By using Saferwall you consent to our Terms of Service and Privacy Policy and allow us to share your submission with the security community. Learn more

PE (Portable Executable)

IAT

# rva value meaning
0 0x17000 0x23220
1 0x17008 0x0 GDI32.dll!GetStockObject
2 0x17010 0x22c3c
3 0x17018 0x0 KERNEL32.dll!CloseHandle
4 0x17020 0x22af8 KERNEL32.dll!OpenEventA
5 0x17028 0x22b06 KERNEL32.dll!LoadLibraryW
6 0x17030 0x22b14 KERNEL32.dll!GetModuleHandleW
7 0x17038 0x22b24 KERNEL32.dll!FindResourceExW
8 0x17040 0x22b38 KERNEL32.dll!WideCharToMultiByte
9 0x17048 0x22b4a KERNEL32.dll!GetUserDefaultUILanguage
10 0x17050 0x22b60 KERNEL32.dll!FreeLibrary
11 0x17058 0x22ac8 KERNEL32.dll!LoadResource
12 0x17060 0x22ae8 KERNEL32.dll!WriteConsoleW
13 0x17068 0x23176 KERNEL32.dll!FlushFileBuffers
14 0x17070 0x23162 KERNEL32.dll!SetFilePointerEx
15 0x17078 0x2314e KERNEL32.dll!GetConsoleMode
16 0x17080 0x2313c KERNEL32.dll!GetConsoleCP
17 0x17088 0x2312c KERNEL32.dll!HeapReAlloc
18 0x17090 0x2311e KERNEL32.dll!HeapSize
19 0x17098 0x23112 KERNEL32.dll!GetProcessHeap