APEV PXC:\Program Files\Mozilla Firefox\firefox.exe File Headers DOS EXE:true NT EXE:true Dos STUB size:208 bytes DOS Header e_magic:5a4dh (23 117) e_cblp:90h (144) e_cp:3h (3) e_crlc:0h (0) e_cparhdr:4h (4) e_minalloc:0h (0) e_maxalloc:ffffh (65 535) e_ss:0h (0) e_sp:b8h (184) e_csum:0h (0) e_ip:0h (0) e_cs:0h (0) e_lfarlc:40h (64) e_ovno:0h (0) e_res:0h (0) e_oemid:0h (0) e_oeminfo:0h (0) e_res2:0h (0) e_lfanew:110h (272) COFF File Header (Object & Image) Machine:Intel 386 or later, and compatible processors NumberOfSections:4h (4) TimeDateStamp:Wed Oct 11 11:36:15 MSD 2006 PointerToSymbolTable:0h (0) NumberOfSymbols:0h (0) SizeOfOptionalHeader:e0h (224) Characteristics:IMAGE_FILE_RELOCS_STRIPPED, IMAGE_FILE_EXECUTABLE_IMAGE, IMAGE_FILE_LINE_NUMS_STRIPPED, IMAGE_FILE_LOCAL_SYMS_STRIPPED, IMAGE_FILE_32BIT_MACHINE Optional Header (Usually Image Only) PE Format:PE32 Standard fields MajorLinkerVersion:6h (6) MinorLinkerVersion:0h (0) SizeOfCode:560200h (5 636 608) SizeOfInitializedData:1f4a00h (2 050 560) SizeOfUninitializedData:0h (0) AddressOfEntryPoint:55d9deh (5 626 334) BaseOfCode:1000h (4 096) BaseOfData:562000h (5 644 288) NT additional fields ImageBase:400000h (4 194 304) SectionAlignment:1000h (4 096) FileAlignment:200h (512) MajorOperatingSystemVersion:4h (4) MinorOperatingSystemVersion:0h (0) MajorImageVersion:0h (0) MinorImageVersion:0h (0) MajorSubsystemVersion:4h (4) MinorSubsystemVersion:0h (0) SizeOfImage:758000h (7 700 480) SizeOfHeaders:400h (1 024) CheckSum:0h (0) Subsystem:Image runs in the Windows™ graphical user interface (GUI) subsystem DllCharacteristics: SizeOfStackReserve:100000h (1 048 576) SizeOfStackCommit:1000h (4 096) SizeOfHeapReserve:40000h (262 144) SizeOfHeapCommit:1000h (4 096) LoaderFlags:0h (0) NumberOfRvaAndSizes:10h (16) Optional Header Data Directories (Image Only) Export Table VirtualAddress:6c4b60h (7 097 184) Size:6886h (26 758) Import Table VirtualAddress:6b2abch (7 023 292) Size:1a4h (420) Resource Table VirtualAddress:744000h (7 618 560) Size:13c08h (80 904) Exception Table VirtualAddress:0h (0) Size:0h (0) Certificate Table VirtualAddress:0h (0) Size:0h (0) Base Relocation Table VirtualAddress:0h (0) Size:0h (0) Debug VirtualAddress:5642a0h (5 653 152) Size:1ch (28) Architecture VirtualAddress:0h (0) Size:0h (0) Global Ptr VirtualAddress:0h (0) Size:0h (0) TLS Table VirtualAddress:0h (0) Size:0h (0) Load Config Table VirtualAddress:0h (0) Size:0h (0) Bound Import VirtualAddress:0h (0) Size:0h (0) IAT VirtualAddress:562000h (5 644 288) Size:2298h (8 856) Delay Import Descriptor VirtualAddress:0h (0) Size:0h (0) COM+ Runtime Header VirtualAddress:0h (0) Size:0h (0) Reserved VirtualAddress:0h (0) Size:0h (0) Section Table (Section Headers)[4] .text VirtualSize:560043h (5 636 163) VirtualAddress:1000h (4 096) SizeOfRawData:560200h (5 636 608) PointerToRawData:400h (1 024) PointerToRelocations:0h (0) PointerToLinenumbers:0h (0) NumberOfRelocations:0h (0) NumberOfLinenumbers:0h (0) Characteristics:60000020h (1 610 612 768) Characteristics:Section contains executable code, Section can be executed as code, Section can be read .rdata VirtualSize:1693e6h (1 479 654) VirtualAddress:562000h (5 644 288) SizeOfRawData:169400h (1 479 680) PointerToRawData:560600h (5 637 632) PointerToRelocations:0h (0) PointerToLinenumbers:0h (0) NumberOfRelocations:0h (0) NumberOfLinenumbers:0h (0) Characteristics:40000040h (1 073 741 888) Characteristics:Section contains initialized data, Section can be read .data VirtualSize:776a4h (489 124) VirtualAddress:6cc000h (7 127 040) SizeOfRawData:63000h (405 504) PointerToRawData:6c9a00h (7 117 312) PointerToRelocations:0h (0) PointerToLinenumbers:0h (0) NumberOfRelocations:0h (0) NumberOfLinenumbers:0h (0) Characteristics:c0000040h (3 221 225 536) Characteristics:Section contains initialized data, Section can be read, Section can be written to .rsrc VirtualSize:13c08h (80 904) VirtualAddress:744000h (7 618 560) SizeOfRawData:13e00h (81 408) PointerToRawData:72ca00h (7 522 816) PointerToRelocations:0h (0) PointerToLinenumbers:0h (0) NumberOfRelocations:0h (0) NumberOfLinenumbers:0h (0) Characteristics:40000040h (1 073 741 888) Characteristics:Section contains initialized data, Section can be read Generated with Anywhere PE Viewer/APEV PX (http://www.ucware.com/) |