect
IsWindowUnicode
ReleaseCapture
SetCursorPos
GetCursorPos
OpenClipboard
CloseClipboard
EmptyClipboard
GetClipboardData
ole32.dll CoInitialize
CoCreateInstance
IMM32.dll ImmGetContext
ImmReleaseContext
ImmSetCompositionWindow
ImmSetCandidateWindow
MSVCP140.dll ?_Decref@facet@locale@std@@UEAAPEAV_Facet_base@3@XZ
??0facet@locale@std@@IEAA@_K@Z
??1facet@locale@std@@MEAA@XZ
?always_noconv@codecvt_base@std@@QEBA_NXZ
?tolower@?$ctype@D@std@@QEBADD@Z
?_Getcat@?$ctype@D@std@@SA_KPEAPEBVfacet@locale@2@PEBV42@@Z
??Bios_base@std@@QEBA_NXZ
?good@ios_base@std@@QEBA_NXZ
?write@?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV12@PEBD_J@Z
??1?$basic_ostream@DU?$char_traits@D@std@@@std@@UEAA@XZ
??1?$basic_istream@DU?$char_traits@D@std@@@std@@UEAA@XZ
?xsputn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JPEBD_J@Z
?xsgetn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JPEAD_J@Z
?_Incref@facet@locale@std@@UEAAXXZ
??1?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAA@XZ
??1?$basic_ios@DU?$char_traits@D@std@@@std@@UEAA@XZ
?out@?$codecvt@DDU_Mbstatet@@@std@@QEBAHAEAU_Mbstatet@@PEBD1AEAPEBDPEAD3AEAPEAD@Z
?in@?$codecvt@DDU_Mbstatet@@@std@@QEBAHAEAU_Mbstatet@@PEBD1AEAPEBDPEAD3AEAPEAD@Z
??0?$basic_istream@DU?$char_traits@D@std@@@std@@QEAA@PEAV?$basic_streambuf@DU?$char_traits@D@std@@@1@_N@Z
?_Getcoll@_Locinfo@std@@QEBA?AU_Collvec@@XZ
??1_Locinfo@std@@QEAA@XZ
?showmanyc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JXZ
??0_Locinfo@std@@QEAA@PEBD@Z
__crtLCMapStringA
?_Xlength_error@std@@YAXPEBD@Z
_Strxfrm
??1_Lockit@std@@QEAA@XZ
??0_Lockit@std@@QEAA@H@Z
?_Throw_Cpp_error@std@@YAXH@Z
?uncaught_exceptions@std@@YAHXZ
?_Getgloballocale@locale@std@@CAPEAV_Locimp@12@XZ
?_Init@locale@std@@CAPEAV_Locimp@12@_N@Z
?_Xbad_alloc@std@@YAXXZ
?_Id_cnt@id@locale@std@@0HA
?_Xout_of_range@std@@YAXPEBD@Z
?_Xregex_error@std@@YAXW4error_type@regex_constants@1@@Z
?id@?$codecvt@DDU_Mbstatet@@@std@@2V0locale@2@A
?_Fiopen@std@@YAPEAU_iobuf@@PEBDHH@Z
?id@?$ctype@D@std@@2V0locale@2@A
?_Random_device@std@@YAIXZ
?id@?$collate@D@std@@2V0locale@2@A
_Mtx_lock
_Strcoll
_Cnd_do_broadcast_at_thread_exit
_Thrd_detach
_Xtime_get_ticks
_Mtx_unlock
?_Ipfx@?$basic_istream@DU?$char_traits@D@std@@@std@@QEAA_N_N@Z
??0?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAA@XZ
?getloc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEBA?AVlocale@2@XZ
?sbumpc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHXZ
?sgetc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHXZ
?snextc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHXZ
?_Init@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAXXZ
?_Osfx@?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAXXZ
?flush@?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV12@XZ
?unshift@?$codecvt@DDU_Mbstatet@@@std@@QEBAHAEAU_Mbstatet@@PEAD1AEAPEAD@Z
?_Getcat@?$codecvt@DDU_Mbstatet@@@std@@SA_KPEAPEBVfacet@locale@2@PEBV42@@Z
?setstate@?$basic_ios@DU?$char_traits@D@std@@@std@@QEAAXH_N@Z
?widen@?$basic_ios@DU?$char_traits@D@std@@@std@@QEBADD@Z
??0?$basic_ios@DU?$char_traits@D@std@@@std@@IEAA@XZ
?sputc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHD@Z
?sputn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAA_JPEBD_J@Z
??0?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAA@PEAV?$basic_streambuf@DU?$char_traits@D@std@@@1@_N@Z
dwmapi.dll DwmExtendFrameIntoClientArea
WINHTTP.dll WinHttpQueryDataAvailable
WinHttpOpen
WinHttpQueryHeaders
WinHttpReadData
WinHttpOpenRequest
WinHttpSetOption
WinHttpCloseHandle
WinHttpSendRequest
WinHttpConnect
WinHttpReceiveResponse
VCRUNTIME140_1.dll __CxxFrameHandler4
VCRUNTIME140.dll memmove
memset
memcpy
strstr
memcmp
memchr
_CxxThrowException
__C_specific_handler
__current_exception_context
__current_exception
__RTtypeid
strchr
__std_type_info_compare
__std_exception_copy
__std_exception_destroy
__std_terminate
api-ms-win-crt-stdio-l1-1-0.dll __acrt_iob_func
_get_stream_buffer_pointers
_fseeki64
fsetpos
_set_fmode
ungetc
setvbuf
fputc
fgetpos
__p__commode
__stdio_common_vsscanf
fread
fflush
__stdio_common_vsprintf
fclose
_wfopen
fwrite
__stdio_common_vfprintf
fseek
fgetc
ftell
api-ms-win-crt-utility-l1-1-0.dll rand
qsort
api-ms-win-crt-heap-l1-1-0.dll _callnewh
_set_new_mode
malloc
free
realloc
api-ms-win-crt-runtime-l1-1-0.dll system
terminate
_wassert
_register_thread_local_exe_atexit_callback
_beginthreadex
_c_exit
_exit
exit
_initterm_e
_initterm
_configure_narrow_argv
_initialize_narrow_environment
_initialize_onexit_table
_register_onexit_function
_crt_atexit
_cexit
_seh_filter_exe
_set_app_type
_get_narrow_winmain_command_line
api-ms-win-crt-convert-l1-1-0.dll atoi
api-ms-win-crt-string-l1-1-0.dll _wcsicmp
toupper
strcmp
strlen
strncpy
strncmp
strcpy_s
api-ms-win-crt-filesystem-l1-1-0.dll _unlock_file
_lock_file
api-ms-win-crt-math-l1-1-0.dll __setusermatherr
ceilf
roundf
cosf
powf
acosf
sqrtf
sinf
fmodf
api-ms-win-crt-locale-l1-1-0.dll ___lc_collate_cp_func
___lc_locale_name_func
_configthreadlocale

Delayed Imports

1

Type RT_MANIFEST
Language English - United States
Codepage UNKNOWN
Size 0x17d
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.91161
MD5 1e4a89b11eae0fcf8bb5fdd5ec3b6f61 🔍
SHA1 4260284ce14278c397aaf6f389c1609b0ab0ce51 🔍
SHA256 4bb79dcea0a901f7d9eac5aa05728ae92acb42e0cb22e5dd14134f4421a3d8df 🔍
SHA3 4bb9e8b5a714cae82782f3831cc2d45f4bf4a50a755fe584d2d1893129d68353 🔍

Version Info

IMAGE_DEBUG_TYPE_CODEVIEW

Characteristics 0
TimeDateStamp 2026-Jun-01 20:06:29
Version 0.0
SizeofData 165
AddressOfRawData 0x7aed0
PointerToRawData 0x79ad0
Referenced File C:\Users\chbi raba rabek\Desktop\ImmortalLoader_srcwithauth\ImmortalLoader_srcwithauth\Vgx Loader\examples\Vgx Loader\Release\Vgx Loader.pdb

IMAGE_DEBUG_TYPE_VC_FEATURE

Characteristics 0
TimeDateStamp 2026-Jun-01 20:06:29
Version 0.0
SizeofData 20
AddressOfRawData 0x7af78
PointerToRawData 0x79b78

IMAGE_DEBUG_TYPE_POGO

Characteristics 0
TimeDateStamp 2026-Jun-01 20:06:29
Version 0.0
SizeofData 912
AddressOfRawData 0x7af8c
PointerToRawData 0x79b8c

IMAGE_DEBUG_TYPE_ILTCG

Characteristics 0
TimeDateStamp 2026-Jun-01 20:06:29
Version 0.0
SizeofData 0
AddressOfRawData 0
PointerToRawData 0

TLS Callbacks

StartAddressOfRawData 0x14007b340
EndAddressOfRawData 0x14007b348
AddressOfIndex 0x1401a8ff8
AddressOfCallbacks 0x1400649b0
SizeOfZeroFill 0
Characteristics IMAGE_SCN_ALIGN_4BYTES
Callbacks (EMPTY)

Load Configuration

Size 0x140
TimeDateStamp 1970-Jan-01 00:00:00
Version 0.0
GlobalFlagsClear (EMPTY)
GlobalFlagsSet (EMPTY)
CriticalSectionDefaultTimeout 0
DeCommitFreeBlockThreshold 0
DeCommitTotalFreeThreshold 0
LockPrefixTable 0
MaximumAllocationSize 0
VirtualMemoryThreshold 0
ProcessAffinityMask 0
ProcessHeapFlags (EMPTY)
CSDVersion 0
Reserved1 0
EditList 0
SecurityCookie 0x140085040

RICH Header

XOR Key 0x6c292ab2
Unmarked objects 0
Imports (VS2008 SP1 build 30729) 18
Imports (35721) 6
ASM objects (35721) 4
C objects (35721) 10
C++ objects (35721) 34
C objects (33145) 1
Imports (33145) 25
Total imports 301
C++ objects (LTCG) (36246) 7
Resource objects (36246) 1
Linker (36246) 1

Errors

Leave a comment

No comments yet.