filename | csgo.exe | |
---|---|---|
size | 103424 (0x19400) | |
md5 | 260a37cecb4ad3993b3b1dddac48dd10 | |
type | PE32 executable (GUI) Intel 80386, for MS Windows | |
mimetype | application/x-dosexec | |
clamav | OK | |
virustotal | → scan with virustotal.com | |
histogram |
MZ Header
signature | MZ |
bytes_in_last_block | 0x90 |
blocks_in_file | 3 |
num_relocs | 0 |
header_paragraphs | 4 |
min_extra_paragraphs | 0 |
max_extra_paragraphs | 0xffff |
ss | 0 |
sp | 0xb8 |
checksum | 0 |
ip | 0 |
cs | 0 |
reloc_table_offset | 0x40 |
overlay_number | 0 |
reserved0 | 0 |
oem_id | 0 |
oem_info | 0 |
reserved2 | 0 |
reserved3 | 0 |
reserved4 | 0 |
reserved5 | 0 |
reserved6 | 0 |
lfanew | 0x100 |
DOS stub
00000000: 56 4c 56 00 01 00 00 00 00 94 01 00 7d 42 5e 55 |VLV.........}B^U| 00000010: 7f 0c 3b bd 2e 20 85 a4 4b c7 3b a2 77 68 a9 17 |..;.. ..K.;.wh..| 00000020: bb 52 59 dc 0c c6 80 98 3b 55 5e 70 a9 47 c8 8e |.RY.....;U^p.G..| 00000030: 39 bf 97 44 a2 3d 46 e2 5a 71 8f 65 ab 87 43 80 |9..D.=F.Zq.e..C.| 00000040: cc a6 78 d9 cb 22 d2 26 3b c7 62 64 66 3c c1 a8 |..x..".&;.bdf<..| 00000050: 03 20 6a 29 0b 6a f2 ed 6b 9d 08 d4 41 c3 f1 42 |. j).j..k...A..B| 00000060: 20 e4 31 03 bc 61 5d 47 57 56 f6 12 36 75 04 d4 | .1..a]GWV..6u..| 00000070: 84 32 8a f5 fb 82 13 b8 36 18 92 68 ef f3 14 4c |.2......6..h...L| 00000080: 20 10 a9 4e 15 89 82 69 37 06 20 d9 2a fe 66 dd | ..N...i7. .*.f.| 00000090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................| * 000000c0:
PE Header
Packer / Compiler
Sections
name | va | vsize | raw size | flags | |
---|---|---|---|---|---|
.text | 0x1000 | 0xd69c | 0xd800 | R-X CODE | |
.rdata | 0xf000 | 0x4a2c | 0x4c00 | R-- IDATA | |
.data | 0x14000 | 0x3144 | 0x1200 | RW- IDATA | |
.rsrc | 0x18000 | 0x4860 | 0x4a00 | R-- IDATA | |
.reloc | 0x1d000 | 0xe18 | 0x1000 | R-- IDATA DISCARDABLE |
Data Directory
module_name | hint | ord | function_name |
---|---|---|---|
USER32.dll | 526 | MessageBoxA | |
KERNEL32.dll | 739 | InitializeCriticalSectionAndSpinCount | |
KERNEL32.dll | 82 | CloseHandle | |
KERNEL32.dll | 349 | FormatMessageA | |
KERNEL32.dll | 514 | GetLastError | |
KERNEL32.dll | 581 | GetProcAddress | |
KERNEL32.dll | 531 | GetModuleFileNameA | |
KERNEL32.dll | 829 | LoadLibraryExA | |
KERNEL32.dll | 840 | LocalFree | |
KERNEL32.dll | 945 | RaiseException | |
KERNEL32.dll | 871 | MultiByteToWideChar | |
KERNEL32.dll | 390 | GetCommandLineA | |
KERNEL32.dll | 768 | IsDebuggerPresent | |
KERNEL32.dll | 234 | EncodePointer | |
KERNEL32.dll | 202 | DecodePointer | |
KERNEL32.dll | 772 | IsProcessorFeaturePresent | |
KERNEL32.dll | 238 | EnterCriticalSection | |
KERNEL32.dll | 825 | LeaveCriticalSection | |
KERNEL32.dll | 209 | DeleteCriticalSection | |
KERNEL32.dll | 1297 | WideCharToMultiByte | |
KERNEL32.dll | 281 | ExitProcess | |
KERNEL32.dll | 535 | GetModuleHandleExW | |
KERNEL32.dll | 1110 | SetEnvironmentVariableA | |
KERNEL32.dll | 1111 | SetEnvironmentVariableW | |
KERNEL32.dll | 719 | HeapFree | |
KERNEL32.dll | 1139 | SetLastError | |
KERNEL32.dll | 453 | GetCurrentThreadId | |
KERNEL32.dll | 586 | GetProcessHeap | |
KERNEL32.dll | 612 | GetStdHandle | |
KERNEL32.dll | 499 | GetFileType | |
KERNEL32.dll | 611 | GetStartupInfoW | |
KERNEL32.dll | 1317 | WriteFile | |
KERNEL32.dll | 532 | GetModuleFileNameW | |
KERNEL32.dll | 935 | QueryPerformanceCounter | |
KERNEL32.dll | 449 | GetCurrentProcessId | |
KERNEL32.dll | 633 | GetSystemTimeAsFileTime | |
KERNEL32.dll | 474 | GetEnvironmentStringsW | |
KERNEL32.dll | 353 | FreeEnvironmentStringsW | |
KERNEL32.dll | 1235 | UnhandledExceptionFilter | |
KERNEL32.dll | 1189 | SetUnhandledExceptionFilter | |
KERNEL32.dll | 1202 | Sleep | |
KERNEL32.dll | 448 | GetCurrentProcess | |
KERNEL32.dll | 1216 | TerminateProcess | |
KERNEL32.dll | 1221 | TlsAlloc | |
KERNEL32.dll | 1223 | TlsGetValue | |
KERNEL32.dll | 1224 | TlsSetValue | |
KERNEL32.dll | 1222 | TlsFree | |
KERNEL32.dll | 536 | GetModuleHandleW | |
KERNEL32.dll | 410 | GetConsoleCP | |
KERNEL32.dll | 428 | GetConsoleMode | |
KERNEL32.dll | 1127 | SetFilePointerEx | |
KERNEL32.dll | 778 | IsValidCodePage | |
KERNEL32.dll | 360 | GetACP | |
KERNEL32.dll | 567 | GetOEMCP | |
KERNEL32.dll | 370 | GetCPInfo | |
KERNEL32.dll | 715 | HeapAlloc | |
KERNEL32.dll | 1048 | RtlUnwind | |
KERNEL32.dll | 830 | LoadLibraryExW | |
KERNEL32.dll | 722 | HeapReAlloc | |
KERNEL32.dll | 906 | OutputDebugStringW | |
KERNEL32.dll | 1159 | SetStdHandle | |
KERNEL32.dll | 1316 | WriteConsoleW | |
KERNEL32.dll | 617 | GetStringTypeW | |
KERNEL32.dll | 100 | CompareStringW | |
KERNEL32.dll | 813 | LCMapStringW | |
KERNEL32.dll | 724 | HeapSize | |
KERNEL32.dll | 343 | FlushFileBuffers | |
KERNEL32.dll | 143 | CreateFileW |
Please donate some bucks to keep this site up and running: | |
Ko-fi | |
---|---|
Yandex.Money | |
Thank you! |
everything is OK