8db07e940c88f42e956e7b7ee93375be9b0eff51d542846b562b51c3f32d62ff

Summary

Architecture IMAGE_FILE_MACHINE_AMD64
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date 2026-Jul-13 23:32:17
Detected languages English - United States
TLS Callbacks 1 callback(s) detected.
Debug artifacts tauri_app.pdb
CompanyName volt
FileDescription Volt
FileVersion 0.1.0
ProductName Volt
ProductVersion 0.1.0

Plugin Output

Suspicious Strings found in the binary may indicate undesirable behavior: Contains references to internet browsers:
  • chrome.exe
Miscellaneous malware strings:
  • cmd.exe
Contains domain names:
  • 0www.entrust.net
  • GoDaddy.com
  • apis.roblox.com
  • assetgame.roblox.com
  • auth.roblox.com
  • aws.rbxcdn.com
  • birthpopuptypesapplyImagebeinguppernoteseveryshowsmeansextramatchtrackknownearlybegansuperpapernorthlearngivennamedendedTermspartsGroupbrandusingwomanfalsereadyaudiotakeswhile.com
  • clientsettings.roblox.com
  • color.info
  • computed.www.roblox.com
  • developer.microsoft.com
  • entrust.net
  • games.roblox.com
  • genretrucklooksValueFrame.net
  • github.com
  • http://127.0.0.1
  • http://dummy.test
  • http://www.C
  • http://www.a
  • http://www.css
  • http://www.hortcut
  • http://www.icon
  • http://www.interpretation
  • http://www.language
  • http://www.roblox.com
  • http://www.style
  • http://www.text-decoration
  • http://www.w3.org
  • http://www.w3.org/shortcut
  • http://www.wencodeURIComponent
  • http://www.years
  • https://apis.roblox.com
  • https://apis.roblox.com/sharelinks/v1/resolve-linkAccount
  • https://apis.roblox.com/universes/v1/places/
  • https://assetgame.roblox.com
  • https://assetgame.roblox.com/game/PlaceLauncher.ashx?request
  • https://auth.roblox.com
  • https://auth.roblox.com/v1/authentication-ticketCookie
  • https://clientsettings.roblox.com
  • https://clientsettings.roblox.com/v2/client-version/WindowsPlayer/channel
  • https://clientsettings.roblox.com/v2/user-channel?binaryType
  • https://developer.microsoft.com
  • https://developer.microsoft.com/en-us/microsoft-edge/webview2
  • https://docs.rs
  • https://games.roblox.com
  • https://games.roblox.com/v1/games?universeIds
  • https://github.com
  • https://setup-aws.rbxcdn.com
  • https://users.roblox.com
  • https://users.roblox.com/v1/users/authenticatedapplication/json,
  • https://www.World
  • https://www.recent
  • https://www.roblox.com
  • https://www.roblox.com/login
  • https://www.roblox.com/x-bound-auth-token
  • microsoft.com
  • openssl.org
  • rbxcdn.com
  • roblox.com
  • settingsroblox.com
  • setup-aws.rbxcdn.com
  • thing.org
  • users.roblox.com
  • web.roblox.com
  • www.entrust.net
  • www.roblox.com
  • www.w3.org
Info Cryptographic algorithms detected in the binary: Uses constants related to CRC32
Uses constants related to SHA1
Uses constants related to SHA256
Uses constants related to SHA512
Uses constants related to RC5 or RC6
Microsoft's Cryptography API
Suspicious The PE is possibly packed. Unusual section name found: .taubndl
Malicious The PE contains functions mostly used by malware. [!] The program may be hiding some of its imports:
  • GetProcAddress
  • LoadLibraryExA
  • LoadLibraryA
  • LoadLibraryW
  • LoadLibraryExW
Functions which can be used for anti-debugging purposes:
  • SwitchToThread
Can access the registry:
  • RegQueryValueExW
  • RegGetValueW
  • RegOpenKeyExW
  • RegCloseKey
  • RegCreateKeyExW
  • RegSetValueExW
  • RegEnumValueW
Possibly launches other programs:
  • CreateProcessW
  • ShellExecuteW
Uses Windows's Native API:
  • NtWriteFile
  • NtCancelIoFileEx
  • NtDeviceIoControlFile
  • NtReadFile
  • NtOpenFile
  • NtCreateFile
  • NtCreateNamedPipeFile
Uses Microsoft's cryptographic API:
  • CryptUnprotectData
  • CryptProtectData
Can create temporary files:
  • GetTempPathW
  • CreateFileW
Uses functions commonly found in keyloggers:
  • MapVirtualKeyW
  • GetAsyncKeyState
  • GetForegroundWindow
Leverages the raw socket API to access the Internet:
  • WSADuplicateSocketW
  • select
  • shutdown
  • socket
  • recv
  • WSARecv
  • freeaddrinfo
  • getaddrinfo
  • send
  • WSASend
  • listen
  • accept
  • closesocket
  • WSACleanup
  • WSAStartup
  • getsockname
  • setsockopt
  • bind
  • connect
  • ioctlsocket
  • WSASocketW
  • WSAIoctl
  • WSAGetLastError
  • getsockopt
  • getpeername
Manipulates other processes:
  • OpenProcess
Can take screenshots:
  • GetDC
  • CreateCompatibleDC
  • BitBlt
Interacts with the certificate store:
  • CertOpenStore
  • CertAddCertificateContextToStore
Suspicious VirusTotal score: 1/70 (Scanned on 2026-07-14 00:29:31) Trapmine: malicious.moderate.ml.score

Hashes

MD5 72197660042ea103b806d8a2fab6e10d
SHA1 89949bc55e1f2fdccf86990afcf021023e5b8622
SHA256 8db07e940c88f42e956e7b7ee93375be9b0eff51d542846b562b51c3f32d62ff
SHA3 ec9cff7d9509c8d7bb3987a1dff2778e5f5f769b9dee80e92637c566148fe227
SSDeep 196608:0Wxw1GiFqcaiXJpchzvnOXltwLWAom9gtf6r9SIJ9:0aiXfcwXML3omKE8IJ
Imports Hash fe929d1b2c77445134eee659986acc90

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0xe8

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_AMD64
NumberofSections 7
TimeDateStamp 2026-Jul-13 23:32:17
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xf0
Characteristics IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE

Image Optional Header

Magic PE32+
LinkerVersion 14.0
SizeOfCode 0x5a8200
SizeOfInitializedData 0x6c2400
SizeOfUninitializedData 0
AddressOfEntryPoint 0x0000000000591104 (Section: .text)
BaseOfCode 0x1000
ImageBase 0x140000000
SectionAlignment 0x1000
FileAlignment 0x200
OperatingSystemVersion 6.0
ImageVersion 0.0
SubsystemVersion 6.0
Win32VersionValue 0
SizeOfImage 0xc6e000
SizeOfHeaders 0x400
Checksum 0
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x100000
SizeofStackCommit 0x1000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 e8b2672d7cd71c5a7136f13a335d7f1c
SHA1 8543d17678098a001cdfcc65d82de9c00f8e4c86
SHA256 3551f2377994515039081c18c52b4535967d3ceab4d8eefd16659a2b4c06ed96
SHA3 8db0176b1def5aad168f209058dfff863baa52a900ced3f9c30504ab9d3000fc
VirtualSize 0x5a8110
VirtualAddress 0x1000
SizeOfRawData 0x5a8200
PointerToRawData 0x400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.25006

.rdata

MD5 b51ffa0a8dbccbf1e921f9fdd72eab45
SHA1 4e8f88471fe5bea991351293e1dc379028a85f13
SHA256 20bcf2cd67bfbaf756eb92cc3acf75640a54c7de7ffd9790eeddff4f8983e6cf
SHA3 2953dbdd51600ebfa14978d90992d950dbf6973ca110ffcef8b21b7f6cf22059
VirtualSize 0x67ffd2
VirtualAddress 0x5aa000
SizeOfRawData 0x680000
PointerToRawData 0x5a8600
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 7.65942

.data

MD5 a1d903f38698733d4dd060cfbab7f267
SHA1 314f3fad69df9480be4db4c130407eb8ba708425
SHA256 efeb00a72537e3d36b80267cae7822e5b6d6ac819ba00f7a7972e055d593f73e
SHA3 f73646a8e2b0182974b6b44fae845ff9a6d12aa132cc39d9b680638f13baa42f
VirtualSize 0x6cc8
VirtualAddress 0xc2a000
SizeOfRawData 0x4200
PointerToRawData 0xc28600
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 2.71334

.pdata

MD5 33889494bce1fdbdd5b9ba5c28c2aac9
SHA1 09d4247262c14a0ce1fcea04c02e9d841a8ad8b9
SHA256 d9f2d327e44fed1e86410c26ee3bdec6b082c9d15051099583960f24156f7071
SHA3 2968137ceff75f5aec95a756bf2199eed4168a4d6035356b4dbdce4fc7b6f56d
VirtualSize 0x27b34
VirtualAddress 0xc31000
SizeOfRawData 0x27c00
PointerToRawData 0xc2c800
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 6.22597

.taubndl

MD5 2ffb7b3a71c79342031ec319b86446e5
SHA1 0e1468c91ceb4800fbd08b76be0e843871d60003
SHA256 db00bc1a5b9fb1ca13d778afae9d93cbcd8d59c6ad78feec24395ba0de29c8a5
SHA3 9a71baf21c18313b33ff6f8d77fd0910b1d288897e442f1c01fe72523aea594b
VirtualSize 0x10
VirtualAddress 0xc59000
SizeOfRawData 0x200
PointerToRawData 0xc54400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 0.122276

.rsrc

MD5 5d8c02fce043d3bd96c138edd59988f1
SHA1 d42dd80cb3fc8d1fa98b63205fe27dfef05ca735
SHA256 3781375e3a728b9caa72c107b2aa4f2647f30a47c6a9c554f6d3cf744d4f533c
SHA3 8f58bb235bf738b9310fa5373d00797b829da15e8a5e00ceea14a8f058cffde2
VirtualSize 0x6958
VirtualAddress 0xc5a000
SizeOfRawData 0x6a00
PointerToRawData 0xc54600
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 7.77138

.reloc

MD5 1423e8bb531c3524c07dd5997b82f9df
SHA1 fe0eab607365034f1f09716dabeeb859f9053796
SHA256 ea75b7e42ad53d5c6e12b8c761b1ddb0c2ea9554a5751a41de745e5e671dbe69
SHA3 10eae158284093bc706003386bed0086b148515547d17daf9b44b3129ae77ed7
VirtualSize 0xcda4
VirtualAddress 0xc61000
SizeOfRawData 0xce00
PointerToRawData 0xc5b000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy 5.47023

Imports

kernel32.dll CreateWaitableTimerExW
GetSystemInfo
GetExitCodeProcess
WaitForMultipleObjects
DuplicateHandle
CreateProcessW
GetWindowsDirectoryW
LocalFree
GetSystemDirectoryW
GetProcessTimes
GlobalMemoryStatusEx
CreateEventW
OpenProcess
TerminateProcess
ExitProcess
GetSystemTimePreciseAsFileTime
CreateThread
SetHandleInformation
SleepEx
CreateJobObjectW
QueryInformationJobObject
SetInformationJobObject
AssignProcessToJobObject
WaitForSingleObject
ReleaseMutex
CreateMutexA
GetCurrentProcessId
GetCurrentProcess
WaitForSingleObjectEx
GetCurrentThreadId
Sleep
IsProcessorFeaturePresent
ReleaseSRWLockExclusive
AcquireSRWLockExclusive
WakeAllConditionVariable
SleepConditionVariableSRW
GetSystemTimeAsFileTime
GetProcAddress
LoadLibraryExA
TlsAlloc
TlsGetValue
TlsSetValue
lstrlenW
TlsFree
EncodePointer
IsDebuggerPresent
RtlPcToFileHeader
RaiseException
GetCommandLineW
UnhandledExceptionFilter
SetEnvironmentVariableW
SetUnhandledExceptionFilter
InitializeSListHead
RtlUnwindEx
FreeEnvironmentStringsW
GetEnvironmentStringsW
QueryPerformanceCounter
QueryPerformanceFrequency
GetEnvironmentVariableW
GetCurrentDirectoryW
GetLastError
RtlVirtualUnwind
RtlCaptureContext
LoadLibraryA
SetLastError
AddVectoredExceptionHandler
PostQueuedCompletionStatus
LoadLibraryW
RemoveDirectoryW
FindNextFileW
GetModuleHandleA
SetFilePointerEx
DeviceIoControl
CreateSymbolicLinkW
MoveFileExW
GetModuleHandleW
RtlLookupFunctionEntry
WideCharToMultiByte
MultiByteToWideChar
FormatMessageW
CompareStringOrdinal
GetModuleFileNameW
CopyFileExW
DeleteFileW
GetTempPathW
GetFileAttributesW
ReadFile
GetOverlappedResult
CancelIo
CreateDirectoryW
GetFileInformationByHandleEx
GetFileInformationByHandle
FindClose
FindFirstFileExW
SetFileInformationByHandle
SetFileTime
CreateFileW
GetFullPathNameW
WriteFileEx
ReadFileEx
WriteConsoleW
GetProcessHeap
GetConsoleOutputCP
SwitchToThread
GetConsoleMode
GetStdHandle
CreatePipe
SetFileCompletionNotificationModes
HeapReAlloc
GetCurrentThread
CreateIoCompletionPort
GetQueuedCompletionStatusEx
GetFinalPathNameByHandleW
SetThreadStackGuarantee
DeleteCriticalSection
SetWaitableTimer
CloseHandle
FreeLibrary
HeapAlloc
GetUserDefaultUILanguage
LCIDToLocaleName
LoadLibraryExW
OutputDebugStringW
OutputDebugStringA
HeapFree
GetProcessId
InitializeCriticalSectionAndSpinCount
advapi32.dll EventRegister
SystemFunction036
RegQueryValueExW
RegGetValueW
EventUnregister
RegOpenKeyExW
RegCloseKey
RegDeleteTreeW
RegCreateKeyExW
RegSetValueExW
RegEnumValueW
EventWriteTransfer
EventSetInformation
bcrypt.dll BCryptGenRandom
ntdll.dll RtlNtStatusToDosError
NtWriteFile
NtCancelIoFileEx
NtDeviceIoControlFile
NtReadFile
NtOpenFile
NtCreateFile
RtlGetVersion
NtCreateNamedPipeFile
api-ms-win-core-synch-l1-2-0.dll WakeByAddressAll
WaitOnAddress
WakeByAddressSingle
user32.dll SetCapture
CreatePopupMenu
EnableMenuItem
DrawMenuBar
CheckMenuItem
RedrawWindow
MapVirtualKeyW
MonitorFromPoint
RegisterClassExW
RegisterRawInputDevices
ReleaseCapture
GetKeyState
GetAsyncKeyState
EnumDisplayMonitors
RemoveMenu
GetKeyboardLayout
MapVirtualKeyExW
GetKeyboardState
EnableWindow
IsWindowEnabled
TrackMouseEvent
GetMonitorInfoW
InvalidateRect
InvalidateRgn
ScreenToClient
CreateMenu
DestroyMenu
CreateIcon
SetMenu
PostMessageW
SystemParametersInfoA
SendMessageW
GetTouchInputInfo
AppendMenuW
ShowWindow
PostQuitMessage
InsertMenuW
GetMenuBarInfo
MonitorFromWindow
GetClientRect
GetWindowRect
GetCursorPos
SetForegroundWindow
CreateAcceleratorTableW
ClientToScreen
SendInput
DrawTextW
FillRect
GetWindowDC
OffsetRect
MapWindowPoints
GetActiveWindow
GetMenuItemInfoW
DrawIconEx
ReleaseDC
GetDC
SetMenuItemInfoW
DestroyAcceleratorTable
CloseTouchInputHandle
MonitorFromRect
UpdateWindow
SetFocus
GetRawInputData
SetWindowRgn
DestroyIcon
TrackPopupMenu
ValidateRect
RegisterTouchWindow
ChangeDisplaySettingsExW
GetParent
FindWindowExW
TranslateAcceleratorW
MsgWaitForMultipleObjectsEx
GetMessageW
GetWindow
GetWindowThreadProcessId
EnumWindows
ToUnicodeEx
EnumChildWindows
DispatchMessageA
GetMessageA
AdjustWindowRect
PostThreadMessageW
DispatchMessageW
TranslateMessage
DestroyWindow
SystemParametersInfoW
FlashWindowEx
LoadCursorW
SetCursor
IsIconic
IsWindow
CreateWindowExW
SetCursorPos
GetForegroundWindow
SetWindowTextW
IsWindowVisible
GetWindowTextW
GetWindowTextLengthW
SetParent
SetPropW
SetWindowLongPtrW
GetWindowLongPtrW
ShowCursor
ClipCursor
GetSystemMetrics
GetClipCursor
DefWindowProcW
SetWindowDisplayAffinity
GetWindowPlacement
SetWindowPlacement
PeekMessageW
AdjustWindowRectEx
GetMenu
GetWindowLongW
SetWindowPos
SetWindowLongW
GetSystemMenu
RegisterWindowMessageA
IsProcessDPIAware
GetUpdateRect
crypt32.dll CertFreeCertificateChain
CertVerifyCertificateChainPolicy
CertEnumCertificatesInStore
CertFreeCertificateContext
CryptUnprotectData
CryptProtectData
CertDuplicateCertificateContext
CertDuplicateStore
CertOpenStore
CertDuplicateCertificateChain
CertAddCertificateContextToStore
CertCloseStore
CertGetCertificateChain
bcryptprimitives.dll ProcessPrng
psapi.dll GetProcessMemoryInfo
oleaut32.dll GetErrorInfo
SysStringLen
SysFreeString
SetErrorInfo
ole32.dll OleInitialize
CoTaskMemAlloc
RegisterDragDrop
CoUninitialize
CoCreateInstance
RevokeDragDrop
CoCreateFreeThreadedMarshaler
CoInitialize
CoInitializeEx
CoTaskMemFree
shell32.dll SHGetKnownFolderPath
ShellExecuteExW
ShellExecuteW
ILFree
ILCreateFromPathW
SHOpenFolderAndSelectItems
SHCreateItemFromParsingName
DragQueryFileW
DragFinish
SHAppBarMessage
comctl32.dll SetWindowSubclass
RemoveWindowSubclass
DefSubclassProc
TaskDialogIndirect
gdi32.dll SetTextColor
CreateDIBSection
GetDeviceCaps
SelectObject
CreateCompatibleDC
DeleteDC
CreateRectRgn
CreateSolidBrush
SetBkMode
CombineRgn
BitBlt
DeleteObject
dwmapi.dll DwmEnableBlurBehindWindow
DwmGetWindowAttribute
DwmSetWindowAttribute
shlwapi.dll SHCreateMemStream
ws2_32.dll WSADuplicateSocketW
select
shutdown
socket
recv
WSARecv
freeaddrinfo
getaddrinfo
send
WSASend
listen
accept
closesocket
WSACleanup
WSAStartup
getsockname
setsockopt
bind
connect
ioctlsocket
WSASocketW
WSAIoctl
WSAGetLastError
getsockopt
getpeername
secur32.dll QueryContextAttributesW
FreeCredentialsHandle
DeleteSecurityContext
EncryptMessage
FreeContextBuffer
AcceptSecurityContext
InitializeSecurityContextW
ApplyControlToken
DecryptMessage
AcquireCredentialsHandleA
api-ms-win-crt-math-l1-1-0.dll ceil
floor
__setusermatherr
trunc
pow
round
roundf
api-ms-win-crt-string-l1-1-0.dll wcscmp
wcsncmp
strlen
strcmp
_wcsicmp
strcpy_s
wcslen
wcsncat
api-ms-win-crt-heap-l1-1-0.dll calloc
_callnewh
_set_new_mode
free
malloc
api-ms-win-crt-utility-l1-1-0.dll _rotl64
api-ms-win-crt-convert-l1-1-0.dll wcstol
_ultow_s
_wtoi
api-ms-win-crt-runtime-l1-1-0.dll abort
exit
_initterm_e
_initterm
terminate
_exit
_configure_narrow_argv
_crt_atexit
_register_onexit_function
_set_app_type
_seh_filter_exe
_initialize_onexit_table
__p___argc
_get_initial_narrow_environment
_register_thread_local_exe_atexit_callback
_c_exit
_cexit
__p___argv
_initialize_narrow_environment
api-ms-win-crt-stdio-l1-1-0.dll _set_fmode
__p__commode
api-ms-win-crt-locale-l1-1-0.dll _configthreadlocale

Delayed Imports

1

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x508
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.48838
Detected Filetype PNG graphic file
MD5 9dff360ba007b6ed94493f299b4c91d1
SHA1 78bd5c0cd847d8c1e19e6c377ae3e0947f082328
SHA256 89d25c853281b803616e0686ec3a0292e9a653663687c892b7b922cf21467c32
SHA3 ed947ee5cf2940520cb7dfb1a89c023da7f5c65e5a979080b801e68f4f8678bd

2

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x22b
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.28794
Detected Filetype PNG graphic file
MD5 d3c62432ee0ad0bb3bb6ab4c4b6921f4
SHA1 94c5ccc038a0f2e7cb7afb7c5e84267882536c44
SHA256 7fd5542ac3acf5815e978a5e441afeffd750b0c1d19dedeb95cadcda10cc2d64
SHA3 fc6beb0942610cbe797b615364a75bae1208c125f383f644b3bd4cc2ac5dd42c

3

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x379
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.37703
Detected Filetype PNG graphic file
MD5 b9ac4c77bccb522672bc1af9ed24b7a6
SHA1 c84a2793f4441d50bdabef269a7a1cc1f2f3b654
SHA256 02e86b997fbec68b2dcfed008d68f3bf86f30432e707ec78b2a3ba89c746e176
SHA3 6b2f69d120899969ae3bc3641d916021f18cebaf748e8dfaa3abbee4112912ef

4

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x8ce
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.48508
Detected Filetype PNG graphic file
MD5 ba55d88957e992fc06b8d2900e243764
SHA1 1025711cb609bc9ea6faf48c4ca56af91d5e6a80
SHA256 b5fef9d313e36db88b7ce08a102b15a3b2cf2350c15e994fd409ec52e10b8d78
SHA3 ed2c8a732c4ad85d76ea3ccb49c090174eb970b960ad2d15b49f94dbcd516180

5

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0xcf4
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.6049
Detected Filetype PNG graphic file
MD5 0ecd205996db957704321b277f74554a
SHA1 67852585cd5a88527be01e70538a8e7f30d30fb2
SHA256 96f6cc3e4c7805956a823e6372373605f483f3c5a601049d3bcb027af91f39a6
SHA3 4b04db7a5639d8a9f7f7df7b78fd34b063df58294b021a94bfbac388c62c4315

6

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x433a
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.91468
Detected Filetype PNG graphic file
MD5 a797c44edfb8b59aa2971b0d4cccb47c
SHA1 5724bab3c71249419e6ba03f7830b0bd293d03b0
SHA256 5f80f5d91296477b00f25d9842a359eb9e9ba1205024db0951a043d2059453a1
SHA3 3a8cd85bfc60f54cf930b734724e6dc7e5d613fe508c1ec13092ed1762270f96

32512

Type RT_GROUP_ICON
Language English - United States
Codepage UNKNOWN
Size 0x5a
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.77987
Detected Filetype Icon file
MD5 92d5da8f762650685fb595633ee6323f
SHA1 229252a29f82272e135a5ee9a2d53f8521ec2bab
SHA256 db6c26114f7c0624e543d31182039c4b2ac51f74c2ef5d6b4dc2bbd5f70927fe
SHA3 040260ade5e1fda71cd2df9835e421c7d889ba10c107feb114e01e0231070c2c

1 (#2)

Type RT_VERSION
Language English - United States
Codepage UNKNOWN
Size 0x1c4
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.07327
MD5 181dbec67c830c40be2c21a0d549bc0e
SHA1 46fae656b3f7c8b916c89de051a6a742e11d1966
SHA256 b920d5dfa94af98104a00ad31349e2af77b5a54532920ea094b0e073d91a4203
SHA3 a4660be40ef407ce8fda07eea2b577676a5242317c9550c3a4a6db55d2659b35

1 (#3)

Type RT_MANIFEST
Language English - United States
Codepage UNKNOWN
Size 0x14e
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.96056
MD5 01e4c8c046a47771f13cd120b53303e7
SHA1 2a4224d31c916a5cff4f2636a3cb47fdd84a5cc9
SHA256 b1cb832f790c153aa0e9a66f76e75460263cf1d41971d2dbcc9a4d87ec18b7d8
SHA3 680120ec819e7ba66519d9a8a3e446973c4cb28aa0146c91cceaa8c8fadc90ae

Version Info

Signature 0xfeef04bd
StructVersion 0x10000
FileVersion 1.0.4.0
ProductVersion 1.0.4.0
FileFlags (EMPTY)
FileOs VOS_DOS_WINDOWS32
VOS_NT
VOS_NT_WINDOWS32
VOS_WINCE
VOS__WINDOWS32
FileType VFT_APP
Language UNKNOWN
CompanyName volt
FileDescription Volt
FileVersion (#2) 0.1.0
ProductName Volt
ProductVersion (#2) 0.1.0
Resource LangID English - United States

IMAGE_DEBUG_TYPE_CODEVIEW

Characteristics 0
TimeDateStamp 2026-Jul-13 23:32:17
Version 0.0
SizeofData 38
AddressOfRawData 0xc197f4
PointerToRawData 0xc17df4
Referenced File tauri_app.pdb

IMAGE_DEBUG_TYPE_VC_FEATURE

Characteristics 0
TimeDateStamp 2026-Jul-13 23:32:17
Version 0.0
SizeofData 20
AddressOfRawData 0xc1981c
PointerToRawData 0xc17e1c

IMAGE_DEBUG_TYPE_POGO

Characteristics 0
TimeDateStamp 2026-Jul-13 23:32:17
Version 0.0
SizeofData 1068
AddressOfRawData 0xc19830
PointerToRawData 0xc17e30

TLS Callbacks

StartAddressOfRawData 0x140c19ca8
EndAddressOfRawData 0x140c19f24
AddressOfIndex 0x140c305a4
AddressOfCallbacks 0x1405aae48
SizeOfZeroFill 0
Characteristics IMAGE_SCN_ALIGN_8BYTES
Callbacks 0x00000001401EB7B0

Load Configuration

Size 0x140
TimeDateStamp 1970-Jan-01 00:00:00
Version 0.0
GlobalFlagsClear (EMPTY)
GlobalFlagsSet (EMPTY)
CriticalSectionDefaultTimeout 0
DeCommitFreeBlockThreshold 0
DeCommitTotalFreeThreshold 0
LockPrefixTable 0
MaximumAllocationSize 0
VirtualMemoryThreshold 0
ProcessAffinityMask 0
ProcessHeapFlags (EMPTY)
CSDVersion 0
Reserved1 0
EditList 0
SecurityCookie 0x140c2e080

RICH Header

XOR Key 0xed7ef073
Unmarked objects 0
Imports (VS2008 SP1 build 30729) 17
ASM objects (35207) 9
C objects (35207) 13
C++ objects (35207) 47
Total imports 428
C objects (35217) 34
Unmarked objects (#2) 75
Resource objects (35217) 1
Linker (35217) 1

Errors

Leave a comment

No comments yet.