
TinyLoad
Summary
TinyLoad v7.4 is an open-source packer and crypter for Windows x64 PE executables. It adds protection layers intended to make packed programs harder to reverse engineer. The packed file appends a payload to a copy of itself, then extracts, decrypts, and runs it in memory without writing the original payload to disk. Optional LZ77 compression uses hash-chain matching with a 64 KB sliding window. Its custom virtual machine has 28 opcodes in four subtables, and the payload uses XXTEA encryption. With VEH enabled, pages decrypt when accessed and a watchdog re-encrypts pages untouched for 200 ms. TinyLoad also redirects four APIs through wrappers and clears the payload’s import directory after loading. It accepts x64 PE files and requires at least one of VM encryption, compression, or VEH. The MIT-licensed project can be built with MinGW g++ or build.bat, and precompiled binaries are linked from GitHub Releases. The maker reports nine VirusTotal detections for TinyLoad and files packed with it.
Who it is for
TinyLoad is for users packing 64-bit PE executables on Windows who need the listed protection options. The maker describes it as intended for legitimate purposes and asks users not to pack malware with it.
What is good
- Open-source project licensed under MIT.
- Offers optional LZ77 compression and VEH features.
- Packed payload executes in memory without writing the original to disk.
- Precompiled binaries and source code are available.
What to know first
- Supports 64-bit PE files only.
- Requires VM encryption, compression, or VEH.
- The maker reports nine VirusTotal detections.
- The maker says packers are expected to be flagged.
Verdict
TinyLoad offers several packing and protection options for Windows x64 PE files. Its architecture limit and reported antivirus detections are important considerations.
Compared on executable packers
- Free plan
- Yesiamsopotatoe-coder.github.io
- Supported platforms
- Windows x64iamsopotatoe-coder.github.io
- Binary formats
- PE, EXEiamsopotatoe-coder.github.io
- Compression levels
- customiamsopotatoe-coder.github.io
- Protection features
- Yesiamsopotatoe-coder.github.io
- Architecture support
- 64-bitiamsopotatoe-coder.github.io
- License model
- perpetualiamsopotatoe-coder.github.io
Facts
- Product
- TinyLoad v7.4 is an open-source PE packer and crypter for Windows x64 executables.github.com · 3 Oct 2026
- Purpose
- It packs executables with protection layers intended to make them harder to reverse engineer.github.com · 3 Oct 2026
- In-memory execution
- The packed executable extracts and decrypts its payload, then executes it in memory without writing the original payload to disk.iamsopotatoe-coder.github.io · 3 Oct 2026
- Compression
- Its optional LZ77 compression uses hash-chain matching and a 64 KB sliding window.iamsopotatoe-coder.github.io · 3 Oct 2026
- VM encryption
- Its custom virtual machine uses 28 opcodes arranged in four subtables, and the payload is encrypted using XXTEA.iamsopotatoe-coder.github.io · 3 Oct 2026
- Page decryption
- With the optional VEH feature, pages are decrypted on access and a watchdog re-encrypts pages that have not been touched in 200 ms.iamsopotatoe-coder.github.io · 3 Oct 2026
- Anti-dump
- The site says TinyLoad redirects four APIs through wrapper functions and zeroes the payload’s import directory after loading.iamsopotatoe-coder.github.io · 3 Oct 2026
- Input requirements
- The packer accepts x64 PE executables and requires at least one of the VM encryption, compression, or VEH options.github.com · 3 Oct 2026
- Build requirements
- The maker says to build from source with MinGW g++ or the included build.bat file, and describes the project as a single C++ source file with no external dependencies.github.com · 3 Oct 2026
- Downloads
- The maker links to GitHub Releases for precompiled binaries and also offers source code in the repository.github.com · 3 Oct 2026
- License
- The project is licensed under MIT.github.com · 3 Oct 2026
- Antivirus detections
- The maker says packers are expected to be flagged and reports nine VirusTotal detections for TinyLoad and files packed with it.iamsopotatoe-coder.github.io · 3 Oct 2026
- Support
- The maker invites users to open an issue if TinyLoad breaks on their file and to submit suggestions or feature ideas through issues.iamsopotatoe-coder.github.io · 3 Oct 2026
- Intended use
- The maker says TinyLoad is intended for legitimate purposes and asks users not to pack malware with it.iamsopotatoe-coder.github.io · 3 Oct 2026
- How it works
- It appends a payload to a copy of itself, then extracts, decrypts, and executes the payload in memory without writing the original to disk.iamsopotatoe-coder.github.io · 3 Oct 2026
- Encryption
- Its 28 opcode virtual machine uses randomly placed opcodes in four independently keyed subtables, and the payload is encrypted using XXTEA.iamsopotatoe-coder.github.io · 3 Oct 2026
- Memory handling
- With VEH enabled, a vectored exception handler decrypts PE section pages on access and a watchdog re-encrypts pages untouched for 200ms.iamsopotatoe-coder.github.io · 3 Oct 2026
- Usage requirements
- At least one of --vm, --c, or --veh is required when packing an executable.iamsopotatoe-coder.github.io · 3 Oct 2026
- Build
- The maker says to build from source with MinGW (g++) or use build.bat.iamsopotatoe-coder.github.io · 3 Oct 2026
- Compatibility limit
- The maker says TinyLoad works on most files they have tested, and release notes state it supports only 64-bit PE files.iamsopotatoe-coder.github.io · 3 Oct 2026
Best TinyLoad alternatives
See all 12Where it ranks on Everything Xiaomi
- Best Executable Packers in 2026#10 of 27
Is TinyLoad yours?
Claim it for free: prove the domain, then correct facts, plans and screenshots. An editor reviews every change.
Sources
- github.com/iamsopotatoe-coder/TinyLoad· checked 3 Oct 2026
- iamsopotatoe-coder.github.io/TinyLoad/· checked 3 Oct 2026
- github.com/iamsopotatoe-coder/TinyLoad/releases· checked 3 Oct 2026