filename | test.exe | |
---|---|---|
size | 1536 (0x600) | |
md5 | 26ac5f2ba9d391b2a8bf05c24c4b559a | |
type | MS-DOS executable PE32+ executable (console) x86-64 (stripped to external PDB), for MS Windows | |
mimetype | application/x-dosexec | |
clamav | OK | |
virustotal | → scan with virustotal.com | |
histogram |
PE Header
module_name | hint | ord | function_name |
---|---|---|---|
KERNEL32.dll | 354 | ExitProcess |
offset | size | type | comment | |
---|---|---|---|---|
15c1 | 15 | HTM | # |
![]() |
Please donate some bucks to keep this site up and running: | |
Ko-fi | |
---|---|
Yandex.Money | |
Thank you! |
[?] non-empty last IMAGE_IMPORT_DESCRIPTOR: #<struct PEdump::IMAGE_IMPORT_DESCRIPTOR OriginalFirstThunk=8228, TimeDateStamp=0, ForwarderChain=8228, Name=0, FirstThunk=2017788258, module_name=nil, original_first_thunk=nil, first_thunk=nil>
[?] invalid VA 0x7250746978450162 in OriginalFirstThunk[2] for KERNEL32.dll
[?] invalid VA 0x454b00737365636f in OriginalFirstThunk[3] for KERNEL32.dll
[?] invalid VA 0x642e32334c454e52 in OriginalFirstThunk[4] for KERNEL32.dll
[?] invalid VA 0x6c6c in OriginalFirstThunk[5] for KERNEL32.dll