d32713e2ddf170a95de322eb76675943ef2a9725b6c31af0724a08e7b432a3ce

Summary

Architecture IMAGE_FILE_MACHINE_AMD64
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date 2026-Jul-13 15:24:07
Detected languages English - United States
TLS Callbacks 2 callback(s) detected.

Plugin Output

Info Matching compiler(s): MASM/TASM - sig1(h)
Suspicious Strings found in the binary may indicate undesirable behavior: May have dropper capabilities:
  • CurrentControlSet\Services
Contains domain names:
  • RetroUSB.com
  • aiweavio.com
  • anthropic.com
  • api.anthropic.com
  • api.deepseek.com
  • api.openai.com
  • colab.research.google.com
  • cp.aiweavio.com
  • dbg.f.info
  • deepseek.com
  • example.com
  • github.com
  • google.com
  • gstatic.com
  • http://127.0.0.1
  • http://www.w3.org
  • http://www.w3.org/2000/svg'
  • https://aiweavio.com
  • https://api.anthropic.com
  • https://api.anthropic.com/v1/messages
  • https://api.deepseek.com
  • https://api.deepseek.com/v1
  • https://api.openai.com
  • https://api.openai.com/v1
  • https://api.openai.com/v1/chat/completions
  • https://colab.research.google.com
  • https://colab.research.google.com/
  • https://cp.aiweavio.com
  • https://example.com
  • https://github.com
  • openai.com
  • research.google.com
  • www.gstatic.com
  • www.w3.org
Info Cryptographic algorithms detected in the binary: Uses constants related to SHA256
Uses known Mersenne Twister constants
Microsoft's Cryptography API
Malicious The PE contains functions mostly used by malware. [!] The program may be hiding some of its imports:
  • GetProcAddress
  • LoadLibraryExW
  • LoadLibraryA
  • LoadLibraryW
Functions which can be used for anti-debugging purposes:
  • CreateToolhelp32Snapshot
  • FindWindowW
Code injection capabilities:
  • OpenProcess
  • WriteProcessMemory
  • VirtualAlloc
Code injection capabilities (PowerLoader):
  • FindWindowW
  • GetWindowLongW
Can access the registry:
  • RegOpenKeyExW
  • RegQueryValueExW
  • RegCloseKey
  • RegisterHotKey
Possibly launches other programs:
  • ShellExecuteW
  • CreateProcessW
Uses Microsoft's cryptographic API:
  • CryptProtectData
  • CryptUnprotectData
Can create temporary files:
  • CreateFileW
  • GetTempPathW
Uses functions commonly found in keyloggers:
  • MapVirtualKeyW
  • AttachThreadInput
  • GetForegroundWindow
  • GetAsyncKeyState
Has Internet access capabilities:
  • WinHttpCloseHandle
  • WinHttpConnect
  • WinHttpReadData
  • WinHttpSetOption
  • WinHttpOpen
  • WinHttpOpenRequest
  • WinHttpQueryDataAvailable
  • WinHttpSendRequest
  • WinHttpReceiveResponse
  • WinHttpQueryHeaders
  • WinHttpCrackUrl
  • WinHttpSetTimeouts
Leverages the raw socket API to access the Internet:
  • ntohs
  • listen
  • htonl
  • select
  • recv
  • getsockname
  • closesocket
  • send
  • shutdown
  • socket
  • WSAStartup
  • accept
  • bind
Interacts with services:
  • OpenSCManagerW
  • OpenServiceW
  • QueryServiceConfigW
Enumerates local disk drives:
  • GetDriveTypeW
Manipulates other processes:
  • OpenProcess
  • ReadProcessMemory
  • WriteProcessMemory
  • Process32NextW
  • Process32FirstW
Can take screenshots:
  • GetDC
  • FindWindowW
  • PrintWindow
  • CreateCompatibleDC
  • BitBlt
Reads the contents of the clipboard:
  • GetClipboardData
Safe VirusTotal score: 0/70 (Scanned on 2026-08-10 17:54:38) All the AVs think this file is safe.

Hashes

MD5 eda03a46dca8dc98faa4ddfcd645ddda
SHA1 6a49eae92e0fe3ac5d025393aedb3b4665f35572
SHA256 d32713e2ddf170a95de322eb76675943ef2a9725b6c31af0724a08e7b432a3ce
SHA3 0fe681b820ad542a221681362bc5e1bd5fc5113486f450c50f1a7c32d7d00f22
SSDeep 49152:MPHgHKcf5gPAKy/cXBy95ZoSbJLFKIsmlTRFv8MPjtlg/hJ/8FJB+XKYY62L08I:YuzfFN7SMQXQ62nrWuldewp6HnBH
Imports Hash 2de3beb393f8b0317d80bcf3031ee445

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0x118

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_AMD64
NumberofSections 6
TimeDateStamp 2026-Jul-13 15:24:07
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xf0
Characteristics IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE

Image Optional Header

Magic PE32+
LinkerVersion 14.0
SizeOfCode 0x365800
SizeOfInitializedData 0x134600
SizeOfUninitializedData 0
AddressOfEntryPoint 0x00000000003407F4 (Section: .text)
BaseOfCode 0x1000
ImageBase 0x140000000
SectionAlignment 0x1000
FileAlignment 0x200
OperatingSystemVersion 6.0
ImageVersion 0.0
SubsystemVersion 6.0
Win32VersionValue 0
SizeOfImage 0x49d000
SizeOfHeaders 0x400
Checksum 0
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x100000
SizeofStackCommit 0x1000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 223fad0fc01e104a07f2fe463a6195fc
SHA1 a0152b6607910a0a07b6e5a77daf286150748a44
SHA256 3f911216df756d79d89b0a057e4e35b9879a1794e94b0143474f36e1c5b38d23
SHA3 4372cbe21d60ec4a75e149491ef48e531b22ce3bade72226e1377e2ba0685f27
VirtualSize 0x365677
VirtualAddress 0x1000
SizeOfRawData 0x365800
PointerToRawData 0x400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.46596

.rdata

MD5 b6e7cd1726c9949a94c975c3c6ae91d7
SHA1 f446f47632a43502bae5485f88bc93df319a56ae
SHA256 b6a390c5e97601c4adc7a7a2462aa9dd0a7b26dfbe7089c7f7bf6d81e7b2f109
SHA3 635e48cd38887e8f8b228a1479eeb1bc9d7600a016cf023cb7bdc03be58e8af0
VirtualSize 0xffd3c
VirtualAddress 0x367000
SizeOfRawData 0xffe00
PointerToRawData 0x365c00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 6.65029

.data

MD5 cbd372f5b5f70b578a3bb5b5bb21ed84
SHA1 bb20046524e13ac81fe9eee59c81c04623f1466d
SHA256 3806119a4a495808a8cfe148e2f4281d701de39856e1d1e1a449cb0f73f5fefa
SHA3 1e7c1be260a82167c1a0b9769b66ba4d15d8ad70b9583d4f853222e97d45583a
VirtualSize 0x11264
VirtualAddress 0x467000
SizeOfRawData 0x8000
PointerToRawData 0x465a00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 4.30089

.pdata

MD5 370616cffdb71f7a6379dba5ca140357
SHA1 6ec4317256c2334f289fccd56403899569ee0daf
SHA256 0ef088e26ab2d4ff47a6a9267f140ea9a85abda2d2c1a7896c6fa0b46f4fbf2c
SHA3 33d0fd8ab42dfe115bdd33a527392505ceedf20b135f7266e010b2191af81371
VirtualSize 0x1d70c
VirtualAddress 0x479000
SizeOfRawData 0x1d800
PointerToRawData 0x46da00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 6.32998

.rsrc

MD5 b4b4c7c19c868efd6b0f2f1b9c9b5570
SHA1 1f617a15b5fb2812535b337d3db9b34ad1ebf8e1
SHA256 5b9842452d5436861fba0d693073e02c0bcf6e98b807d6d0a9c9134ccb9da82a
SHA3 3faf695d05af350d8f28fade1f37c47788dd73775b334b50ac1a9a1fb503906e
VirtualSize 0x1cf0
VirtualAddress 0x497000
SizeOfRawData 0x1e00
PointerToRawData 0x48b200
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 4.41761

.reloc

MD5 8b050dd9f6c14815c301f10a83209215
SHA1 35193af42f062f4ab876d58bcfa777ef2689d64f
SHA256 eedafc3900374f330597874dffe81141cb05d4d22d6b504ad5a63bb9059d93e5
SHA3 3a1d766034a166de0c5f153e2b9ef338c48e49326fcdfde7008f5b302a2f63cd
VirtualSize 0x3c94
VirtualAddress 0x499000
SizeOfRawData 0x3e00
PointerToRawData 0x48d000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy 5.43315

Imports

OPENGL32.dll glViewport
glClearColor
glClear
glTexSubImage2D
glPixelStorei
glTexParameteri
glTexImage2D
glGenTextures
glDeleteTextures
glBindTexture
COMDLG32.dll GetOpenFileNameW
GetSaveFileNameW
SHELL32.dll SHBrowseForFolderW
SHGetPathFromIDListW
DragAcceptFiles
DragFinish
DragQueryPoint
ShellExecuteW
Shell_NotifyIconW
ShellExecuteExW
DragQueryFileW
WINHTTP.dll WinHttpCloseHandle
WinHttpConnect
WinHttpReadData
WinHttpSetOption
WinHttpOpen
WinHttpOpenRequest
WinHttpQueryDataAvailable
WinHttpSendRequest
WinHttpReceiveResponse
WinHttpQueryHeaders
WinHttpCrackUrl
WinHttpSetTimeouts
WS2_32.dll ntohs
listen
htonl
select
recv
getsockname
closesocket
send
shutdown
socket
WSAStartup
accept
bind
bcrypt.dll BCryptGetProperty
BCryptCloseAlgorithmProvider
BCryptCreateHash
BCryptOpenAlgorithmProvider
BCryptGenRandom
BCryptDestroyHash
BCryptFinishHash
BCryptHashData
CRYPT32.dll CryptProtectData
CryptUnprotectData
d3d11.dll D3D11CreateDevice
CreateDirect3D11DeviceFromDXGIDevice
api-ms-win-core-handle-l1-1-0.dll CloseHandle
api-ms-win-core-errorhandling-l1-1-0.dll SetUnhandledExceptionFilter
GetLastError
api-ms-win-core-synch-l1-1-0.dll WaitForSingleObject
InitializeCriticalSection
OpenMutexW
EnterCriticalSection
SetEvent
DeleteCriticalSection
CreateEventW
CreateMutexW
LeaveCriticalSection
api-ms-win-core-libraryloader-l1-2-0.dll GetProcAddress
GetModuleFileNameW
LoadLibraryExW
GetModuleHandleW
FreeLibrary
GetModuleHandleExW
api-ms-win-core-synch-l1-2-0.dll WakeAllConditionVariable
Sleep
api-ms-win-core-libraryloader-l1-2-1.dll LoadLibraryA
LoadLibraryW
api-ms-win-ntuser-sysparams-l1-1-0.dll SystemParametersInfoW
GetMonitorInfoW
EnumDisplayDevicesW
EnumDisplayMonitors
GetSystemMetrics
api-ms-win-core-string-l1-1-0.dll WideCharToMultiByte
MultiByteToWideChar
api-ms-win-core-com-l1-1-0.dll CoInitializeEx
CoCreateInstance
CoCreateFreeThreadedMarshaler
CoTaskMemFree
CoUninitialize
api-ms-win-core-processthreads-l1-1-0.dll TlsGetValue
TlsAlloc
GetCurrentProcessId
CreateProcessW
GetExitCodeProcess
TerminateProcess
TlsFree
GetCurrentThreadId
GetCurrentProcess
TlsSetValue
OpenThread
ResumeThread
SuspendThread
api-ms-win-core-psapi-l1-1-0.dll K32GetProcessMemoryInfo
K32GetModuleInformation
QueryFullProcessImageNameW
K32GetModuleFileNameExW
api-ms-win-core-sysinfo-l1-1-0.dll GetSystemInfo
GetTickCount
GetTickCount64
GetSystemTimeAsFileTime
GetLocalTime
api-ms-win-core-processenvironment-l1-1-0.dll GetCurrentDirectoryW
GetEnvironmentVariableW
api-ms-win-core-file-l1-1-0.dll GetDriveTypeW
CreateFileW
FindNextFileW
FindFirstFileW
DeleteFileA
CreateDirectoryA
SetFileInformationByHandle
CreateDirectoryW
FindFirstFileExW
GetFileAttributesW
GetFileAttributesExW
GetFinalPathNameByHandleW
GetFullPathNameW
FindClose
WriteFile
GetLogicalDrives
api-ms-win-core-file-l1-2-0.dll GetTempPathW
CreateFile2
api-ms-win-core-processthreads-l1-1-1.dll GetThreadContext
OpenProcess
api-ms-win-core-memory-l1-1-0.dll ReadProcessMemory
CreateFileMappingW
VirtualQueryEx
MapViewOfFile
UnmapViewOfFile
WriteProcessMemory
api-ms-win-core-wow64-l1-1-0.dll IsWow64Process
api-ms-win-core-toolhelp-l1-1-0.dll Process32NextW
Thread32First
Thread32Next
Process32FirstW
CreateToolhelp32Snapshot
api-ms-win-security-base-l1-1-0.dll SetSecurityDescriptorDacl
InitializeSecurityDescriptor
api-ms-win-core-heap-l2-1-0.dll GlobalFree
GlobalAlloc
LocalFree
api-ms-win-core-registry-l1-1-0.dll RegOpenKeyExW
RegQueryValueExW
RegCloseKey
api-ms-win-service-management-l1-1-0.dll OpenSCManagerW
api-ms-win-core-heap-obsolete-l1-1-0.dll GlobalUnlock
GlobalLock
api-ms-win-core-kernel32-legacy-l1-1-5.dll SetThreadExecutionState
api-ms-win-core-sysinfo-l1-2-0.dll VerSetConditionMask
api-ms-win-core-localization-l1-2-0.dll FormatMessageA
FormatMessageW
GetLocaleInfoEx
api-ms-win-core-profile-l1-1-0.dll QueryPerformanceFrequency
QueryPerformanceCounter
opencv_world4140.dll ?rotate@cv@@YAXAEBV_InputArray@1@AEBV_OutputArray@1@H@Z
?mean@cv@@YA?AV?$Scalar_@N@1@AEBV_InputArray@1@0@Z
?addWeighted@cv@@YAXAEBV_InputArray@1@N0NNAEBV_OutputArray@1@H@Z
?copyMakeBorder@cv@@YAXAEBV_InputArray@1@AEBV_OutputArray@1@HHHHHAEBV?$Scalar_@N@1@@Z
??0Mat@cv@@QEAA@HHHPEAX_K@Z
??0Mat@cv@@QEAA@V?$Size_@H@1@HAEBV?$Scalar_@N@1@@Z
??0Mat@cv@@QEAA@HHHAEBV?$Scalar_@N@1@@Z
?imread@cv@@YA?AVMat@1@AEBV?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@H@Z
?boundingRect@RotatedRect@cv@@QEBA?AV?$Rect_@H@2@XZ
??4Mat@cv@@QEAAAEAV01@$$QEAV01@@Z
?points@RotatedRect@cv@@QEBAXQEAV?$Point_@M@2@@Z
?putText@cv@@YAXAEBV_InputOutputArray@1@AEBV?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@V?$Point_@H@1@HNV?$Scalar_@N@1@HH_N@Z
?rectangle@cv@@YAXAEBV_InputOutputArray@1@V?$Rect_@H@1@AEBV?$Scalar_@N@1@HHH@Z
?connectedComponentsWithStats@cv@@YAHAEBV_InputArray@1@AEBV_OutputArray@1@11HH@Z
?matchTemplate@cv@@YAXAEBV_InputArray@1@0AEBV_OutputArray@1@H0@Z
?threshold@cv@@YANAEBV_InputArray@1@AEBV_OutputArray@1@NNH@Z
?empty@Mat@cv@@QEBA_NXZ
?clone@Mat@cv@@QEBA?AV12@XZ
?dilate@cv@@YAXAEBV_InputArray@1@AEBV_OutputArray@1@0V?$Point_@H@1@HHAEBV?$Scalar_@N@1@@Z
?getDefault@Device@ocl@cv@@SAAEBV123@XZ
?name@Device@ocl@cv@@QEBA?AV?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@XZ
??1Device@ocl@cv@@QEAA@XZ
?imwrite@cv@@YA_NAEBV?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@AEBV_InputArray@1@AEBV?$vector@HV?$allocator@H@std@@@3@@Z
??4Mat@cv@@QEAAAEAV01@AEBV01@@Z
??0Mat@cv@@QEAA@AEBV01@AEBV?$Rect_@H@1@@Z
?GaussianBlur@cv@@YAXAEBV_InputArray@1@AEBV_OutputArray@1@V?$Size_@H@1@NNHW4AlgorithmHint@1@@Z
?empty@UMat@cv@@QEBA_NXZ
??1Mat@cv@@QEAA@XZ
??0Mat@cv@@QEAA@XZ
?copyTo@UMat@cv@@QEBAXAEBV_OutputArray@2@@Z
??1UMat@cv@@QEAA@XZ
??0UMat@cv@@QEAA@W4UMatUsageFlags@1@@Z
?convertTo@Mat@cv@@QEBAXAEBV_OutputArray@2@HNN@Z
?copyTo@Mat@cv@@QEBAXAEBV_OutputArray@2@@Z
??0Mat@cv@@QEAA@HHH@Z
?imencode@cv@@YA_NAEBV?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@AEBV_InputArray@1@AEAV?$vector@EV?$allocator@E@std@@@3@AEBV?$vector@HV?$allocator@H@std@@@3@@Z
?resize@cv@@YAXAEBV_InputArray@1@AEBV_OutputArray@1@V?$Size_@H@1@NNH@Z
?warpAffine@cv@@YAXAEBV_InputArray@1@AEBV_OutputArray@1@0V?$Size_@H@1@HHAEBV?$Scalar_@N@1@@Z
?warpPerspective@cv@@YAXAEBV_InputArray@1@AEBV_OutputArray@1@0V?$Size_@H@1@HHAEBV?$Scalar_@N@1@@Z
?getRotationMatrix2D_@cv@@YA?AV?$Matx@N$01$02@1@V?$Point_@M@1@NN@Z
?getPerspectiveTransform@cv@@YA?AVMat@1@QEBV?$Point_@M@1@0H@Z
?integral@cv@@YAXAEBV_InputArray@1@AEBV_OutputArray@1@1HH@Z
?minAreaRect@cv@@YA?AVRotatedRect@1@AEBV_InputArray@1@@Z
?fillPoly@cv@@YAXAEBV_InputOutputArray@1@AEBV_InputArray@1@AEBV?$Scalar_@N@1@HHV?$Point_@H@1@@Z
?countNonZero@cv@@YAHAEBV_InputArray@1@@Z
?imdecode@cv@@YA?AVMat@1@AEBV_InputArray@1@H@Z
?Canny@cv@@YAXAEBV_InputArray@1@AEBV_OutputArray@1@NNH_N@Z
?boundingRect@cv@@YA?AV?$Rect_@H@1@AEBV_InputArray@1@@Z
?HoughLinesP@cv@@YAXAEBV_InputArray@1@AEBV_OutputArray@1@NNHNN@Z
?HoughCircles@cv@@YAXAEBV_InputArray@1@AEBV_OutputArray@1@HNNNNHH@Z
?contourArea@cv@@YANAEBV_InputArray@1@_N@Z
??0Mat@cv@@QEAA@HPEBHHPEAXPEB_K@Z
?transpose@cv@@YAXAEBV_InputArray@1@AEBV_OutputArray@1@@Z
?NMSBoxes@dnn4_v20251223@dnn@cv@@YAXAEBV?$vector@V?$Rect_@H@cv@@V?$allocator@V?$Rect_@H@cv@@@std@@@std@@AEBV?$vector@MV?$allocator@M@std@@@5@MMAEAV?$vector@HV?$allocator@H@std@@@5@MH@Z
?findContours@cv@@YAXAEBV_InputArray@1@AEBV_OutputArray@1@HHV?$Point_@H@1@@Z
?cvtColor@cv@@YAXAEBV_InputArray@1@AEBV_OutputArray@1@HHW4AlgorithmHint@1@@Z
?adaptiveThreshold@cv@@YAXAEBV_InputArray@1@AEBV_OutputArray@1@NHHHN@Z
?check_failed_auto@detail@cv@@YAX_K0AEBUCheckContext@12@@Z
?morphologyEx@cv@@YAXAEBV_InputArray@1@AEBV_OutputArray@1@H0V?$Point_@H@1@HHAEBV?$Scalar_@N@1@@Z
?setTo@Mat@cv@@QEAAAEAV12@AEBV_InputArray@2@0@Z
?getStructuringElement@cv@@YA?AVMat@1@HV?$Size_@H@1@V?$Point_@H@1@@Z
?release@UMat@cv@@QEAAXXZ
?bitwise_or@cv@@YAXAEBV_InputArray@1@0AEBV_OutputArray@1@0@Z
?approxPolyDP@cv@@YAXAEBV_InputArray@1@AEBV_OutputArray@1@N_N@Z
??0Mat@cv@@QEAA@$$QEAV01@@Z
?release@Mat@cv@@QEAAXXZ
??0Mat@cv@@QEAA@AEBV01@@Z
??0Device@ocl@cv@@QEAA@AEBV012@@Z
?arcLength@cv@@YANAEBV_InputArray@1@_N@Z
?line@cv@@YAXAEBV_InputOutputArray@1@V?$Point_@H@1@1AEBV?$Scalar_@N@1@HHH@Z
?circle@cv@@YAXAEBV_InputOutputArray@1@V?$Point_@H@1@HAEBV?$Scalar_@N@1@HHH@Z
?findNonZero@cv@@YAXAEBV_InputArray@1@AEBV_OutputArray@1@@Z
?compare@cv@@YAXAEBV_InputArray@1@0AEBV_OutputArray@1@H@Z
?bitwise_not@cv@@YAXAEBV_InputArray@1@AEBV_OutputArray@1@0@Z
?erode@cv@@YAXAEBV_InputArray@1@AEBV_OutputArray@1@0V?$Point_@H@1@HHAEBV?$Scalar_@N@1@@Z
?medianBlur@cv@@YAXAEBV_InputArray@1@AEBV_OutputArray@1@H@Z
?setUseOpenCL@ocl@cv@@YAX_N@Z
?useOpenCL@ocl@cv@@YA_NXZ
?haveOpenCL@ocl@cv@@YA_NXZ
?inRange@cv@@YAXAEBV_InputArray@1@00AEBV_OutputArray@1@@Z
?noArray@cv@@YAAEBV_InputOutputArray@1@XZ
?minMaxLoc@cv@@YAXAEBV_InputArray@1@PEAN1PEAV?$Point_@H@1@20@Z
onnxruntime.dll #1
#4
KERNEL32.dll ReleaseSRWLockExclusive
AcquireSRWLockExclusive
InitializeConditionVariable
WakeConditionVariable
SleepConditionVariableSRW
RtlCaptureStackBackTrace
VirtualAlloc
GetLogicalProcessorInformation
OutputDebugStringA
InitializeSRWLock
K32EnumProcessModulesEx
USER32.dll SetCursor
GetCursorPos
ScreenToClient
WindowFromPoint
LoadCursorA
GetActiveWindow
IsWindowVisible
GetWindowTextW
GetWindowTextLengthW
PostMessageA
CreatePopupMenu
DestroyMenu
TrackPopupMenuEx
SetMenuInfo
InsertMenuItemW
DrawTextW
FillRect
GetDpiForWindow
DefWindowProcW
RegisterClassExW
CreateWindowExW
IsWindow
DestroyWindow
SetLayeredWindowAttributes
IsIconic
SetCapture
UpdateWindow
SetActiveWindow
BeginPaint
EndPaint
InvalidateRect
GetClientRect
ClientToScreen
GetWindowLongPtrW
SetWindowLongPtrW
GetWindowThreadProcessId
RegisterHotKey
UnregisterHotKey
CallWindowProcW
GetDC
ReleaseDC
GetDesktopWindow
FindWindowW
PrintWindow
PostMessageW
mouse_event
SendInput
ChildWindowFromPointEx
GetKeyboardLayout
VkKeyScanExW
keybd_event
MapVirtualKeyW
TranslateMessage
SetWindowRgn
PeekMessageW
AttachThreadInput
WaitForInputIdle
BringWindowToTop
VkKeyScanA
MessageBeep
GetWindow
GetAncestor
wsprintfW
OpenClipboard
CloseClipboard
SetClipboardData
GetClipboardData
EmptyClipboard
GetMessageExtraInfo
SetPropA
GetPropA
TrackMouseEvent
GetMessageTime
UnregisterClassW
GetWindowPlacement
SetWindowPlacement
IsZoomed
SetFocus
GetKeyState
SetWindowTextW
AdjustWindowRectEx
SetCursorPos
ClipCursor
SetRect
OffsetRect
PtInRect
GetWindowLongW
SetWindowLongW
LoadCursorW
MonitorFromWindow
GetRawInputData
RegisterRawInputDevices
RegisterDeviceNotificationW
UnregisterDeviceNotification
ToUnicode
ChangeDisplaySettingsExW
EnumDisplaySettingsW
GetRawInputDeviceInfoA
GetRawInputDeviceList
SetForegroundWindow
SendMessageTimeoutW
RegisterWindowMessageW
GetForegroundWindow
ReleaseCapture
GetAsyncKeyState
SetWindowPos
ShowWindow
SendMessageW
LoadImageW
DestroyIcon
RemovePropW
GetWindowRect
SetPropW
EnumWindows
MessageBoxW
DispatchMessageW
GetPropW
GDI32.dll CreateCompatibleBitmap
CreateCompatibleDC
DeleteDC
GetDIBits
CreateRectRgn
GetPixel
CreateDCW
GetDeviceCaps
SetDeviceGammaRamp
ChoosePixelFormat
DescribePixelFormat
TextOutA
MoveToEx
Rectangle
LineTo
SetPixelFormat
SwapBuffers
CreatePen
SetTextColor
SetBkMode
SelectObject
GetStockObject
CreateSolidBrush
DeleteObject
BitBlt
CreateRoundRectRgn
ADVAPI32.dll OpenServiceW
QueryServiceConfigW
CloseServiceHandle
MSVCP140.dll ?cin@std@@3V?$basic_istream@DU?$char_traits@D@std@@@1@A
?peek@?$basic_istream@DU?$char_traits@D@std@@@std@@QEAAHXZ
?fail@ios_base@std@@QEBA_NXZ
?id@?$collate@D@std@@2V0locale@2@A
?_Decref@facet@locale@std@@UEAAPEAV_Facet_base@3@XZ
?_Incref@facet@locale@std@@UEAAXXZ
?_Xregex_error@std@@YAXW4error_type@regex_constants@1@@Z
??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@_J@Z
?tolower@?$ctype@D@std@@QEBADD@Z
?_Init@locale@std@@CAPEAV_Locimp@12@_N@Z
??1facet@locale@std@@MEAA@XZ
??0facet@locale@std@@IEAA@_K@Z
?c_str@?$_Yarn@D@std@@QEBAPEBDXZ
?_Getcoll@_Locinfo@std@@QEBA?AU_Collvec@@XZ
??1_Locinfo@std@@QEAA@XZ
??0_Locinfo@std@@QEAA@PEBD@Z
_Strxfrm
_Strcoll
??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@I@Z
??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@G@Z
??5?$basic_istream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@AEAN@Z
??5?$basic_istream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@AEAH@Z
_Xtime_get_ticks
_Cnd_unregister_at_thread_exit
_Cnd_register_at_thread_exit
_Cnd_wait
?__ExceptionPtrCopyException@@YAXPEAXPEBX1@Z
?__ExceptionPtrRethrow@@YAXPEBX@Z
?__ExceptionPtrToBool@@YA_NPEBX@Z
?__ExceptionPtrAssign@@YAXPEAXPEBX@Z
?__ExceptionPtrCopy@@YAXPEAXPEBX@Z
?__ExceptionPtrDestroy@@YAXPEAX@Z
?__ExceptionPtrCreate@@YAXPEAX@Z
?tellg@?$basic_istream@DU?$char_traits@D@std@@@std@@QEAA?AV?$fpos@U_Mbstatet@@@2@XZ
?seekg@?$basic_istream@DU?$char_traits@D@std@@@std@@QEAAAEAV12@_JH@Z
?read@?$basic_istream@DU?$char_traits@D@std@@@std@@QEAAAEAV12@PEAD_J@Z
??1?$basic_iostream@DU?$char_traits@D@std@@@std@@UEAA@XZ
??0?$basic_iostream@DU?$char_traits@D@std@@@std@@QEAA@PEAV?$basic_streambuf@DU?$char_traits@D@std@@@1@@Z
??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@K@Z
?_Random_device@std@@YAIXZ
??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@_N@Z
?setf@ios_base@std@@QEAAHH@Z
?widen@?$basic_ios@DU?$char_traits@D@std@@@std@@QEBADD@Z
_Thrd_detach
?_Xinvalid_argument@std@@YAXPEBD@Z
?_Fiopen@std@@YAPEAU_iobuf@@PEB_WHH@Z
?id@?$ctype@D@std@@2V0locale@2@A
?_Ipfx@?$basic_istream@DU?$char_traits@D@std@@@std@@QEAA_N_N@Z
?snextc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHXZ
?sgetc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHXZ
?getloc@ios_base@std@@QEBA?AVlocale@2@XZ
?_Getcat@?$ctype@D@std@@SA_KPEAPEBVfacet@locale@2@PEBV42@@Z
_Thrd_hardware_concurrency
?clear@?$basic_ios@DU?$char_traits@D@std@@@std@@QEAAXH_N@Z
?sbumpc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHXZ
?rdstate@ios_base@std@@QEBAHXZ
_Cnd_do_broadcast_at_thread_exit
_Cnd_signal
_Cnd_broadcast
_Thrd_id
_Thrd_join
??0?$basic_istream@DU?$char_traits@D@std@@@std@@QEAA@PEAV?$basic_streambuf@DU?$char_traits@D@std@@@1@_N@Z
??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@PEAV?$basic_streambuf@DU?$char_traits@D@std@@@1@@Z
??7ios_base@std@@QEBA_NXZ
?_Winerror_map@std@@YAHH@Z
?_Syserror_map@std@@YAPEBDH@Z
?_Lock@?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAAXXZ
?_Unlock@?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAAXXZ
?uflow@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAHXZ
?setbuf@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAPEAV12@PEAD_J@Z
?sync@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAHXZ
?imbue@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAXAEBVlocale@2@@Z
?write@?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV12@PEBD_J@Z
??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@N@Z
??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@_K@Z
?setp@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAXPEAD00@Z
?setp@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAXPEAD0@Z
?pbase@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEBAPEADXZ
?id@?$codecvt@DDU_Mbstatet@@@std@@2V0locale@2@A
?_Id_cnt@id@locale@std@@0HA
?showmanyc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JXZ
?_Fiopen@std@@YAPEAU_iobuf@@PEBDHH@Z
?flush@?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV12@XZ
??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@H@Z
?_Osfx@?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAXXZ
??1?$basic_ostream@DU?$char_traits@D@std@@@std@@UEAA@XZ
??0?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAA@PEAV?$basic_streambuf@DU?$char_traits@D@std@@@1@_N@Z
??0?$basic_ios@DU?$char_traits@D@std@@@std@@IEAA@XZ
?fill@?$basic_ios@DU?$char_traits@D@std@@@std@@QEBADXZ
?rdbuf@?$basic_ios@DU?$char_traits@D@std@@@std@@QEBAPEAV?$basic_streambuf@DU?$char_traits@D@std@@@2@XZ
?tie@?$basic_ios@DU?$char_traits@D@std@@@std@@QEBAPEAV?$basic_ostream@DU?$char_traits@D@std@@@2@XZ
?setstate@?$basic_ios@DU?$char_traits@D@std@@@std@@QEAAXH_N@Z
??1?$basic_ios@DU?$char_traits@D@std@@@std@@UEAA@XZ
?xsputn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JPEBD_J@Z
?xsgetn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JPEAD_J@Z
?_Init@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAXPEAPEAD0PEAH001@Z
?_Init@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAXXZ
?_Pnavail@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEBA_JXZ
?_Pninc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAPEADXZ
?pbump@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAXH@Z
?_Gnavail@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEBA_JXZ
?_Gninc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAPEADXZ
?_Gndec@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAPEADXZ
?epptr@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEBAPEADXZ
?setg@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAXPEAD00@Z
?gbump@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAXH@Z
?egptr@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEBAPEADXZ
?pptr@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEBAPEADXZ
?gptr@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEBAPEADXZ
?eback@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEBAPEADXZ
?sputn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAA_JPEBD_J@Z
?sputc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHD@Z
?getloc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEBA?AVlocale@2@XZ
??1?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAA@XZ
??0?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAA@XZ
?width@ios_base@std@@QEAA_J_J@Z
?width@ios_base@std@@QEBA_JXZ
?flags@ios_base@std@@QEBAHXZ
?good@ios_base@std@@QEBA_NXZ
??Bios_base@std@@QEBA_NXZ
?_Getcat@?$codecvt@DDU_Mbstatet@@@std@@SA_KPEAPEBVfacet@locale@2@PEBV42@@Z
?unshift@?$codecvt@DDU_Mbstatet@@@std@@QEBAHAEAU_Mbstatet@@PEAD1AEAPEAD@Z
?out@?$codecvt@DDU_Mbstatet@@@std@@QEBAHAEAU_Mbstatet@@PEBD1AEAPEBDPEAD3AEAPEAD@Z
?always_noconv@codecvt_base@std@@QEBA_NXZ
?_Getgloballocale@locale@std@@CAPEAV_Locimp@12@XZ
?uncaught_exceptions@std@@YAHXZ
??1_Lockit@std@@QEAA@XZ
??0_Lockit@std@@QEAA@H@Z
?_Xout_of_range@std@@YAXPEBD@Z
?_Throw_Cpp_error@std@@YAXH@Z
_Mtx_unlock
_Mtx_lock
?_Xbad_function_call@std@@YAXXZ
_Thrd_yield
_Query_perf_frequency
_Query_perf_counter
?_Xlength_error@std@@YAXPEBD@Z
?_Xbad_alloc@std@@YAXXZ
??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@M@Z
??_D?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAXXZ
?overflow@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAHH@Z
__crtLCMapStringA
?rdbuf@?$basic_ios@DU?$char_traits@D@std@@@std@@QEAAPEAV?$basic_streambuf@DU?$char_traits@D@std@@@2@PEAV32@@Z
?seekpos@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA?AV?$fpos@U_Mbstatet@@@2@V32@H@Z
?seekoff@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA?AV?$fpos@U_Mbstatet@@@2@_JHH@Z
?underflow@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAHXZ
??1?$basic_istream@DU?$char_traits@D@std@@@std@@UEAA@XZ
?pbackfail@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAHH@Z
?precision@ios_base@std@@QEAA_J_J@Z
?in@?$codecvt@DDU_Mbstatet@@@std@@QEBAHAEAU_Mbstatet@@PEBD1AEAPEBDPEAD3AEAPEAD@Z
COMCTL32.dll #410
#413
#412
SETUPAPI.dll SetupDiEnumDeviceInterfaces
SetupDiGetDeviceInterfaceDetailW
SetupDiGetClassDevsW
SetupDiDestroyDeviceInfoList
HID.DLL HidD_GetAttributes
HidD_GetHidGuid
HidD_GetPreparsedData
HidD_FreePreparsedData
HidP_GetCaps
IMM32.dll ImmGetContext
ImmReleaseContext
ImmSetCompositionWindow
ImmSetCandidateWindow
dbghelp.dll SymFromAddr
VCRUNTIME140.dll memset
__std_terminate
memcmp
strstr
memchr
memcpy
memmove
strchr
_purecall
__RTDynamicCast
wcsrchr
__RTtypeid
__std_exception_copy
__std_exception_destroy
__std_type_info_compare
__C_specific_handler
__current_exception_context
__current_exception
_CxxThrowException
VCRUNTIME140_1.dll __CxxFrameHandler4
api-ms-win-crt-heap-l1-1-0.dll realloc
malloc
free
_callnewh
_set_new_mode
_aligned_malloc
_aligned_free
calloc
api-ms-win-crt-runtime-l1-1-0.dll _beginthreadex
_resetstkoflw
terminate
_configure_narrow_argv
_set_app_type
_seh_filter_exe
_initialize_narrow_environment
_get_initial_narrow_environment
_initterm
_initterm_e
__p___argc
abort
exit
_cexit
_errno
_c_exit
_register_thread_local_exe_atexit_callback
_initialize_onexit_table
_register_onexit_function
_crt_atexit
__p___argv
strerror_s
_exit
_invalid_parameter_noinfo
api-ms-win-crt-stdio-l1-1-0.dll _write
__stdio_common_vsscanf
ftell
fseek
ungetc
setvbuf
fwrite
__stdio_common_vfprintf
_wfopen
_fseeki64
__acrt_iob_func
fsetpos
fclose
fread
__p__commode
fputc
fgetpos
_set_fmode
__stdio_common_vswprintf_s
fgetc
__stdio_common_vsprintf
fflush
_get_stream_buffer_pointers
__stdio_common_vsprintf_s
api-ms-win-crt-string-l1-1-0.dll _wcsicmp
iswspace
wcslen
strlen
toupper
towlower
islower
isupper
ispunct
isxdigit
isalnum
strncat
isspace
isdigit
wcscpy_s
strcpy
strcspn
strspn
wcscmp
tolower
strncpy
strncmp
strcmp
wcscpy
api-ms-win-crt-math-l1-1-0.dll floorf
exp
cosf
expm1
logf
log10f
log1p
atan2f
acosf
fmodf
sqrt
sqrtf
tanf
frexp
ldexp
_dsign
sinf
log1pf
sin
ceilf
_fdclass
__setusermatherr
_dclass
fmod
ceil
llround
lroundf
floor
powf
roundf
lround
expf
round
log
pow
api-ms-win-crt-filesystem-l1-1-0.dll _unlock_file
_lock_file
api-ms-win-crt-convert-l1-1-0.dll atof
strtoul
atoi
strtol
strtoll
strtod
strtoull
api-ms-win-crt-utility-l1-1-0.dll qsort
api-ms-win-crt-time-l1-1-0.dll _time64
_localtime64_s
strftime
_localtime64
api-ms-win-crt-locale-l1-1-0.dll ___lc_codepage_func
_configthreadlocale
___lc_collate_cp_func
___lc_locale_name_func
localeconv
api-ms-win-crt-environment-l1-1-0.dll getenv
api-ms-win-core-file-l1-2-2.dll AreFileApisANSI
api-ms-win-core-file-l2-1-0.dll MoveFileExW
GetFileInformationByHandleEx
CopyFile2
api-ms-win-core-interlocked-l1-1-0.dll InterlockedPushEntrySList
InitializeSListHead
api-ms-win-core-winrt-l1-1-0.dll RoGetActivationFactory
api-ms-win-core-winrt-error-l1-1-1.dll RoOriginateLanguageException
OLEAUT32.dll GetErrorInfo
SysFreeString
SysStringLen
SetErrorInfo
api-ms-win-core-heap-l1-1-0.dll HeapFree
HeapAlloc
GetProcessHeap

Delayed Imports

g_anti_tamper_slot

Ordinal 1
Address 0x3d61b8

1

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x1a68
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.37722
MD5 f27aa30d9ddbe0f3f77584746f8f5db1
SHA1 8e9c17c6770948e0edc4f577e11830340d468a62
SHA256 43fce28f0d016f06ff578231af913de081636c21a0f1edf620b92e6e12b72790
SHA3 e210d0b73ae0328b32c745d30624f885b34240717870df0d7ea5201b523f636b

1 (#2)

Type RT_GROUP_ICON
Language English - United States
Codepage UNKNOWN
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 1.91924
Detected Filetype Icon file
MD5 dc50bc98ce9fb9d33cb41255cb360332
SHA1 6d8f81eb1dc831282a08a97654cf57bd9b64401d
SHA256 f78beaa8a648d5fea615e001cf967454caf3607d17409b7fa64ecc4ed4e781db
SHA3 0989f41a27e95c8d353e75c0338da1b3c31340d2c56ef1957eeaa9902b257d11

1 (#3)

Type RT_MANIFEST
Language English - United States
Codepage UNKNOWN
Size 0x17d
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.91161
MD5 1e4a89b11eae0fcf8bb5fdd5ec3b6f61
SHA1 4260284ce14278c397aaf6f389c1609b0ab0ce51
SHA256 4bb79dcea0a901f7d9eac5aa05728ae92acb42e0cb22e5dd14134f4421a3d8df
SHA3 4bb9e8b5a714cae82782f3831cc2d45f4bf4a50a755fe584d2d1893129d68353

Version Info

IMAGE_DEBUG_TYPE_POGO

Characteristics 0
TimeDateStamp 2026-Jul-13 15:24:07
Version 0.0
SizeofData 1028
AddressOfRawData 0x415d90
PointerToRawData 0x414990

TLS Callbacks

StartAddressOfRawData 0x1404161c0
EndAddressOfRawData 0x140416421
AddressOfIndex 0x1404781e4
AddressOfCallbacks 0x140368a50
SizeOfZeroFill 0
Characteristics IMAGE_SCN_ALIGN_64BYTES
Callbacks 0x000000014034123C
0x0000000140341108

Load Configuration

Size 0x140
TimeDateStamp 1970-Jan-01 00:00:00
Version 0.0
GlobalFlagsClear (EMPTY)
GlobalFlagsSet (EMPTY)
CriticalSectionDefaultTimeout 0
DeCommitFreeBlockThreshold 0
DeCommitTotalFreeThreshold 0
LockPrefixTable 0
MaximumAllocationSize 0
VirtualMemoryThreshold 0
ProcessAffinityMask 0
ProcessHeapFlags (EMPTY)
CSDVersion 0
Reserved1 0
EditList 0
SecurityCookie 0x14046b240

RICH Header

XOR Key 0xd44b43db
Unmarked objects 0
C objects (35403) 10
C++ objects (35403) 47
ASM objects (35403) 6
Imports (35403) 6
Imports (35224) 2
Imports (35727) 2
Imports (VS2008 SP1 build 30729) 94
Imports (33145) 35
Total imports 868
C objects (35727) 16
C++ objects (35727) 228
Exports (35727) 1
Resource objects (35727) 1
151 1
Linker (35727) 1

Errors

Leave a comment

No comments yet.