The binkw32.dll (RAD Video Tools) File Analysis
Technical Analysis
| File Name | binkw32.dll |
| File Type |
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
|
| Scanner Version | 1.0.249.174 |
| Database Version | 2026-07-03 07:00:23 UTC |
Clean File
No threats detected by our scanner
Scan Another File
File Identification
| Hash Type | Value | Action |
|---|---|---|
| MD5 |
128b560ef70e8085c507368da6f26fe6
|
|
| SHA1 |
016558453bacdf92830eb8cb68b9fc11c29ac05c
|
|
| SHA256 |
a4ddcf8d78eac388cbc85155ef37a251a77f50de79d0b975ab9bb65bd0375698
|
|
| SHA512 |
3f4a2fb8dc0269f442d541e3f7feef280333f1796ab6e4af18f36bbe701dc44cf3107434e19090fbafb7d515e16c58c0ef9b11e780eca9e28d3a5d729cc19f95
|
|
| ImpHash |
e19e3b97f8350c904fa8ff9621724dc5
|
PE Analysis
Basic Information
▼| Icon |
Hash: 0a90235094a71d415860145540e74628
Fuzzy: e98a80edc16daf72a41c04b1dd054906 dHash: a442f0f0f071724e |
| Image Base | 0x18000000 |
| Entry Point | 0x18001d80 |
| Compilation Time | 2009-09-03 09:43:32 |
| Checksum | 0x00035431 (Actual: 0x00035431) |
| OS Version | 4.0 |
| PEiD Signatures |
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
|
| PDB Path | C:\devel\projects\bink\build\binkw32.pdb |
| Digital Signature | OK |
| Imports |
4 libraries
USER32, GDI32, KERNEL32, WINMM |
| Exports | 72 functions |
| Resources | 7 Resources |
| Sections | 14 Sections |
Version Information
▼| CompanyName | RAD Game Tools, Inc. |
| FileDescription | RAD Video Tools |
| FileVersion | 1.9p |
| LegalCopyright | Copyright (C) 1994-2009, RAD Game Tools, Inc. |
| LegalTrademarks | Bink and Smacker are trademarks of RAD Game Tools, Inc. |
| ProductName | Bink and Smacker |
| ProductVersion | 1.9p |
| Comments | Thank you for using Bink and Smacker! |
| Translation | 0x0409 0x04e4 |
PE Sections
▼| Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
|---|---|---|---|---|---|---|
.text |
0x00001000 |
4,428 bytes | 4,608 bytes | 6.26 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
BC5920763850EDF852FFFFDCC702073E |
BINKY12 |
0x00003000 |
432 bytes | 512 bytes | 5.42 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
7381ABE3728EAB7DB3E4B89CCB91AA52 |
BINKY16 |
0x00004000 |
2,264 bytes | 2,560 bytes | 5.88 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
AED0D86CE10B7B8AA2D539F615985D78 |
BINKP8 |
0x00005000 |
2,297 bytes | 2,560 bytes | 6.20 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
74375414F47D29C349D3841DD6963CB8 |
BINK16 |
0x00006000 |
4,107 bytes | 4,608 bytes | 6.11 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
8F39B7160BE111BD59EF1C37E08E2AA4 |
BINK32 |
0x00008000 |
4,938 bytes | 5,120 bytes | 6.37 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
8B7B4A4B4C36CFD8FC04768AE41B142B |
BINK |
0x0000a000 |
95,586 bytes | 95,744 bytes | 6.57 (Compressed) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
E1097B8BA6639649AF097C15D642D183 |
BINKBSS |
0x00022000 |
21,280 bytes | 0 bytes | 0.00 (Normal) |
IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
D41D8CD98F00B204E9800998ECF8427E |
.rdata |
0x00028000 |
5,881 bytes | 6,144 bytes | 5.46 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
5F225D4D965905ED5BEE8CB7E01F4E32 |
.data |
0x0002a000 |
152 bytes | 512 bytes | 1.06 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
6C7B50137F2A5D53EE97B4A3D9CC7C10 |
BINKCONS |
0x0002b000 |
20,624 bytes | 20,992 bytes | 6.17 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
A40B966A18212971A0292A6EEA65A9E9 |
BINKDATA |
0x00031000 |
16,536 bytes | 16,896 bytes | 7.58 (Packed/Encrypted) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
B66417DC04DABD05EA6A04EC4EE3D1BB |
.rsrc |
0x00036000 |
8,568 bytes | 8,704 bytes | 4.73 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
D16BAB783B562D19AD6725E64015EE98 |
.reloc |
0x00039000 |
4,854 bytes | 5,120 bytes | 6.07 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
3E8F6B45A24AF74FC73F2C7C493FD47F |
Entropy Analysis Alert
1 section(s) with high entropy (≥7.5) detected - possible packing/encryption
1 section(s) with elevated entropy (≥6.5) - possible compression
Resource Analysis
▼| Resource Type | Count | Total Size | Percentage |
|---|---|---|---|
| RT_ICON | 4 | 7,008 bytes | |
| RT_STRING | 1 | 130 bytes | |
| RT_GROUP_ICON | 1 | 62 bytes | |
| RT_VERSION | 1 | 908 bytes |
Certificate Chain Analysis
▼Certificate Information
| Product | Bink and Smacker |
| Description | RAD Video Tools |
| File Version | 1.9p |
| Signing Date | 07:34 PM 09/15/2009 (6134 days ago) |
| Verification Status | Signed |
| Signers | Epic Games Inc.; VeriSign Class 3 Code Signing 2004 CA; VeriSign Class 3 Public Primary CA |
| Counter Signers | VeriSign Time Stamping Services Signer - G2; VeriSign Time Stamping Services CA; Thawte Timestamping CA |
| Copyright | Copyright (C) 1994-2009, RAD Game Tools, Inc. |
Certificate Chain Summary
38 25 D7 FA F8 61 AF 9E F4 90 E7 26 B5 D6 5A D547 BF 19 95 DF 8D 52 46 43 F7 DB 6D 48 0D 31 A441 91 A1 5A 39 78 DF CF 49 65 66 38 1D 4C 75 C21C 16 CD DA D8 96 19 07 E5 70 4B 82 D9 A1 58 42✓ This file has been digitally signed and the certificate chain has been verified
- The signature ensures file integrity and authenticity from the publisher
- Timestamping proves when the signature was applied
Certificate Verification Status
OK
Remember: This is Result of Online Virus Scanner
Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:
Download Anti-Malware
Keep Your System Protected
This file appears clean, but regular security maintenance is important
-
1
Weekly Quick Scans: Set a reminder to run a scan every Sunday. Most infections are caught within the first week, so regular checks give you peace of mind.
-
2
Update Everything: Those annoying update popups exist for a reason — they patch security holes. Windows, browsers, Adobe, Java — keep them all current.
-
3
Download Smart: Stick to official websites and app stores. If a "free" version of paid software sounds too good to be true, it probably comes with unwanted extras.
-
4
Think Before You Click: Malware loves email attachments and "urgent" links. Even if an email looks like it's from your bank or a friend, verify suspicious requests through a different channel.
Leave a Comment
Gridinsoft Anti-Malware
Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware
Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!