| Architecture |
IMAGE_FILE_MACHINE_AMD64
|
|---|---|
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| Compilation Date | 2026-Jan-20 08:45:36 |
| Detected languages |
English - United States
|
| Debug artifacts |
C:\Users\astro\Downloads\ts cheat\Delete hex C++ v1\ImGui_-_Picos_Museum\ImGui - Pico's Museum\examples\example_win32_directx11\Release\DEKKING STORE.pdb
|
| Info | Matching compiler(s): | MASM/TASM - sig1(h) |
| Suspicious | PEiD Signature: | UPolyX V0.1 -> Delikon |
| Suspicious | Strings found in the binary may indicate undesirable behavior: |
Contains another PE executable:
|
| Info | Cryptographic algorithms detected in the binary: |
Uses constants related to CRC32
Uses known Mersenne Twister constants |
| Malicious | The PE contains functions mostly used by malware. |
[!] The program may be hiding some of its imports:
|
| Malicious | VirusTotal score: 26/71 (Scanned on 2026-01-23 13:23:33) |
ALYac:
Gen:Variant.Application.Lazy.458736
APEX: Malicious Arcabit: Trojan.Application.Lazy.D6FFF0 BitDefender: Gen:Variant.Application.Lazy.458736 Bkav: W64.AIDetectMalware CTX: exe.unknown.lazy ClamAV: Win.Malware.Lazy-10033364-0 CrowdStrike: win/malicious_confidence_100% (D) Cylance: Unsafe Cynet: Malicious (score: 100) ESET-NOD32: Win64/GenKryptik_AGen.AKZ trojan Elastic: malicious (high confidence) Emsisoft: Gen:Variant.Application.Lazy.458736 (B) GData: Gen:Variant.Application.Lazy.458736 Google: Detected Ikarus: Trojan.Win64.Krypt Malwarebytes: Malware.AI.3960043326 MaxSecure: Trojan.Malware.300983.susgen McAfeeD: ti!7900D6DF05DE MicroWorld-eScan: Gen:Variant.Application.Lazy.458736 Microsoft: Trojan:Win32/Wacatac.B!ml Rising: Trojan.Kryptik@AI.100 (RDML:kZPAwXYPqLBCI7ElPfBD2g) SentinelOne: Static AI - Malicious PE Symantec: ML.Attribute.HighConfidence Trapmine: suspicious.low.ml.score VIPRE: Gen:Variant.Application.Lazy.458736 |
| e_magic | MZ |
|---|---|
| e_cblp | 0x90 |
| e_cp | 0x3 |
| e_crlc | 0 |
| e_cparhdr | 0x4 |
| e_minalloc | 0 |
| e_maxalloc | 0xffff |
| e_ss | 0 |
| e_sp | 0xb8 |
| e_csum | 0 |
| e_ip | 0 |
| e_cs | 0 |
| e_ovno | 0 |
| e_oemid | 0 |
| e_oeminfo | 0 |
| e_lfanew | 0x120 |
| Signature | PE |
|---|---|
| Machine |
IMAGE_FILE_MACHINE_AMD64
|
| NumberofSections | 6 |
| TimeDateStamp | 2026-Jan-20 08:45:36 |
| PointerToSymbolTable | 0 |
| NumberOfSymbols | 0 |
| SizeOfOptionalHeader | 0xf0 |
| Characteristics |
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE
|
| Magic | PE32+ |
|---|---|
| LinkerVersion | 14.0 |
| SizeOfCode | 0xff600 |
| SizeOfInitializedData | 0x4f2000 |
| SizeOfUninitializedData | 0 |
| AddressOfEntryPoint | 0x00000000000FAB28 (Section: .text) |
| BaseOfCode | 0x1000 |
| ImageBase | 0x140000000 |
| SectionAlignment | 0x1000 |
| FileAlignment | 0x200 |
| OperatingSystemVersion | 6.0 |
| ImageVersion | 0.0 |
| SubsystemVersion | 6.0 |
| Win32VersionValue | 0 |
| SizeOfImage | 0x5f6000 |
| SizeOfHeaders | 0x400 |
| Checksum | 0 |
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| DllCharacteristics |
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
|
| SizeofStackReserve | 0x100000 |
| SizeofStackCommit | 0x1000 |
| SizeofHeapReserve | 0x100000 |
| SizeofHeapCommit | 0x1000 |
| LoaderFlags | 0 |
| NumberOfRvaAndSizes | 16 |
| d3dx11_43.dll |
D3DX11CreateShaderResourceViewFromMemory
|
|---|---|
| SHELL32.dll |
ShellExecuteA
|
| ole32.dll |
CoInitialize
CoCreateInstance CoUninitialize |
| d3d11.dll |
D3D11CreateDeviceAndSwapChain
|
| D3DCOMPILER_43.dll |
D3DCompile
|
| KERNEL32.dll |
FreeLibrary
QueryPerformanceCounter WaitForSingleObject GetExitCodeThread GetLastError CloseHandle CreateThread ReadFile WriteFile PeekNamedPipe CreateFileW GetCurrentProcessId WaitNamedPipeW lstrlenW GetModuleFileNameW GetTickCount SetNamedPipeHandleState Process32First WriteProcessMemory WaitNamedPipeA HeapFree VirtualFree GetCurrentProcess VirtualAlloc InitializeCriticalSectionEx GetFileAttributesW OpenProcess HeapSize CreateToolhelp32Snapshot Sleep Process32NextW CreateFileA Process32Next Process32FirstW HeapReAlloc GetSystemInfo HeapAlloc VirtualProtectEx HeapDestroy Beep VirtualAllocEx LocalFree DeleteCriticalSection ReadProcessMemory GetProcessHeap GetModuleHandleW CreateRemoteThread VirtualFreeEx VirtualQueryEx MapViewOfFile SleepConditionVariableSRW GetCurrentThreadId GetTickCount64 InitOnceComplete InitOnceBeginInitialize WakeAllConditionVariable UnhandledExceptionFilter SetUnhandledExceptionFilter TerminateProcess IsProcessorFeaturePresent IsDebuggerPresent GetStartupInfoW GetSystemTimeAsFileTime InitializeSListHead OutputDebugStringW GetProcAddress QueryPerformanceFrequency LoadLibraryA GetModuleHandleA GlobalUnlock WideCharToMultiByte GlobalLock GlobalFree GlobalAlloc MultiByteToWideChar AcquireSRWLockExclusive ReleaseSRWLockExclusive CreateFileMappingA UnmapViewOfFile GetFileSizeEx |
| USER32.dll |
EmptyClipboard
CloseClipboard OpenClipboard GetCursorPos SetCursorPos GetClipboardData IsWindowUnicode GetClientRect SetCursor SetCapture GetForegroundWindow DispatchMessageA GetWindowRect DestroyWindow SetClipboardData ReleaseCapture TrackMouseEvent ClientToScreen GetCapture ScreenToClient SetWindowPos CreateWindowExW GetSystemMetrics UnregisterClassW GetDC LoadCursorA GetKeyState GetAsyncKeyState UpdateWindow PostQuitMessage PeekMessageA LoadIconA TranslateMessage DefWindowProcA MoveWindow SetWindowDisplayAffinity ShowWindow GetActiveWindow RegisterClassExW |
| GDI32.dll |
GetPixel
|
| ADVAPI32.dll |
GetLengthSid
RegSetValueExW RegCreateKeyExW RegCloseKey ConvertSidToStringSidA CopySid IsValidSid OpenProcessToken GetTokenInformation |
| MSVCP140.dll |
?cout@std@@3V?$basic_ostream@DU?$char_traits@D@std@@@1@A
?_Xout_of_range@std@@YAXPEBD@Z ?_Osfx@?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAXXZ ?setstate@?$basic_ios@DU?$char_traits@D@std@@@std@@QEAAXH_N@Z ?widen@?$basic_ios@DU?$char_traits@D@std@@@std@@QEBADD@Z ?sputc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHD@Z ?sputn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAA_JPEBD_J@Z ?put@?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV12@D@Z ?flush@?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV12@XZ ??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@P6AAEAV01@AEAV01@@Z@Z ??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV01@K@Z ?good@ios_base@std@@QEBA_NXZ _Xtime_get_ticks _Query_perf_frequency ?_Throw_Cpp_error@std@@YAXH@Z _Mtx_lock _Cnd_do_broadcast_at_thread_exit _Thrd_id _Query_perf_counter _Thrd_join _Mtx_unlock _Cnd_broadcast ?__ExceptionPtrAssign@@YAXPEAXPEBX@Z _Thrd_hardware_concurrency ?GetCurrentThreadId@platform@details@Concurrency@@YAJXZ ?_ReportUnobservedException@details@Concurrency@@YAXXZ ?_Schedule_chore@details@Concurrency@@YAHPEAU_Threadpool_chore@12@@Z ?_LogWorkItemCompleted@_TaskEventLogger@details@Concurrency@@QEAAXXZ ?_LogWorkItemStarted@_TaskEventLogger@details@Concurrency@@QEAAXXZ ?_LogTaskExecutionCompleted@_TaskEventLogger@details@Concurrency@@QEAAXXZ ?_LogTaskCompleted@_TaskEventLogger@details@Concurrency@@QEAAXXZ ?_LogCancelTask@_TaskEventLogger@details@Concurrency@@QEAAXXZ ?_LogScheduleTask@_TaskEventLogger@details@Concurrency@@QEAAX_N@Z ?_Release_chore@details@Concurrency@@YAXPEAU_Threadpool_chore@12@@Z ?ReportUnhandledError@_ExceptionHolder@details@Concurrency@@AEAAXXZ ?_Capture@_ContextCallback@details@Concurrency@@AEAAXXZ ?_Reset@_ContextCallback@details@Concurrency@@AEAAXXZ ?_CallInContext@_ContextCallback@details@Concurrency@@QEBAXV?$function@$$A6AXXZ@std@@_N@Z ??0task_continuation_context@Concurrency@@AEAA@XZ _Cnd_unregister_at_thread_exit ?__ExceptionPtrCreate@@YAXPEAX@Z ?__ExceptionPtrCopy@@YAXPEAXPEBX@Z ?_Xinvalid_argument@std@@YAXPEBD@Z ?cerr@std@@3V?$basic_ostream@DU?$char_traits@D@std@@@1@A ?_Xbad_function_call@std@@YAXXZ ?_Syserror_map@std@@YAPEBDH@Z ?_Xlength_error@std@@YAXPEBD@Z ?__ExceptionPtrDestroy@@YAXPEAX@Z ?__ExceptionPtrCurrentException@@YAXPEAX@Z ?__ExceptionPtrRethrow@@YAXPEBX@Z _Cnd_register_at_thread_exit _Cnd_wait _Thrd_detach ?uncaught_exceptions@std@@YAHXZ ?__ExceptionPtrToBool@@YA_NPEBX@Z |
| IMM32.dll |
ImmGetContext
ImmSetCandidateWindow ImmReleaseContext ImmSetCompositionWindow |
| dwmapi.dll |
DwmExtendFrameIntoClientArea
|
| WININET.dll |
HttpOpenRequestA
InternetSetOptionA InternetOpenA InternetQueryOptionA HttpQueryInfoA InternetSetCookieA InternetCloseHandle HttpSendRequestA InternetConnectA InternetReadFile |
| urlmon.dll |
URLDownloadToFileA
|
| USERENV.dll |
UnloadUserProfile
|
| WINMM.dll |
sndPlaySoundA
|
| ntdll.dll |
RtlVirtualUnwind
RtlCaptureContext RtlLookupFunctionEntry |
| VCRUNTIME140_1.dll |
__CxxFrameHandler4
|
| VCRUNTIME140.dll |
_CxxThrowException
__std_exception_destroy __current_exception memcmp memchr __intrinsic_setjmp memmove memcpy longjmp strrchr _purecall __C_specific_handler strstr memset __std_terminate __std_exception_copy __current_exception_context |
| api-ms-win-crt-stdio-l1-1-0.dll |
fflush
_wfopen __stdio_common_vsprintf __acrt_iob_func fclose fread ftell __stdio_common_vsscanf __stdio_common_vsprintf_s fseek __p__commode _set_fmode __stdio_common_vswprintf fwrite __stdio_common_vfprintf fopen |
| api-ms-win-crt-runtime-l1-1-0.dll |
_get_narrow_winmain_command_line
_initterm _initterm_e _exit _beginthreadex _c_exit _register_thread_local_exe_atexit_callback _crt_atexit _set_app_type terminate _resetstkoflw exit abort _invalid_parameter_noinfo _register_onexit_function _initialize_onexit_table _initialize_narrow_environment _invoke_watson _seh_filter_exe _configure_narrow_argv _errno _cexit |
| api-ms-win-crt-utility-l1-1-0.dll |
qsort
rand |
| api-ms-win-crt-string-l1-1-0.dll |
isalnum
strncmp strcpy_s isspace tolower _wcsicmp strcmp _stricmp isdigit strncpy |
| api-ms-win-crt-heap-l1-1-0.dll |
_set_new_mode
free _msize malloc _callnewh calloc |
| api-ms-win-crt-convert-l1-1-0.dll |
strtol
strtoull atof strtoll strtod |
| api-ms-win-crt-time-l1-1-0.dll |
_time64
strftime _localtime64 |
| api-ms-win-crt-math-l1-1-0.dll |
ceilf
sqrtf powf sinf fmodf roundf cosf atan2f acosf _dclass __setusermatherr |
| api-ms-win-crt-locale-l1-1-0.dll |
_configthreadlocale
localeconv |
| api-ms-win-crt-multibyte-l1-1-0.dll |
_mbsicmp
|
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2026-Jan-20 08:45:36 |
| Version | 0.0 |
| SizeofData | 178 |
| AddressOfRawData | 0x1c4588 |
| PointerToRawData | 0x1c2f88 |
| Referenced File | C:\Users\astro\Downloads\ts cheat\Delete hex C++ v1\ImGui_-_Picos_Museum\ImGui - Pico's Museum\examples\example_win32_directx11\Release\DEKKING STORE.pdb |
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2026-Jan-20 08:45:36 |
| Version | 0.0 |
| SizeofData | 20 |
| AddressOfRawData | 0x1c463c |
| PointerToRawData | 0x1c303c |
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2026-Jan-20 08:45:36 |
| Version | 0.0 |
| SizeofData | 912 |
| AddressOfRawData | 0x1c4650 |
| PointerToRawData | 0x1c3050 |
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2026-Jan-20 08:45:36 |
| Version | 0.0 |
| SizeofData | 0 |
| AddressOfRawData | 0 |
| PointerToRawData | 0 |
| StartAddressOfRawData | 0x1401c4a00 |
|---|---|
| EndAddressOfRawData | 0x1401c4a08 |
| AddressOfIndex | 0x1405adc28 |
| AddressOfCallbacks | 0x140101e88 |
| SizeOfZeroFill | 0 |
| Characteristics |
IMAGE_SCN_ALIGN_4BYTES
|
| Callbacks | (EMPTY) |
| Size | 0x140 |
|---|---|
| TimeDateStamp | 1970-Jan-01 00:00:00 |
| Version | 0.0 |
| GlobalFlagsClear | (EMPTY) |
| GlobalFlagsSet | (EMPTY) |
| CriticalSectionDefaultTimeout | 0 |
| DeCommitFreeBlockThreshold | 0 |
| DeCommitTotalFreeThreshold | 0 |
| LockPrefixTable | 0 |
| MaximumAllocationSize | 0 |
| VirtualMemoryThreshold | 0 |
| ProcessAffinityMask | 0 |
| ProcessHeapFlags | (EMPTY) |
| CSDVersion | 0 |
| Reserved1 | 0 |
| EditList | 0 |
| SecurityCookie | 0x1401da040 |
| XOR Key | 0x48678897 |
|---|---|
| Unmarked objects | 0 |
| Imports (VS2008 SP1 build 30729) | 24 |
| 253 (35207) | 1 |
| C objects (35207) | 10 |
| C++ objects (35207) | 41 |
| ASM objects (35207) | 6 |
| Imports (35207) | 6 |
| C objects (VS2022 Update 1 (17.1.6) compiler 31107) | 26 |
| C objects (33145) | 1 |
| Imports (33145) | 28 |
| Imports (21202) | 7 |
| Total imports | 464 |
| C++ objects (LTCG) (35221) | 18 |
| Resource objects (35221) | 1 |
| Linker (35221) | 1 |
No comments yet.