By using Saferwall you consent to our Terms of Service and Privacy Policy and allow us to share your submission with the security community. Learn more

PE (Portable Executable)

File header

Characteristics 0x22 File is executable, Large Address Aware
Machine 0x8664 x64
Number of sections 0x7 7
Number of symbols 0x0 0
Pointer to symbol table 0x0 0
Size of optional header 0xf0 240B
Time date stamp 0xd557d400 2083-06-04 02:48:32.000Z
Signature 0x4550 PE

Optional header

Address of entrypoint 0x1f8f0 129264
Base of code 0x1000 4096
Checksum 0x5360a 341514
Dll characteristics 0xc160 49504
File alignment 0x1000 4096
Image base 0x140000000 5368709120
Loader flags 0x0 0
Magic 0x20b PE32+
Major image version 0xa 10
Major linker version 0xe 14
Major os version 0xa 10
Major subsystem version 0xa EFI Application
Minor image version 0x0 0
Minor linker version 0x1e 30
Minor os version 0x0 0
Minor subsystem version 0x0 Unknown
Number of rva and sizes 0x10 16B
Section alignment 0x1000 4096
Size of code 0x35000 212.00KB
Size of headers 0x1000 4.00KB
Size of heap commit 0x1000 4.00KB
Size of heap reserve 0x100000 1.00MB
Size of image 0x6a000 424.00KB
Size of initialized data 0x34000 208.00KB
Size of stack commit 0xfc000 1008.00KB
Size of stack reserve 0x100000 1.00MB
Size of uninitialized data 0x0 0B
Subsystem 0x3 Windows CUI
Win32 version value 0x0 0

Data Directory

SizeVirtual Address
Export Directory 0x0 0x0
Import Directory 0x348 0x3cd90
Resource Directory 0x84f8 0x60000
Exception Directory 0x2580 0x5c000
Security Directory 0x0 0x0
Base Relocation Table 0x1d0 0x69000
Debug Directory 0x54 0x38cd4
Architecture specific 0x0 0x0
RVA of GlobalPointer 0x0 0x0
TLS Directory 0x0 0x0
Load Config Directory 0x140 0x361e0
Bound Import Directory 0x0 0x0
Import Address Table 0x9f0 0x36ac0
Delay Import Descriptors 0xa0 0x3ca10
COM Runtime Descriptor 0x0 0x0
Reserved 0x0 0x0