68e2ae79edb3dd441d0504ed75d5630ce32b80486fffec7b3f2cc64434788e82

Summary

Architecture IMAGE_FILE_MACHINE_AMD64
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date 2026-Jun-25 21:26:19
Detected languages English - United States
Debug artifacts C:\Users\Voke\Desktop\wexize fixed\wexize fixed\x64\Release\Wexize Revamp.pdb

Plugin Output

Suspicious Strings found in the binary may indicate undesirable behavior: Miscellaneous malware strings:
  • virus
Contains domain names:
  • casedieresis.cn
  • casetilde.cn
  • commaaccentright.cn
  • cyrillictail.cn
  • cyrillictic.cn
  • fontello.com
  • github.com
  • http://fontello.com
  • http://scripts.sil.org
  • http://scripts.sil.org/OFLThis
  • http://scripts.sil.org/OFLhttps
  • https://github.com
  • https://rsms.me
  • koronisaccentleft.cn
  • scripts.sil.org
  • tildecross.cn
Info Cryptographic algorithms detected in the binary: Uses constants related to CRC32
Uses known Mersenne Twister constants
Malicious The PE contains functions mostly used by malware. [!] The program may be hiding some of its imports:
  • GetProcAddress
  • LoadLibraryA
Functions which can be used for anti-debugging purposes:
  • CheckRemoteDebuggerPresent
  • CreateToolhelp32Snapshot
  • FindWindowA
  • FindWindowW
Code injection capabilities:
  • CreateRemoteThreadEx
  • WriteProcessMemory
  • VirtualAlloc
  • CreateRemoteThread
  • OpenProcess
  • VirtualAllocEx
Can access the registry:
  • RegGetValueA
Possibly launches other programs:
  • CreateProcessAsUserA
Uses Windows's Native API:
  • ZwReadVirtualMemory
  • ZwWriteVirtualMemory
Uses functions commonly found in keyloggers:
  • GetAsyncKeyState
  • GetForegroundWindow
  • CallNextHookEx
Memory manipulation functions often used by packers:
  • VirtualProtect
  • VirtualAlloc
  • VirtualProtectEx
  • VirtualAllocEx
Functions related to the privilege level:
  • OpenProcessToken
  • AdjustTokenPrivileges
  • DuplicateTokenEx
Interacts with services:
  • QueryServiceStatus
  • OpenSCManagerA
  • OpenServiceA
  • ControlService
Manipulates other processes:
  • WriteProcessMemory
  • ReadProcessMemory
  • Process32Next
  • OpenProcess
  • Process32First
Reads the contents of the clipboard:
  • GetClipboardData
Malicious VirusTotal score: 45/69 (Scanned on 2026-07-26 04:54:44) ALYac: Trojan.Generic.40218745
APEX: Malicious
AVG: Win64:MalwareX-gen [Cryp]
AhnLab-V3: Trojan/Win.Generic.R693540
Alibaba: Trojan:Win64/GenKryptik.d5008bdb
Antiy-AVL: Trojan/Win32.Sabsik
Arcabit: Trojan.Generic.D265B079
Avast: Win64:MalwareX-gen [Cryp]
Avira: TR/W64.MalwareX
BitDefender: Trojan.Generic.40218745
Bkav: W32.Malware.2D9FA03D
CTX: exe.trojan.genkryptik
ClamAV: Win.Malware.Zusy-10058122-0
CrowdStrike: win/malicious_confidence_100% (W)
Cylance: Unsafe
Cynet: Malicious (score: 100)
ESET-NOD32: Win64/GenKryptik_AGen.AMR trojan
Elastic: malicious (high confidence)
Emsisoft: Trojan.Generic.40218745 (B)
F-Secure: Trojan.TR/W64.MalwareX
Fortinet: W64/GenKryptik_AGen.AMR!tr
GData: Trojan.Generic.40218745
Google: Detected
Gridinsoft: Trojan.Win64.Kryptik.sa
K7AntiVirus: Trojan ( 005cded11 )
K7GW: Trojan ( 005cded11 )
Lionic: Trojan.Win32.Generic.4!c
Malwarebytes: Malware.AI.2704761171
McAfeeD: Trojan:Win/GenericY.EIK
MicroWorld-eScan: Trojan.Generic.40218745
Microsoft: Trojan:Win32/Wacatac.B!ml
Paloalto: generic.ml
Rising: Trojan.Kryptik@AI.93 (RDML:Yye2WePQzA4unEJxr9Pptw)
SentinelOne: Static AI - Malicious PE
Sophos: Mal/Generic-S
Symantec: ML.Attribute.HighConfidence
Tencent: Malware.Win32.Gencirc.14b0656d
Trapmine: malicious.high.ml.score
TrellixENS: Artemis!3BBABE0B79F1
TrendMicro: Trojan.Win32.ZYX.USBLG126
TrendMicro-HouseCall: Trojan.Win32.ZYX.USBLG126
VIPRE: Trojan.Generic.40218745
Varist: W64/ABTrojan.VRXL-1220
ViRobot: Trojan.Win.Z.Agent.1845760.A
alibabacloud: Trojan:Win/GenKryptik_AGen.AZY

Hashes

MD5 3bbabe0b79f12b9fd0a13fb14d914693 🔍
SHA1 d352006fdb1324c1a91c75fd81fcc2219c1f8b4e 🔍
SHA256 68e2ae79edb3dd441d0504ed75d5630ce32b80486fffec7b3f2cc64434788e82 🔍
SHA3 79c0e34d49d0b6dcdc7b293a4efd9f9ccac96806f01aef6ac89dcee446244acc 🔍
SSDeep 24576:ApTU5WzrVGZsyEpFST8a/R4NuHkGv/8KA9aagTlIyTBfXQCFKJIvmOx:Ay5WzpGZREnST8+HE+/8naplIiB47lO 🔍
Imports Hash 5618b6a6e0877e593d9bc1b1a8f85ac4 🔍

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0x108

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_AMD64
NumberofSections 6
TimeDateStamp 2026-Jun-25 21:26:19
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xf0
Characteristics IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE

Image Optional Header

Magic PE32+
LinkerVersion 14.0
SizeOfCode 0xa6c00
SizeOfInitializedData 0x11e800
SizeOfUninitializedData 0
AddressOfEntryPoint 0x00000000000A2B20 (Section: .text)
BaseOfCode 0x1000
ImageBase 0x140000000
SectionAlignment 0x1000
FileAlignment 0x200
OperatingSystemVersion 6.0
ImageVersion 0.0
SubsystemVersion 6.0
Win32VersionValue 0
SizeOfImage 0x1ca000
SizeOfHeaders 0x400
Checksum 0
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x100000
SizeofStackCommit 0x1000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 7998d23ac3ec8ae4eb4fafed4ba9f118 🔍
SHA1 4f5098b74f2dc698ab3b2fb1485023bb8c00e0f9 🔍
SHA256 b873e29e9e18636c97378f88aecd821725a391fc1f36eb44d7f735589f75454d 🔍
SHA3 66cd7cbbc752c29ac01445b1344d9c0b7456cdac415d3200a94db2949e3ce9b7 🔍
VirtualSize 0xa6b23
VirtualAddress 0x1000
SizeOfRawData 0xa6c00
PointerToRawData 0x400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.47175

.rdata

MD5 bf81b8486ee7ad874c4caed195878394 🔍
SHA1 3cfdd51f1d0708c46f16e2e2532e65fdb320088e 🔍
SHA256 3edf066f0cb8dcd51b0615f21d851529c80764435b5e7b2581510eb608c76562 🔍
SHA3 b73d4de9d636f88b81a09b4a6b73d0038d2d5b4ddb5ee9d58898d1f13bc93a74 🔍
VirtualSize 0x6019a
VirtualAddress 0xa8000
SizeOfRawData 0x60200
PointerToRawData 0xa7000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 6.86286

.data

MD5 966ac0b466d3792d8b58ee4edf5cddfb 🔍
SHA1 36e360a57e45f9d80f3a6fe148dbfe63c337501e 🔍
SHA256 12cc509d0fdd18cbcc3a2a78c62a6464deb4ec6e18ca6c753585e8d86c043112 🔍
SHA3 e4f7ff9e7f56493e50fd359048d5d77e4f3d459baba1a83b2fa04731f67508ab 🔍
VirtualSize 0xb8a98
VirtualAddress 0x109000
SizeOfRawData 0xb5e00
PointerToRawData 0x107200
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 7.23611

.pdata

MD5 4d0851375e1ff3dc1d6d4f69a2cb2c02 🔍
SHA1 696611725529768a3cb952bafa8ccd34fbf9f6ef 🔍
SHA256 3da40c01cfc2e2c6e07c7bd63e16307270e8894b30db158e46590cced5857a7c 🔍
SHA3 a492f859143375579e6c998ad4f6e604862771eb4c26bb37d8204673d7642291 🔍
VirtualSize 0x5094
VirtualAddress 0x1c2000
SizeOfRawData 0x5200
PointerToRawData 0x1bd000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 5.88387

.rsrc

MD5 764deee50e2ad3024f021bee545aeb19 🔍
SHA1 191d9a7381d8dcace9186ec38c96eeeeb22ff163 🔍
SHA256 e7b456f8ab56d7e14546578bc3ce3edb2b8b78f6852d46e67c62a56727fe2425 🔍
SHA3 d3372862edc6aa9394f514b93f470210a96a6437a387f898b603ab65006577a5 🔍
VirtualSize 0x1e8
VirtualAddress 0x1c8000
SizeOfRawData 0x200
PointerToRawData 0x1c2200
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 4.76666

.reloc

MD5 3128426f1ebbbc954b0762ff87e2fa47 🔍
SHA1 ccac9fca8515efd752548b2388f4bf248d69137a 🔍
SHA256 4dbe028f17789b0007284607f96c4f3baf3619a5f45656585570eca2cfff2f6f 🔍
SHA3 3ad93776dc0dbc724d97af21da97c19111a67d4025b3da59a1c1a8a93f27a504 🔍
VirtualSize 0x510
VirtualAddress 0x1c9000
SizeOfRawData 0x600
PointerToRawData 0x1c2400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy 4.96687

Imports

d3dx9_43.dll D3DXVec3Normalize
D3DXVec3Transform
D3DXMatrixTranspose
d3d11.dll D3D11CreateDeviceAndSwapChain
KERNEL32.dll GetProcAddress
GetStartupInfoA
MultiByteToWideChar
GlobalFree
WideCharToMultiByte
GetLocaleInfoA
QueryPerformanceFrequency
FreeLibrary
QueryPerformanceCounter
CreateRemoteThreadEx
WriteProcessMemory
VirtualProtect
VirtualAlloc
TerminateProcess
GetProcessId
DuplicateHandle
Sleep
GetTickCount64
GlobalLock
GetCurrentProcessId
CreateRemoteThread
GetTickCount
OpenThread
IsDebuggerPresent
CheckRemoteDebuggerPresent
RtlCaptureContext
GetModuleHandleA
GlobalUnlock
ExitProcess
LoadLibraryA
AcquireSRWLockExclusive
SleepConditionVariableSRW
RtlLookupFunctionEntry
RtlVirtualUnwind
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsProcessorFeaturePresent
GetStartupInfoW
GetModuleHandleW
GetSystemTimeAsFileTime
InitializeSListHead
Beep
GlobalAlloc
GetLastError
GetCurrentProcess
WakeAllConditionVariable
ReadProcessMemory
VirtualProtectEx
CloseHandle
Process32Next
K32GetModuleFileNameExA
CreateToolhelp32Snapshot
OpenProcess
Module32First
Module32Next
Process32First
VirtualFreeEx
VirtualAllocEx
LocalFree
GetCommandLineA
ReleaseSRWLockExclusive
CreateThread
GetCurrentThreadId
USER32.dll GetAsyncKeyState
mouse_event
SetClipboardData
GetClipboardData
SetWindowDisplayAffinity
EmptyClipboard
CloseClipboard
OpenClipboard
ReleaseCapture
UpdateWindow
GetWindowThreadProcessId
FindWindowA
IsWindowVisible
GetWindowTextA
EnumWindows
FindWindowW
SetWindowsHookA
GetWindowTextLengthA
GetKeyState
GetMessageExtraInfo
LoadCursorA
ScreenToClient
GetCapture
ClientToScreen
TrackMouseEvent
GetKeyboardLayout
SetCapture
SetCursor
GetClientRect
IsWindowUnicode
GetForegroundWindow
SetCursorPos
GetCursorPos
DispatchMessageA
GetWindowRect
DestroyWindow
PostMessageA
CallNextHookEx
UnregisterClassW
RegisterClassExW
ShowWindow
SetWindowLongA
SetWindowsHookExA
MessageBoxA
MoveWindow
UnhookWindowsHookEx
DefWindowProcA
SetLayeredWindowAttributes
TranslateMessage
PeekMessageA
GetWindowLongPtrA
PostQuitMessage
ADVAPI32.dll SetTokenInformation
QueryServiceStatus
GetTokenInformation
CloseServiceHandle
OpenSCManagerA
OpenProcessToken
AdjustTokenPrivileges
ConvertSidToStringSidA
DuplicateTokenEx
SetThreadToken
LookupPrivilegeValueA
OpenServiceA
PrivilegeCheck
RegGetValueA
CreateProcessAsUserA
RevertToSelf
ControlService
ole32.dll CoInitializeEx
freetype.dll FT_Done_Library
FT_Get_Char_Index
FT_Select_Charmap
FT_New_Library
FT_Add_Default_Modules
FT_Request_Size
FT_Load_Glyph
FT_New_Memory_Face
FT_GlyphSlot_Oblique
FT_GlyphSlot_Embolden
FT_Render_Glyph
FT_Done_Face
libcurl.dll curl_easy_perform
curl_easy_init
curl_slist_append
curl_easy_setopt
curl_easy_cleanup
curl_easy_getinfo
MSVCP140.dll ?_Xbad_function_call@std@@YAXXZ
?uncaught_exceptions@std@@YAHXZ
??Bios_base@std@@QEBA_NXZ
??1?$basic_iostream@DU?$char_traits@D@std@@@std@@UEAA@XZ
?imbue@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAXAEBVlocale@2@@Z
?sync@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAHXZ
?setbuf@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAPEAV12@PEAD_J@Z
?xsputn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JPEBD_J@Z
?uflow@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAHXZ
?showmanyc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JXZ
_Thrd_detach
?sputn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAA_JPEBD_J@Z
?_Osfx@?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAXXZ
?flush@?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV12@XZ
?sputc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHD@Z
??5?$basic_istream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@AEAI@Z
??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@P6AAEAVios_base@1@AEAV21@@Z@Z
?good@ios_base@std@@QEBA_NXZ
?id@?$codecvt@DDU_Mbstatet@@@std@@2V0locale@2@A
?_Fiopen@std@@YAPEAU_iobuf@@PEBDHH@Z
?getloc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEBA?AVlocale@2@XZ
?_Init@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAXXZ
?_Init@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAXPEAPEAD0PEAH001@Z
??0?$basic_istream@DU?$char_traits@D@std@@@std@@QEAA@PEAV?$basic_streambuf@DU?$char_traits@D@std@@@1@_N@Z
?_Getcat@?$codecvt@DDU_Mbstatet@@@std@@SA_KPEAPEBVfacet@locale@2@PEBV42@@Z
?widen@?$basic_ios@DU?$char_traits@D@std@@@std@@QEBADD@Z
?_Unlock@?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAAXXZ
?_Lock@?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAAXXZ
??1?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAA@XZ
??1?$basic_ios@DU?$char_traits@D@std@@@std@@UEAA@XZ
??0?$basic_iostream@DU?$char_traits@D@std@@@std@@QEAA@PEAV?$basic_streambuf@DU?$char_traits@D@std@@@1@@Z
?in@?$codecvt@DDU_Mbstatet@@@std@@QEBAHAEAU_Mbstatet@@PEBD1AEAPEBDPEAD3AEAPEAD@Z
?out@?$codecvt@DDU_Mbstatet@@@std@@QEBAHAEAU_Mbstatet@@PEBD1AEAPEBDPEAD3AEAPEAD@Z
?sbumpc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHXZ
??1?$basic_istream@DU?$char_traits@D@std@@@std@@UEAA@XZ
??7ios_base@std@@QEBA_NXZ
?always_noconv@codecvt_base@std@@QEBA_NXZ
_Cnd_do_broadcast_at_thread_exit
?unshift@?$codecvt@DDU_Mbstatet@@@std@@QEBAHAEAU_Mbstatet@@PEAD1AEAPEAD@Z
?xsgetn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JPEAD_J@Z
_Query_perf_frequency
?_Xbad_alloc@std@@YAXXZ
_Query_perf_counter
?_Throw_Cpp_error@std@@YAXH@Z
?_Xlength_error@std@@YAXPEBD@Z
_Mtx_lock
_Mtx_unlock
?_Random_device@std@@YAIXZ
??1_Lockit@std@@QEAA@XZ
??0_Lockit@std@@QEAA@H@Z
?_Getgloballocale@locale@std@@CAPEAV_Locimp@12@XZ
?_Id_cnt@id@locale@std@@0HA
?_Xout_of_range@std@@YAXPEBD@Z
??0?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAA@XZ
?_Ipfx@?$basic_istream@DU?$char_traits@D@std@@@std@@QEAA_N_N@Z
?setstate@?$basic_ios@DU?$char_traits@D@std@@@std@@QEAAXH_N@Z
??0?$basic_ios@DU?$char_traits@D@std@@@std@@IEAA@XZ
?sgetc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHXZ
?snextc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHXZ
d3dx11_43.dll D3DX11CreateShaderResourceViewFromMemory
ntdll.dll ZwReadVirtualMemory
ZwWriteVirtualMemory
IMM32.dll ImmSetCompositionWindow
ImmReleaseContext
ImmGetContext
ImmSetCandidateWindow
D3DCOMPILER_43.dll D3DCompile
dwmapi.dll DwmExtendFrameIntoClientArea
VCRUNTIME140_1.dll __CxxFrameHandler4
VCRUNTIME140.dll wcsstr
memchr
memcmp
memcpy
memset
__C_specific_handler
__current_exception
__current_exception_context
_CxxThrowException
memmove
strstr
__std_terminate
__std_exception_copy
__std_exception_destroy
api-ms-win-crt-heap-l1-1-0.dll free
_set_new_mode
_callnewh
realloc
malloc
api-ms-win-crt-runtime-l1-1-0.dll _exit
_initterm_e
_initterm
_get_narrow_winmain_command_line
_errno
_set_app_type
_seh_filter_exe
_cexit
_crt_atexit
_register_onexit_function
_initialize_onexit_table
_initialize_narrow_environment
_configure_narrow_argv
_register_thread_local_exe_atexit_callback
exit
_beginthreadex
terminate
_invoke_watson
_c_exit
api-ms-win-crt-string-l1-1-0.dll strcpy_s
strncpy
toupper
tolower
strcmp
_stricmp
api-ms-win-crt-convert-l1-1-0.dll strtod
strtoull
strtoll
atof
api-ms-win-crt-math-l1-1-0.dll acosf
atan2f
__setusermatherr
ceilf
_hypotf
_dsign
fmodf
log
logf
pow
powf
cosf
sinf
sqrt
_dclass
sqrtf
api-ms-win-crt-stdio-l1-1-0.dll __stdio_common_vsprintf
_wfopen
fgetc
__stdio_common_vsscanf
__p__commode
fputc
__stdio_common_vfprintf
fseek
__acrt_iob_func
ftell
_get_stream_buffer_pointers
_fseeki64
fflush
fread
fclose
ungetc
setvbuf
fgetpos
fwrite
_set_fmode
__stdio_common_vsprintf_s
fsetpos
api-ms-win-crt-locale-l1-1-0.dll _configthreadlocale
localeconv
api-ms-win-crt-filesystem-l1-1-0.dll _unlock_file
_lock_file
api-ms-win-crt-multibyte-l1-1-0.dll _mbsicmp
api-ms-win-crt-utility-l1-1-0.dll qsort
api-ms-win-crt-environment-l1-1-0.dll getenv

Delayed Imports

1

Type RT_MANIFEST
Language English - United States
Codepage UNKNOWN
Size 0x188
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.89623
MD5 b8e76ddb52d0eb41e972599ff3ca431b 🔍
SHA1 fc12d7ad112ddabfcd8f82f290d84e637a4d62f8 🔍
SHA256 165c5c883fd4fd36758bcba6baf2faffb77d2f4872ffd5ee918a16f91de5a8a8 🔍
SHA3 37f83338b28cb102b1b14f27280ba1aa3fffb17f7bf165cb7b675b7e8eb7cddd 🔍

Version Info

IMAGE_DEBUG_TYPE_CODEVIEW

Characteristics 0
TimeDateStamp 2026-Jun-25 21:26:19
Version 0.0
SizeofData 102
AddressOfRawData 0xfa5c8
PointerToRawData 0xf95c8
Referenced File C:\Users\Voke\Desktop\wexize fixed\wexize fixed\x64\Release\Wexize Revamp.pdb

IMAGE_DEBUG_TYPE_VC_FEATURE

Characteristics 0
TimeDateStamp 2026-Jun-25 21:26:19
Version 0.0
SizeofData 20
AddressOfRawData 0xfa630
PointerToRawData 0xf9630

IMAGE_DEBUG_TYPE_POGO

Characteristics 0
TimeDateStamp 2026-Jun-25 21:26:19
Version 0.0
SizeofData 912
AddressOfRawData 0xfa644
PointerToRawData 0xf9644

IMAGE_DEBUG_TYPE_ILTCG

Characteristics 0
TimeDateStamp 2026-Jun-25 21:26:19
Version 0.0
SizeofData 0
AddressOfRawData 0
PointerToRawData 0

TLS Callbacks

StartAddressOfRawData 0x1400fa9f8
EndAddressOfRawData 0x1400faa00
AddressOfIndex 0x1401bf36c
AddressOfCallbacks 0x1400a8d10
SizeOfZeroFill 0
Characteristics IMAGE_SCN_ALIGN_4BYTES
Callbacks (EMPTY)

Load Configuration

Size 0x140
TimeDateStamp 1970-Jan-01 00:00:00
Version 0.0
GlobalFlagsClear (EMPTY)
GlobalFlagsSet (EMPTY)
CriticalSectionDefaultTimeout 0
DeCommitFreeBlockThreshold 0
DeCommitTotalFreeThreshold 0
LockPrefixTable 0
MaximumAllocationSize 0
VirtualMemoryThreshold 0
ProcessAffinityMask 0
ProcessHeapFlags (EMPTY)
CSDVersion 0
Reserved1 0
EditList 0
SecurityCookie 0x140109040

RICH Header

XOR Key 0xde05aaef
Unmarked objects 0
Imports (VS2008 SP1 build 30729) 22
ASM objects (35207) 4
C objects (35207) 10
C++ objects (35207) 34
Imports (35207) 6
Imports (34808) 2
Imports (35208) 2
Imports (33145) 16
Imports (21202) 9
Total imports 371
C++ objects (LTCG) (35228) 18
Resource objects (35228) 1
Linker (35228) 1

Errors

Leave a comment

No comments yet.