| Architecture |
IMAGE_FILE_MACHINE_AMD64
|
|---|---|
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_CUI
|
| Compilation Date | 2026-Aug-30 21:35:42 |
| Detected languages |
English - United States
|
| Debug artifacts |
C:\Users\kccar\Desktop\hi\hi\thunderpublic\x64\Release\Fortnite External.pdb
|
| Info | Matching compiler(s): | MASM/TASM - sig1(h) |
| Suspicious | Strings found in the binary may indicate undesirable behavior: |
May have dropper capabilities:
|
| Info | Cryptographic algorithms detected in the binary: |
Uses constants related to CRC32
Uses constants related to SHA1 Uses known Mersenne Twister constants |
| Malicious | The PE contains functions mostly used by malware. |
[!] The program may be hiding some of its imports:
|
| Malicious | VirusTotal score: 27/70 (Scanned on 2026-09-01 20:32:53) |
APEX:
Malicious
Antiy-AVL: GrayWare/Win32.Wacapew Bkav: W32.Malware.C386692D CTX: exe.trojan.generic CrowdStrike: win/malicious_confidence_90% (W) Cylance: Unsafe Cynet: Malicious (score: 100) DeepInstinct: MALICIOUS ESET-NOD32: Win64/GenKryptik_AGen.DWE trojan Elastic: malicious (high confidence) Fortinet: W64/GenKryptik_AGen.DWE!tr GData: Win64.Trojan.Agent.SHITG5 Google: Detected Lionic: Trojan.Win32.Generic.4!c Malwarebytes: Malware.AI.3819388368 MaxSecure: Trojan.Malware.300983.susgen McAfeeD: ti!CEE7B047466F Microsoft: Trojan:Win32/Wacatac.B!ml Paloalto: generic.ml Rising: Dropper.Agent!8.2F (CLOUD) SentinelOne: Static AI - Malicious PE Sophos: Mal/Generic-S Symantec: ML.Attribute.HighConfidence Trapmine: malicious.moderate.ml.score Varist: W64/ABTrojan.RFHK-8625 alibabacloud: Trojan:Win/GenKryptik_AGen.DIM huorong: TrojanDropper/Agent.arb |
| MD5 | 3b55d74de76d813565ad7f77dc284dca 🔍 |
|---|---|
| SHA1 | d3fb16ca439a007c56ef8cf83e6e7f1f4a5e878f 🔍 |
| SHA256 | cee7b047466f8c764709bc7beb7a184e6304d810094c4d186635cc2e63d5f97f 🔍 |
| SHA3 | 1e087941e839d953f1cdfdb1f1bc0fe0b524ceb089037b8228676c4475bbf8c4 🔍 |
| SSDeep | 24576:rDpdL9ct1j364899MZFuz56i+D4/MS0Wv2g95be7fWSeFUg+2fXwaTA6gJ5BCXD:XwDj+IxG7iayhXUvX7TAx0O8I9ZUXo 🔍 |
| Imports Hash | b316c3a6a8b88e4a17f7b2cfa9ebd43c 🔍 |
| e_magic | MZ |
|---|---|
| e_cblp | 0x90 |
| e_cp | 0x3 |
| e_crlc | 0 |
| e_cparhdr | 0x4 |
| e_minalloc | 0 |
| e_maxalloc | 0xffff |
| e_ss | 0 |
| e_sp | 0xb8 |
| e_csum | 0 |
| e_ip | 0 |
| e_cs | 0 |
| e_ovno | 0 |
| e_oemid | 0 |
| e_oeminfo | 0 |
| e_lfanew | 0x108 |
| Signature | PE |
|---|---|
| Machine |
IMAGE_FILE_MACHINE_AMD64
|
| NumberofSections | 6 |
| TimeDateStamp | 2026-Aug-30 21:35:42 |
| PointerToSymbolTable | 0 |
| NumberOfSymbols | 0 |
| SizeOfOptionalHeader | 0xf0 |
| Characteristics |
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE
|
| Magic | PE32+ |
|---|---|
| LinkerVersion | 14.0 |
| SizeOfCode | 0x1cd200 |
| SizeOfInitializedData | 0x90a00 |
| SizeOfUninitializedData | 0 |
| AddressOfEntryPoint | 0x00000000001C8980 (Section: .text) |
| BaseOfCode | 0x1000 |
| ImageBase | 0x140000000 |
| SectionAlignment | 0x1000 |
| FileAlignment | 0x200 |
| OperatingSystemVersion | 6.0 |
| ImageVersion | 0.0 |
| SubsystemVersion | 6.0 |
| Win32VersionValue | 0 |
| SizeOfImage | 0x263000 |
| SizeOfHeaders | 0x400 |
| Checksum | 0 |
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_CUI
|
| DllCharacteristics |
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
|
| SizeofStackReserve | 0x100000 |
| SizeofStackCommit | 0x1000 |
| SizeofHeapReserve | 0x100000 |
| SizeofHeapCommit | 0x1000 |
| LoaderFlags | 0 |
| NumberOfRvaAndSizes | 16 |
| MD5 | 368f0670639348ecdad4b04fba04318e 🔍 |
|---|---|
| SHA1 | 57bbfe1b21cafe5613da9b5f851c4ab3a3a08811 🔍 |
| SHA256 | eed1bdfa43bc04cb1d33fb2bc58fdcd70e0e756530c49a4081b76751c24ced59 🔍 |
| SHA3 | b5745211c6b097dcdbbe66a482d7911193114402588f9e0ad841773a739b3749 🔍 |
| VirtualSize | 0x1cd181 |
| VirtualAddress | 0x1000 |
| SizeOfRawData | 0x1cd200 |
| PointerToRawData | 0x400 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
|
| Entropy | 5.90358 |
| MD5 | 6b735a33bb77045f3b0f85eaf7e30a0d 🔍 |
|---|---|
| SHA1 | 287b3c7a93f898cda4b4e570932c1795892e579d 🔍 |
| SHA256 | c1362b52ce7e6a0c66c83ad4dd8866db08e05f27999a1c97f67185fea2de03b8 🔍 |
| SHA3 | 75346e9e2f1deb394779947f38906645df9eb4b06ffc091e8050d32f90fc34cf 🔍 |
| VirtualSize | 0x25ccc |
| VirtualAddress | 0x1cf000 |
| SizeOfRawData | 0x25e00 |
| PointerToRawData | 0x1cd600 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
|
| Entropy | 6.09701 |
| MD5 | 03d53efa21ebb138e105f592708d8549 🔍 |
|---|---|
| SHA1 | 89d959bcabed203a3ea922058b1dd54a9e05348c 🔍 |
| SHA256 | 4305e0bf637280c9c15b532abfc79c67b298027c4ee067ee38c598335bd188c1 🔍 |
| SHA3 | 75dddf56c55763b47b3c9f2c483f6ba512ca6909504bc13086ef6e8f6316d191 🔍 |
| VirtualSize | 0x63198 |
| VirtualAddress | 0x1f5000 |
| SizeOfRawData | 0x61600 |
| PointerToRawData | 0x1f3400 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
|
| Entropy | 7.80315 |
| MD5 | 9ceb8d1f2f46e73b59d1d99242716031 🔍 |
|---|---|
| SHA1 | 32f1f27babbcbf7b59f62daec4e8267406e87a0b 🔍 |
| SHA256 | 72d4b8e48b69a4cfcd5ec1beddba4c00c3ed147c119b5829ce13527d2337efc5 🔍 |
| SHA3 | acec973fea0fe105ae9b7f6816dc7ba6d0150ef0494696467bc59b90a893d3d7 🔍 |
| VirtualSize | 0x714c |
| VirtualAddress | 0x259000 |
| SizeOfRawData | 0x7200 |
| PointerToRawData | 0x254a00 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
|
| Entropy | 6.06456 |
| MD5 | b43e56ec5cb2b867bdbb319ec3e530d7 🔍 |
|---|---|
| SHA1 | cd792759021ff8159eb8666599b004cea1e110dc 🔍 |
| SHA256 | 8c851b4325f2e285cd5c70a45c224662332e50fffc5f877ae9a3a1ccec5460a8 🔍 |
| SHA3 | e4d138cbd48c39598cd85c414c5341b6ec7bb5e48a96362db9f41259c0ecb055 🔍 |
| VirtualSize | 0x1e8 |
| VirtualAddress | 0x261000 |
| SizeOfRawData | 0x200 |
| PointerToRawData | 0x25bc00 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
|
| Entropy | 4.77204 |
| MD5 | d6c79d650547a4f259fc246bc9c82159 🔍 |
|---|---|
| SHA1 | 3ac1894b313a86cc860baaacaa886a56d3af5aa3 🔍 |
| SHA256 | 868bd6e531ff0975fcc1be20369e404946e00d241cadb19b86c50cc6dc7844b9 🔍 |
| SHA3 | 419dd9d90dadf8d758bcb1809a898a9e71b90a65c998a76277cdf81085940073 🔍 |
| VirtualSize | 0x5f8 |
| VirtualAddress | 0x262000 |
| SizeOfRawData | 0x600 |
| PointerToRawData | 0x25be00 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
|
| Entropy | 5.29181 |
| d3d11.dll |
D3D11CreateDeviceAndSwapChain
|
|---|---|
| ntdll.dll |
NtLoadDriver
RtlAdjustPrivilege NtDeviceIoControlFile RtlGetFullPathName_UEx RtlInitUnicodeString RtlCreateRegistryKey NtUnloadDriver NtQuerySystemInformation RtlWriteRegistryValue NtCreateFile NtClose |
| ADVAPI32.dll |
GetCurrentHwProfileA
GetUserNameA |
| MSVCP140.dll |
_Xtime_get_ticks
_Mtx_unlock ?snextc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHXZ ?_Ipfx@?$basic_istream@DU?$char_traits@D@std@@@std@@QEAA_N_N@Z ?widen@?$basic_ios@DU?$char_traits@D@std@@@std@@QEBADD@Z ?sgetc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHXZ ?put@?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV12@D@Z ?get@?$basic_istream@DU?$char_traits@D@std@@@std@@QEAAHXZ ??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@P6AAEAV01@AEAV01@@Z@Z ??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@P6AAEAVios_base@1@AEAV21@@Z@Z ??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@H@Z ??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@J@Z ??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@K@Z ??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@_J@Z ??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@_K@Z ??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@N@Z ??7ios_base@std@@QEBA_NXZ ??Bios_base@std@@QEBA_NXZ _Thrd_detach ?_Xbad_alloc@std@@YAXXZ ?_Xlength_error@std@@YAXPEBD@Z ?_Xout_of_range@std@@YAXPEBD@Z ?uncaught_exceptions@std@@YAHXZ ?_Osfx@?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAXXZ ?flush@?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV12@XZ ?setstate@?$basic_ios@DU?$char_traits@D@std@@@std@@QEAAXH_N@Z ??0?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAA@XZ ?sputc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHD@Z ?sputn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAA_JPEBD_J@Z ??0?$basic_ios@DU?$char_traits@D@std@@@std@@IEAA@XZ ??0?$basic_iostream@DU?$char_traits@D@std@@@std@@QEAA@PEAV?$basic_streambuf@DU?$char_traits@D@std@@@1@@Z ??1?$basic_ios@DU?$char_traits@D@std@@@std@@UEAA@XZ ??1?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAA@XZ ?_Lock@?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAAXXZ ?_Unlock@?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAAXXZ ?showmanyc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JXZ ?uflow@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAHXZ ?xsgetn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JPEAD_J@Z ?xsputn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JPEBD_J@Z ?setbuf@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAPEAV12@PEAD_J@Z ?sync@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAHXZ ?imbue@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAXAEBVlocale@2@@Z ??1?$basic_iostream@DU?$char_traits@D@std@@@std@@UEAA@XZ ?good@ios_base@std@@QEBA_NXZ ??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@I@Z _Query_perf_counter _Cnd_do_broadcast_at_thread_exit _Mtx_lock ?_Random_device@std@@YAIXZ ?cerr@std@@3V?$basic_ostream@DU?$char_traits@D@std@@@1@A ?cin@std@@3V?$basic_istream@DU?$char_traits@D@std@@@1@A ?cout@std@@3V?$basic_ostream@DU?$char_traits@D@std@@@1@A ?_Throw_Cpp_error@std@@YAXH@Z _Query_perf_frequency ?always_noconv@codecvt_base@std@@QEBA_NXZ ??1?$basic_ostream@DU?$char_traits@D@std@@@std@@UEAA@XZ ??1?$basic_istream@DU?$char_traits@D@std@@@std@@UEAA@XZ ?sbumpc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHXZ ?clear@?$basic_ios@DU?$char_traits@D@std@@@std@@QEAAXH_N@Z ?out@?$codecvt@DDU_Mbstatet@@@std@@QEBAHAEAU_Mbstatet@@PEBD1AEAPEBDPEAD3AEAPEAD@Z ?in@?$codecvt@DDU_Mbstatet@@@std@@QEBAHAEAU_Mbstatet@@PEBD1AEAPEBDPEAD3AEAPEAD@Z ?_Getcat@?$codecvt@DDU_Mbstatet@@@std@@SA_KPEAPEBVfacet@locale@2@PEBV42@@Z ?unshift@?$codecvt@DDU_Mbstatet@@@std@@QEBAHAEAU_Mbstatet@@PEAD1AEAPEAD@Z ??0?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAA@PEAV?$basic_streambuf@DU?$char_traits@D@std@@@1@_N@Z ??0?$basic_istream@DU?$char_traits@D@std@@@std@@QEAA@PEAV?$basic_streambuf@DU?$char_traits@D@std@@@1@_N@Z ?_Init@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAXXZ ?getloc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEBA?AVlocale@2@XZ ?_Syserror_map@std@@YAPEBDH@Z ?_Fiopen@std@@YAPEAU_iobuf@@PEBDHH@Z ?id@?$codecvt@DDU_Mbstatet@@@std@@2V0locale@2@A ?_Xbad_function_call@std@@YAXXZ ?_Winerror_map@std@@YAHH@Z ?_Id_cnt@id@locale@std@@0HA ?_Getgloballocale@locale@std@@CAPEAV_Locimp@12@XZ ??0_Lockit@std@@QEAA@H@Z ??1_Lockit@std@@QEAA@XZ |
| USER32.dll |
IsWindowVisible
CreateWindowExW UnregisterClassW RegisterClassExW ShowWindow GetAsyncKeyState DispatchMessageW FindWindowExA PeekMessageW MessageBoxA BlockInput EnumWindows SetLayeredWindowAttributes TranslateMessage GetParent UpdateWindow GetKeyState DestroyWindow ClientToScreen GetKeyboardLayout GetForegroundWindow LoadCursorW SetCursor GetClientRect SetCursorPos GetCursorPos OpenClipboard CloseClipboard EmptyClipboard GetClipboardData SetClipboardData GetSystemMetrics GetWindowThreadProcessId DefWindowProcW ScreenToClient |
| KERNEL32.dll |
SleepConditionVariableSRW
GetCurrentThreadId WakeAllConditionVariable GetCurrentProcessId GetSystemTimeAsFileTime InitializeSListHead SetUnhandledExceptionFilter RaiseException AcquireSRWLockShared AcquireSRWLockExclusive ReleaseSRWLockShared ReleaseSRWLockExclusive GetFileInformationByHandleEx MoveFileExW AreFileApisANSI CreateFile2 GetFileAttributesExW FindFirstFileW FindClose CreateDirectoryW GetLocaleInfoEx FormatMessageA LocalFree CheckRemoteDebuggerPresent GetComputerNameA IsDebuggerPresent CreateDirectoryA SetConsoleOutputCP GetModuleHandleW SetConsoleCP ExitProcess RemoveDirectoryA CreateThread CloseHandle Process32FirstW CreateFileA Process32NextW GetLastError K32GetModuleFileNameExA GetTempPathA CreateToolhelp32Snapshot OpenProcess CreateFileW WaitForSingleObject TerminateProcess WriteFile GetStdHandle SetConsoleTextAttribute SetLastError GetConsoleScreenBufferInfo QueryPerformanceCounter FreeLibrary QueryPerformanceFrequency LoadLibraryA GetLocaleInfoA GlobalUnlock WideCharToMultiByte GlobalLock GlobalFree GlobalAlloc MultiByteToWideChar LoadLibraryExW GetProcAddress K32GetModuleInformation GetTickCount64 Sleep VirtualAlloc GetCurrentProcess VirtualFree |
| SHELL32.dll |
ShellExecuteA
|
| IMM32.dll |
ImmSetCompositionWindow
ImmSetCandidateWindow ImmGetContext ImmReleaseContext |
| D3DCOMPILER_47.dll |
D3DCompile
|
| GDI32.dll |
GetStockObject
|
| WINHTTP.dll |
WinHttpReceiveResponse
WinHttpOpen WinHttpReadData WinHttpOpenRequest WinHttpCloseHandle WinHttpQueryDataAvailable WinHttpConnect WinHttpSendRequest |
| bcrypt.dll |
BCryptSetProperty
BCryptHashData BCryptDestroyHash BCryptCloseAlgorithmProvider BCryptCreateHash BCryptGenRandom BCryptOpenAlgorithmProvider BCryptDecrypt BCryptGenerateSymmetricKey BCryptDestroyKey BCryptFinishHash BCryptEncrypt |
| SHLWAPI.dll |
SHDeleteKeyW
|
| VCRUNTIME140_1.dll |
__CxxFrameHandler4
|
| VCRUNTIME140.dll |
strstr
strchr __C_specific_handler memcmp __std_terminate __std_exception_copy __std_exception_destroy memchr memcpy memmove memset __current_exception __current_exception_context _CxxThrowException |
| api-ms-win-crt-heap-l1-1-0.dll |
_set_new_mode
malloc realloc _callnewh free |
| api-ms-win-crt-math-l1-1-0.dll |
acos
acosf asin _dsign atan2 atan2f ceilf cosf tanf __setusermatherr fmodf sqrtf sqrt sinf roundf ldexp powf pow |
| api-ms-win-crt-string-l1-1-0.dll |
_stricmp
tolower strnlen wcscat_s _wcsicmp strncpy strncmp strlen strcmp wcslen wcscpy_s |
| api-ms-win-crt-stdio-l1-1-0.dll |
ungetc
fsetpos _fseeki64 _get_stream_buffer_pointers setvbuf fgetpos fputc __stdio_common_vsscanf fread __p__commode __stdio_common_vsprintf __stdio_common_vsprintf_s _wfopen fwrite fseek fclose fflush ftell _set_fmode __acrt_iob_func __stdio_common_vfprintf fgetc |
| api-ms-win-crt-utility-l1-1-0.dll |
qsort
|
| api-ms-win-crt-convert-l1-1-0.dll |
atof
strtoll strtoull strtol strtod |
| api-ms-win-crt-filesystem-l1-1-0.dll |
_unlock_file
_lock_file remove |
| api-ms-win-crt-locale-l1-1-0.dll |
___lc_codepage_func
_configthreadlocale localeconv |
| api-ms-win-crt-runtime-l1-1-0.dll |
_cexit
_crt_atexit _get_initial_narrow_environment exit terminate system _initterm _register_onexit_function _beginthreadex _initialize_onexit_table abort _initialize_narrow_environment _initterm_e _register_thread_local_exe_atexit_callback _c_exit __p___argv __p___argc _configure_narrow_argv _seh_filter_exe _exit _errno _set_app_type |
| api-ms-win-crt-time-l1-1-0.dll |
_time64
_localtime64_s |
| Type |
RT_MANIFEST
|
|---|---|
| Language | English - United States |
| Codepage | UNKNOWN |
| Size | 0x188 |
| TimeDateStamp | 1980-Jan-01 00:00:00 |
| Entropy | 4.89623 |
| MD5 | b8e76ddb52d0eb41e972599ff3ca431b 🔍 |
| SHA1 | fc12d7ad112ddabfcd8f82f290d84e637a4d62f8 🔍 |
| SHA256 | 165c5c883fd4fd36758bcba6baf2faffb77d2f4872ffd5ee918a16f91de5a8a8 🔍 |
| SHA3 | 37f83338b28cb102b1b14f27280ba1aa3fffb17f7bf165cb7b675b7e8eb7cddd 🔍 |
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2026-Aug-30 21:35:42 |
| Version | 0.0 |
| SizeofData | 101 |
| AddressOfRawData | 0x1e37f8 |
| PointerToRawData | 0x1e1df8 |
| Referenced File | C:\Users\kccar\Desktop\hi\hi\thunderpublic\x64\Release\Fortnite External.pdb |
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2026-Aug-30 21:35:42 |
| Version | 0.0 |
| SizeofData | 20 |
| AddressOfRawData | 0x1e3860 |
| PointerToRawData | 0x1e1e60 |
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2026-Aug-30 21:35:42 |
| Version | 0.0 |
| SizeofData | 912 |
| AddressOfRawData | 0x1e3874 |
| PointerToRawData | 0x1e1e74 |
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2026-Aug-30 21:35:42 |
| Version | 0.0 |
| SizeofData | 0 |
| AddressOfRawData | 0 |
| PointerToRawData | 0 |
| StartAddressOfRawData | 0x1401e3c28 |
|---|---|
| EndAddressOfRawData | 0x1401e3c58 |
| AddressOfIndex | 0x140256654 |
| AddressOfCallbacks | 0x1401cfc78 |
| SizeOfZeroFill | 0 |
| Characteristics |
IMAGE_SCN_ALIGN_8BYTES
|
| Callbacks | (EMPTY) |
| Size | 0x140 |
|---|---|
| TimeDateStamp | 1970-Jan-01 00:00:00 |
| Version | 0.0 |
| GlobalFlagsClear | (EMPTY) |
| GlobalFlagsSet | (EMPTY) |
| CriticalSectionDefaultTimeout | 0 |
| DeCommitFreeBlockThreshold | 0 |
| DeCommitTotalFreeThreshold | 0 |
| LockPrefixTable | 0 |
| MaximumAllocationSize | 0 |
| VirtualMemoryThreshold | 0 |
| ProcessAffinityMask | 0 |
| ProcessHeapFlags | (EMPTY) |
| CSDVersion | 0 |
| Reserved1 | 0 |
| EditList | 0 |
| SecurityCookie | 0x1401f5040 |
| XOR Key | 0xb45e07fb |
|---|---|
| Unmarked objects | 0 |
| Imports (VS2008 SP1 build 30729) | 22 |
| ASM objects (35721) | 4 |
| C objects (35721) | 10 |
| C++ objects (35721) | 36 |
| Imports (35721) | 6 |
| Imports (27412) | 27 |
| Total imports | 439 |
| C++ objects (LTCG) (36256) | 36 |
| ASM objects (36256) | 1 |
| Resource objects (36256) | 1 |
| Linker (36256) | 1 |
No comments yet.