| Architecture |
IMAGE_FILE_MACHINE_AMD64
|
|---|---|
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| Compilation Date | 2026-Jun-25 21:26:19 |
| Detected languages |
English - United States
|
| Debug artifacts |
C:\Users\Voke\Desktop\wexize fixed\wexize fixed\x64\Release\Wexize Revamp.pdb
|
| Suspicious | Strings found in the binary may indicate undesirable behavior: |
Miscellaneous malware strings:
|
| Info | Cryptographic algorithms detected in the binary: |
Uses constants related to CRC32
Uses known Mersenne Twister constants |
| Malicious | The PE contains functions mostly used by malware. |
[!] The program may be hiding some of its imports:
|
| Malicious | VirusTotal score: 45/69 (Scanned on 2026-07-26 04:54:44) |
ALYac:
Trojan.Generic.40218745
APEX: Malicious AVG: Win64:MalwareX-gen [Cryp] AhnLab-V3: Trojan/Win.Generic.R693540 Alibaba: Trojan:Win64/GenKryptik.d5008bdb Antiy-AVL: Trojan/Win32.Sabsik Arcabit: Trojan.Generic.D265B079 Avast: Win64:MalwareX-gen [Cryp] Avira: TR/W64.MalwareX BitDefender: Trojan.Generic.40218745 Bkav: W32.Malware.2D9FA03D CTX: exe.trojan.genkryptik ClamAV: Win.Malware.Zusy-10058122-0 CrowdStrike: win/malicious_confidence_100% (W) Cylance: Unsafe Cynet: Malicious (score: 100) ESET-NOD32: Win64/GenKryptik_AGen.AMR trojan Elastic: malicious (high confidence) Emsisoft: Trojan.Generic.40218745 (B) F-Secure: Trojan.TR/W64.MalwareX Fortinet: W64/GenKryptik_AGen.AMR!tr GData: Trojan.Generic.40218745 Google: Detected Gridinsoft: Trojan.Win64.Kryptik.sa K7AntiVirus: Trojan ( 005cded11 ) K7GW: Trojan ( 005cded11 ) Lionic: Trojan.Win32.Generic.4!c Malwarebytes: Malware.AI.2704761171 McAfeeD: Trojan:Win/GenericY.EIK MicroWorld-eScan: Trojan.Generic.40218745 Microsoft: Trojan:Win32/Wacatac.B!ml Paloalto: generic.ml Rising: Trojan.Kryptik@AI.93 (RDML:Yye2WePQzA4unEJxr9Pptw) SentinelOne: Static AI - Malicious PE Sophos: Mal/Generic-S Symantec: ML.Attribute.HighConfidence Tencent: Malware.Win32.Gencirc.14b0656d Trapmine: malicious.high.ml.score TrellixENS: Artemis!3BBABE0B79F1 TrendMicro: Trojan.Win32.ZYX.USBLG126 TrendMicro-HouseCall: Trojan.Win32.ZYX.USBLG126 VIPRE: Trojan.Generic.40218745 Varist: W64/ABTrojan.VRXL-1220 ViRobot: Trojan.Win.Z.Agent.1845760.A alibabacloud: Trojan:Win/GenKryptik_AGen.AZY |
| MD5 | 3bbabe0b79f12b9fd0a13fb14d914693 🔍 |
|---|---|
| SHA1 | d352006fdb1324c1a91c75fd81fcc2219c1f8b4e 🔍 |
| SHA256 | 68e2ae79edb3dd441d0504ed75d5630ce32b80486fffec7b3f2cc64434788e82 🔍 |
| SHA3 | 79c0e34d49d0b6dcdc7b293a4efd9f9ccac96806f01aef6ac89dcee446244acc 🔍 |
| SSDeep | 24576:ApTU5WzrVGZsyEpFST8a/R4NuHkGv/8KA9aagTlIyTBfXQCFKJIvmOx:Ay5WzpGZREnST8+HE+/8naplIiB47lO 🔍 |
| Imports Hash | 5618b6a6e0877e593d9bc1b1a8f85ac4 🔍 |
| e_magic | MZ |
|---|---|
| e_cblp | 0x90 |
| e_cp | 0x3 |
| e_crlc | 0 |
| e_cparhdr | 0x4 |
| e_minalloc | 0 |
| e_maxalloc | 0xffff |
| e_ss | 0 |
| e_sp | 0xb8 |
| e_csum | 0 |
| e_ip | 0 |
| e_cs | 0 |
| e_ovno | 0 |
| e_oemid | 0 |
| e_oeminfo | 0 |
| e_lfanew | 0x108 |
| Signature | PE |
|---|---|
| Machine |
IMAGE_FILE_MACHINE_AMD64
|
| NumberofSections | 6 |
| TimeDateStamp | 2026-Jun-25 21:26:19 |
| PointerToSymbolTable | 0 |
| NumberOfSymbols | 0 |
| SizeOfOptionalHeader | 0xf0 |
| Characteristics |
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE
|
| Magic | PE32+ |
|---|---|
| LinkerVersion | 14.0 |
| SizeOfCode | 0xa6c00 |
| SizeOfInitializedData | 0x11e800 |
| SizeOfUninitializedData | 0 |
| AddressOfEntryPoint | 0x00000000000A2B20 (Section: .text) |
| BaseOfCode | 0x1000 |
| ImageBase | 0x140000000 |
| SectionAlignment | 0x1000 |
| FileAlignment | 0x200 |
| OperatingSystemVersion | 6.0 |
| ImageVersion | 0.0 |
| SubsystemVersion | 6.0 |
| Win32VersionValue | 0 |
| SizeOfImage | 0x1ca000 |
| SizeOfHeaders | 0x400 |
| Checksum | 0 |
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| DllCharacteristics |
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
|
| SizeofStackReserve | 0x100000 |
| SizeofStackCommit | 0x1000 |
| SizeofHeapReserve | 0x100000 |
| SizeofHeapCommit | 0x1000 |
| LoaderFlags | 0 |
| NumberOfRvaAndSizes | 16 |
| MD5 | 7998d23ac3ec8ae4eb4fafed4ba9f118 🔍 |
|---|---|
| SHA1 | 4f5098b74f2dc698ab3b2fb1485023bb8c00e0f9 🔍 |
| SHA256 | b873e29e9e18636c97378f88aecd821725a391fc1f36eb44d7f735589f75454d 🔍 |
| SHA3 | 66cd7cbbc752c29ac01445b1344d9c0b7456cdac415d3200a94db2949e3ce9b7 🔍 |
| VirtualSize | 0xa6b23 |
| VirtualAddress | 0x1000 |
| SizeOfRawData | 0xa6c00 |
| PointerToRawData | 0x400 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
|
| Entropy | 6.47175 |
| MD5 | bf81b8486ee7ad874c4caed195878394 🔍 |
|---|---|
| SHA1 | 3cfdd51f1d0708c46f16e2e2532e65fdb320088e 🔍 |
| SHA256 | 3edf066f0cb8dcd51b0615f21d851529c80764435b5e7b2581510eb608c76562 🔍 |
| SHA3 | b73d4de9d636f88b81a09b4a6b73d0038d2d5b4ddb5ee9d58898d1f13bc93a74 🔍 |
| VirtualSize | 0x6019a |
| VirtualAddress | 0xa8000 |
| SizeOfRawData | 0x60200 |
| PointerToRawData | 0xa7000 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
|
| Entropy | 6.86286 |
| MD5 | 966ac0b466d3792d8b58ee4edf5cddfb 🔍 |
|---|---|
| SHA1 | 36e360a57e45f9d80f3a6fe148dbfe63c337501e 🔍 |
| SHA256 | 12cc509d0fdd18cbcc3a2a78c62a6464deb4ec6e18ca6c753585e8d86c043112 🔍 |
| SHA3 | e4f7ff9e7f56493e50fd359048d5d77e4f3d459baba1a83b2fa04731f67508ab 🔍 |
| VirtualSize | 0xb8a98 |
| VirtualAddress | 0x109000 |
| SizeOfRawData | 0xb5e00 |
| PointerToRawData | 0x107200 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
|
| Entropy | 7.23611 |
| MD5 | 4d0851375e1ff3dc1d6d4f69a2cb2c02 🔍 |
|---|---|
| SHA1 | 696611725529768a3cb952bafa8ccd34fbf9f6ef 🔍 |
| SHA256 | 3da40c01cfc2e2c6e07c7bd63e16307270e8894b30db158e46590cced5857a7c 🔍 |
| SHA3 | a492f859143375579e6c998ad4f6e604862771eb4c26bb37d8204673d7642291 🔍 |
| VirtualSize | 0x5094 |
| VirtualAddress | 0x1c2000 |
| SizeOfRawData | 0x5200 |
| PointerToRawData | 0x1bd000 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
|
| Entropy | 5.88387 |
| MD5 | 764deee50e2ad3024f021bee545aeb19 🔍 |
|---|---|
| SHA1 | 191d9a7381d8dcace9186ec38c96eeeeb22ff163 🔍 |
| SHA256 | e7b456f8ab56d7e14546578bc3ce3edb2b8b78f6852d46e67c62a56727fe2425 🔍 |
| SHA3 | d3372862edc6aa9394f514b93f470210a96a6437a387f898b603ab65006577a5 🔍 |
| VirtualSize | 0x1e8 |
| VirtualAddress | 0x1c8000 |
| SizeOfRawData | 0x200 |
| PointerToRawData | 0x1c2200 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
|
| Entropy | 4.76666 |
| MD5 | 3128426f1ebbbc954b0762ff87e2fa47 🔍 |
|---|---|
| SHA1 | ccac9fca8515efd752548b2388f4bf248d69137a 🔍 |
| SHA256 | 4dbe028f17789b0007284607f96c4f3baf3619a5f45656585570eca2cfff2f6f 🔍 |
| SHA3 | 3ad93776dc0dbc724d97af21da97c19111a67d4025b3da59a1c1a8a93f27a504 🔍 |
| VirtualSize | 0x510 |
| VirtualAddress | 0x1c9000 |
| SizeOfRawData | 0x600 |
| PointerToRawData | 0x1c2400 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
|
| Entropy | 4.96687 |
| d3dx9_43.dll |
D3DXVec3Normalize
D3DXVec3Transform D3DXMatrixTranspose |
|---|---|
| d3d11.dll |
D3D11CreateDeviceAndSwapChain
|
| KERNEL32.dll |
GetProcAddress
GetStartupInfoA MultiByteToWideChar GlobalFree WideCharToMultiByte GetLocaleInfoA QueryPerformanceFrequency FreeLibrary QueryPerformanceCounter CreateRemoteThreadEx WriteProcessMemory VirtualProtect VirtualAlloc TerminateProcess GetProcessId DuplicateHandle Sleep GetTickCount64 GlobalLock GetCurrentProcessId CreateRemoteThread GetTickCount OpenThread IsDebuggerPresent CheckRemoteDebuggerPresent RtlCaptureContext GetModuleHandleA GlobalUnlock ExitProcess LoadLibraryA AcquireSRWLockExclusive SleepConditionVariableSRW RtlLookupFunctionEntry RtlVirtualUnwind UnhandledExceptionFilter SetUnhandledExceptionFilter IsProcessorFeaturePresent GetStartupInfoW GetModuleHandleW GetSystemTimeAsFileTime InitializeSListHead Beep GlobalAlloc GetLastError GetCurrentProcess WakeAllConditionVariable ReadProcessMemory VirtualProtectEx CloseHandle Process32Next K32GetModuleFileNameExA CreateToolhelp32Snapshot OpenProcess Module32First Module32Next Process32First VirtualFreeEx VirtualAllocEx LocalFree GetCommandLineA ReleaseSRWLockExclusive CreateThread GetCurrentThreadId |
| USER32.dll |
GetAsyncKeyState
mouse_event SetClipboardData GetClipboardData SetWindowDisplayAffinity EmptyClipboard CloseClipboard OpenClipboard ReleaseCapture UpdateWindow GetWindowThreadProcessId FindWindowA IsWindowVisible GetWindowTextA EnumWindows FindWindowW SetWindowsHookA GetWindowTextLengthA GetKeyState GetMessageExtraInfo LoadCursorA ScreenToClient GetCapture ClientToScreen TrackMouseEvent GetKeyboardLayout SetCapture SetCursor GetClientRect IsWindowUnicode GetForegroundWindow SetCursorPos GetCursorPos DispatchMessageA GetWindowRect DestroyWindow PostMessageA CallNextHookEx UnregisterClassW RegisterClassExW ShowWindow SetWindowLongA SetWindowsHookExA MessageBoxA MoveWindow UnhookWindowsHookEx DefWindowProcA SetLayeredWindowAttributes TranslateMessage PeekMessageA GetWindowLongPtrA PostQuitMessage |
| ADVAPI32.dll |
SetTokenInformation
QueryServiceStatus GetTokenInformation CloseServiceHandle OpenSCManagerA OpenProcessToken AdjustTokenPrivileges ConvertSidToStringSidA DuplicateTokenEx SetThreadToken LookupPrivilegeValueA OpenServiceA PrivilegeCheck RegGetValueA CreateProcessAsUserA RevertToSelf ControlService |
| ole32.dll |
CoInitializeEx
|
| freetype.dll |
FT_Done_Library
FT_Get_Char_Index FT_Select_Charmap FT_New_Library FT_Add_Default_Modules FT_Request_Size FT_Load_Glyph FT_New_Memory_Face FT_GlyphSlot_Oblique FT_GlyphSlot_Embolden FT_Render_Glyph FT_Done_Face |
| libcurl.dll |
curl_easy_perform
curl_easy_init curl_slist_append curl_easy_setopt curl_easy_cleanup curl_easy_getinfo |
| MSVCP140.dll |
?_Xbad_function_call@std@@YAXXZ
?uncaught_exceptions@std@@YAHXZ ??Bios_base@std@@QEBA_NXZ ??1?$basic_iostream@DU?$char_traits@D@std@@@std@@UEAA@XZ ?imbue@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAXAEBVlocale@2@@Z ?sync@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAHXZ ?setbuf@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAPEAV12@PEAD_J@Z ?xsputn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JPEBD_J@Z ?uflow@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAHXZ ?showmanyc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JXZ _Thrd_detach ?sputn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAA_JPEBD_J@Z ?_Osfx@?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAXXZ ?flush@?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV12@XZ ?sputc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHD@Z ??5?$basic_istream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@AEAI@Z ??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@P6AAEAVios_base@1@AEAV21@@Z@Z ?good@ios_base@std@@QEBA_NXZ ?id@?$codecvt@DDU_Mbstatet@@@std@@2V0locale@2@A ?_Fiopen@std@@YAPEAU_iobuf@@PEBDHH@Z ?getloc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEBA?AVlocale@2@XZ ?_Init@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAXXZ ?_Init@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAXPEAPEAD0PEAH001@Z ??0?$basic_istream@DU?$char_traits@D@std@@@std@@QEAA@PEAV?$basic_streambuf@DU?$char_traits@D@std@@@1@_N@Z ?_Getcat@?$codecvt@DDU_Mbstatet@@@std@@SA_KPEAPEBVfacet@locale@2@PEBV42@@Z ?widen@?$basic_ios@DU?$char_traits@D@std@@@std@@QEBADD@Z ?_Unlock@?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAAXXZ ?_Lock@?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAAXXZ ??1?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAA@XZ ??1?$basic_ios@DU?$char_traits@D@std@@@std@@UEAA@XZ ??0?$basic_iostream@DU?$char_traits@D@std@@@std@@QEAA@PEAV?$basic_streambuf@DU?$char_traits@D@std@@@1@@Z ?in@?$codecvt@DDU_Mbstatet@@@std@@QEBAHAEAU_Mbstatet@@PEBD1AEAPEBDPEAD3AEAPEAD@Z ?out@?$codecvt@DDU_Mbstatet@@@std@@QEBAHAEAU_Mbstatet@@PEBD1AEAPEBDPEAD3AEAPEAD@Z ?sbumpc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHXZ ??1?$basic_istream@DU?$char_traits@D@std@@@std@@UEAA@XZ ??7ios_base@std@@QEBA_NXZ ?always_noconv@codecvt_base@std@@QEBA_NXZ _Cnd_do_broadcast_at_thread_exit ?unshift@?$codecvt@DDU_Mbstatet@@@std@@QEBAHAEAU_Mbstatet@@PEAD1AEAPEAD@Z ?xsgetn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JPEAD_J@Z _Query_perf_frequency ?_Xbad_alloc@std@@YAXXZ _Query_perf_counter ?_Throw_Cpp_error@std@@YAXH@Z ?_Xlength_error@std@@YAXPEBD@Z _Mtx_lock _Mtx_unlock ?_Random_device@std@@YAIXZ ??1_Lockit@std@@QEAA@XZ ??0_Lockit@std@@QEAA@H@Z ?_Getgloballocale@locale@std@@CAPEAV_Locimp@12@XZ ?_Id_cnt@id@locale@std@@0HA ?_Xout_of_range@std@@YAXPEBD@Z ??0?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAA@XZ ?_Ipfx@?$basic_istream@DU?$char_traits@D@std@@@std@@QEAA_N_N@Z ?setstate@?$basic_ios@DU?$char_traits@D@std@@@std@@QEAAXH_N@Z ??0?$basic_ios@DU?$char_traits@D@std@@@std@@IEAA@XZ ?sgetc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHXZ ?snextc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHXZ |
| d3dx11_43.dll |
D3DX11CreateShaderResourceViewFromMemory
|
| ntdll.dll |
ZwReadVirtualMemory
ZwWriteVirtualMemory |
| IMM32.dll |
ImmSetCompositionWindow
ImmReleaseContext ImmGetContext ImmSetCandidateWindow |
| D3DCOMPILER_43.dll |
D3DCompile
|
| dwmapi.dll |
DwmExtendFrameIntoClientArea
|
| VCRUNTIME140_1.dll |
__CxxFrameHandler4
|
| VCRUNTIME140.dll |
wcsstr
memchr memcmp memcpy memset __C_specific_handler __current_exception __current_exception_context _CxxThrowException memmove strstr __std_terminate __std_exception_copy __std_exception_destroy |
| api-ms-win-crt-heap-l1-1-0.dll |
free
_set_new_mode _callnewh realloc malloc |
| api-ms-win-crt-runtime-l1-1-0.dll |
_exit
_initterm_e _initterm _get_narrow_winmain_command_line _errno _set_app_type _seh_filter_exe _cexit _crt_atexit _register_onexit_function _initialize_onexit_table _initialize_narrow_environment _configure_narrow_argv _register_thread_local_exe_atexit_callback exit _beginthreadex terminate _invoke_watson _c_exit |
| api-ms-win-crt-string-l1-1-0.dll |
strcpy_s
strncpy toupper tolower strcmp _stricmp |
| api-ms-win-crt-convert-l1-1-0.dll |
strtod
strtoull strtoll atof |
| api-ms-win-crt-math-l1-1-0.dll |
acosf
atan2f __setusermatherr ceilf _hypotf _dsign fmodf log logf pow powf cosf sinf sqrt _dclass sqrtf |
| api-ms-win-crt-stdio-l1-1-0.dll |
__stdio_common_vsprintf
_wfopen fgetc __stdio_common_vsscanf __p__commode fputc __stdio_common_vfprintf fseek __acrt_iob_func ftell _get_stream_buffer_pointers _fseeki64 fflush fread fclose ungetc setvbuf fgetpos fwrite _set_fmode __stdio_common_vsprintf_s fsetpos |
| api-ms-win-crt-locale-l1-1-0.dll |
_configthreadlocale
localeconv |
| api-ms-win-crt-filesystem-l1-1-0.dll |
_unlock_file
_lock_file |
| api-ms-win-crt-multibyte-l1-1-0.dll |
_mbsicmp
|
| api-ms-win-crt-utility-l1-1-0.dll |
qsort
|
| api-ms-win-crt-environment-l1-1-0.dll |
getenv
|
| Type |
RT_MANIFEST
|
|---|---|
| Language | English - United States |
| Codepage | UNKNOWN |
| Size | 0x188 |
| TimeDateStamp | 1980-Jan-01 00:00:00 |
| Entropy | 4.89623 |
| MD5 | b8e76ddb52d0eb41e972599ff3ca431b 🔍 |
| SHA1 | fc12d7ad112ddabfcd8f82f290d84e637a4d62f8 🔍 |
| SHA256 | 165c5c883fd4fd36758bcba6baf2faffb77d2f4872ffd5ee918a16f91de5a8a8 🔍 |
| SHA3 | 37f83338b28cb102b1b14f27280ba1aa3fffb17f7bf165cb7b675b7e8eb7cddd 🔍 |
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2026-Jun-25 21:26:19 |
| Version | 0.0 |
| SizeofData | 102 |
| AddressOfRawData | 0xfa5c8 |
| PointerToRawData | 0xf95c8 |
| Referenced File | C:\Users\Voke\Desktop\wexize fixed\wexize fixed\x64\Release\Wexize Revamp.pdb |
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2026-Jun-25 21:26:19 |
| Version | 0.0 |
| SizeofData | 20 |
| AddressOfRawData | 0xfa630 |
| PointerToRawData | 0xf9630 |
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2026-Jun-25 21:26:19 |
| Version | 0.0 |
| SizeofData | 912 |
| AddressOfRawData | 0xfa644 |
| PointerToRawData | 0xf9644 |
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2026-Jun-25 21:26:19 |
| Version | 0.0 |
| SizeofData | 0 |
| AddressOfRawData | 0 |
| PointerToRawData | 0 |
| StartAddressOfRawData | 0x1400fa9f8 |
|---|---|
| EndAddressOfRawData | 0x1400faa00 |
| AddressOfIndex | 0x1401bf36c |
| AddressOfCallbacks | 0x1400a8d10 |
| SizeOfZeroFill | 0 |
| Characteristics |
IMAGE_SCN_ALIGN_4BYTES
|
| Callbacks | (EMPTY) |
| Size | 0x140 |
|---|---|
| TimeDateStamp | 1970-Jan-01 00:00:00 |
| Version | 0.0 |
| GlobalFlagsClear | (EMPTY) |
| GlobalFlagsSet | (EMPTY) |
| CriticalSectionDefaultTimeout | 0 |
| DeCommitFreeBlockThreshold | 0 |
| DeCommitTotalFreeThreshold | 0 |
| LockPrefixTable | 0 |
| MaximumAllocationSize | 0 |
| VirtualMemoryThreshold | 0 |
| ProcessAffinityMask | 0 |
| ProcessHeapFlags | (EMPTY) |
| CSDVersion | 0 |
| Reserved1 | 0 |
| EditList | 0 |
| SecurityCookie | 0x140109040 |
| XOR Key | 0xde05aaef |
|---|---|
| Unmarked objects | 0 |
| Imports (VS2008 SP1 build 30729) | 22 |
| ASM objects (35207) | 4 |
| C objects (35207) | 10 |
| C++ objects (35207) | 34 |
| Imports (35207) | 6 |
| Imports (34808) | 2 |
| Imports (35208) | 2 |
| Imports (33145) | 16 |
| Imports (21202) | 9 |
| Total imports | 371 |
| C++ objects (LTCG) (35228) | 18 |
| Resource objects (35228) | 1 |
| Linker (35228) | 1 |
No comments yet.