| Architecture |
IMAGE_FILE_MACHINE_AMD64
|
|---|---|
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| Compilation Date | 2026-Jul-13 23:32:17 |
| Detected languages |
English - United States
|
| TLS Callbacks | 1 callback(s) detected. |
| Debug artifacts |
tauri_app.pdb
|
| CompanyName | volt |
| FileDescription | Volt |
| FileVersion | 0.1.0 |
| ProductName | Volt |
| ProductVersion | 0.1.0 |
| Suspicious | Strings found in the binary may indicate undesirable behavior: |
Contains references to internet browsers:
|
| Info | Cryptographic algorithms detected in the binary: |
Uses constants related to CRC32
Uses constants related to SHA1 Uses constants related to SHA256 Uses constants related to SHA512 Uses constants related to RC5 or RC6 Microsoft's Cryptography API |
| Suspicious | The PE is possibly packed. | Unusual section name found: .taubndl |
| Malicious | The PE contains functions mostly used by malware. |
[!] The program may be hiding some of its imports:
|
| Suspicious | VirusTotal score: 1/70 (Scanned on 2026-07-14 00:29:31) | Trapmine: malicious.moderate.ml.score |
| e_magic | MZ |
|---|---|
| e_cblp | 0x90 |
| e_cp | 0x3 |
| e_crlc | 0 |
| e_cparhdr | 0x4 |
| e_minalloc | 0 |
| e_maxalloc | 0xffff |
| e_ss | 0 |
| e_sp | 0xb8 |
| e_csum | 0 |
| e_ip | 0 |
| e_cs | 0 |
| e_ovno | 0 |
| e_oemid | 0 |
| e_oeminfo | 0 |
| e_lfanew | 0xe8 |
| Signature | PE |
|---|---|
| Machine |
IMAGE_FILE_MACHINE_AMD64
|
| NumberofSections | 7 |
| TimeDateStamp | 2026-Jul-13 23:32:17 |
| PointerToSymbolTable | 0 |
| NumberOfSymbols | 0 |
| SizeOfOptionalHeader | 0xf0 |
| Characteristics |
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE
|
| Magic | PE32+ |
|---|---|
| LinkerVersion | 14.0 |
| SizeOfCode | 0x5a8200 |
| SizeOfInitializedData | 0x6c2400 |
| SizeOfUninitializedData | 0 |
| AddressOfEntryPoint | 0x0000000000591104 (Section: .text) |
| BaseOfCode | 0x1000 |
| ImageBase | 0x140000000 |
| SectionAlignment | 0x1000 |
| FileAlignment | 0x200 |
| OperatingSystemVersion | 6.0 |
| ImageVersion | 0.0 |
| SubsystemVersion | 6.0 |
| Win32VersionValue | 0 |
| SizeOfImage | 0xc6e000 |
| SizeOfHeaders | 0x400 |
| Checksum | 0 |
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| DllCharacteristics |
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
|
| SizeofStackReserve | 0x100000 |
| SizeofStackCommit | 0x1000 |
| SizeofHeapReserve | 0x100000 |
| SizeofHeapCommit | 0x1000 |
| LoaderFlags | 0 |
| NumberOfRvaAndSizes | 16 |
| kernel32.dll |
CreateWaitableTimerExW
GetSystemInfo GetExitCodeProcess WaitForMultipleObjects DuplicateHandle CreateProcessW GetWindowsDirectoryW LocalFree GetSystemDirectoryW GetProcessTimes GlobalMemoryStatusEx CreateEventW OpenProcess TerminateProcess ExitProcess GetSystemTimePreciseAsFileTime CreateThread SetHandleInformation SleepEx CreateJobObjectW QueryInformationJobObject SetInformationJobObject AssignProcessToJobObject WaitForSingleObject ReleaseMutex CreateMutexA GetCurrentProcessId GetCurrentProcess WaitForSingleObjectEx GetCurrentThreadId Sleep IsProcessorFeaturePresent ReleaseSRWLockExclusive AcquireSRWLockExclusive WakeAllConditionVariable SleepConditionVariableSRW GetSystemTimeAsFileTime GetProcAddress LoadLibraryExA TlsAlloc TlsGetValue TlsSetValue lstrlenW TlsFree EncodePointer IsDebuggerPresent RtlPcToFileHeader RaiseException GetCommandLineW UnhandledExceptionFilter SetEnvironmentVariableW SetUnhandledExceptionFilter InitializeSListHead RtlUnwindEx FreeEnvironmentStringsW GetEnvironmentStringsW QueryPerformanceCounter QueryPerformanceFrequency GetEnvironmentVariableW GetCurrentDirectoryW GetLastError RtlVirtualUnwind RtlCaptureContext LoadLibraryA SetLastError AddVectoredExceptionHandler PostQueuedCompletionStatus LoadLibraryW RemoveDirectoryW FindNextFileW GetModuleHandleA SetFilePointerEx DeviceIoControl CreateSymbolicLinkW MoveFileExW GetModuleHandleW RtlLookupFunctionEntry WideCharToMultiByte MultiByteToWideChar FormatMessageW CompareStringOrdinal GetModuleFileNameW CopyFileExW DeleteFileW GetTempPathW GetFileAttributesW ReadFile GetOverlappedResult CancelIo CreateDirectoryW GetFileInformationByHandleEx GetFileInformationByHandle FindClose FindFirstFileExW SetFileInformationByHandle SetFileTime CreateFileW GetFullPathNameW WriteFileEx ReadFileEx WriteConsoleW GetProcessHeap GetConsoleOutputCP SwitchToThread GetConsoleMode GetStdHandle CreatePipe SetFileCompletionNotificationModes HeapReAlloc GetCurrentThread CreateIoCompletionPort GetQueuedCompletionStatusEx GetFinalPathNameByHandleW SetThreadStackGuarantee DeleteCriticalSection SetWaitableTimer CloseHandle FreeLibrary HeapAlloc GetUserDefaultUILanguage LCIDToLocaleName LoadLibraryExW OutputDebugStringW OutputDebugStringA HeapFree GetProcessId InitializeCriticalSectionAndSpinCount |
|---|---|
| advapi32.dll |
EventRegister
SystemFunction036 RegQueryValueExW RegGetValueW EventUnregister RegOpenKeyExW RegCloseKey RegDeleteTreeW RegCreateKeyExW RegSetValueExW RegEnumValueW EventWriteTransfer EventSetInformation |
| bcrypt.dll |
BCryptGenRandom
|
| ntdll.dll |
RtlNtStatusToDosError
NtWriteFile NtCancelIoFileEx NtDeviceIoControlFile NtReadFile NtOpenFile NtCreateFile RtlGetVersion NtCreateNamedPipeFile |
| api-ms-win-core-synch-l1-2-0.dll |
WakeByAddressAll
WaitOnAddress WakeByAddressSingle |
| user32.dll |
SetCapture
CreatePopupMenu EnableMenuItem DrawMenuBar CheckMenuItem RedrawWindow MapVirtualKeyW MonitorFromPoint RegisterClassExW RegisterRawInputDevices ReleaseCapture GetKeyState GetAsyncKeyState EnumDisplayMonitors RemoveMenu GetKeyboardLayout MapVirtualKeyExW GetKeyboardState EnableWindow IsWindowEnabled TrackMouseEvent GetMonitorInfoW InvalidateRect InvalidateRgn ScreenToClient CreateMenu DestroyMenu CreateIcon SetMenu PostMessageW SystemParametersInfoA SendMessageW GetTouchInputInfo AppendMenuW ShowWindow PostQuitMessage InsertMenuW GetMenuBarInfo MonitorFromWindow GetClientRect GetWindowRect GetCursorPos SetForegroundWindow CreateAcceleratorTableW ClientToScreen SendInput DrawTextW FillRect GetWindowDC OffsetRect MapWindowPoints GetActiveWindow GetMenuItemInfoW DrawIconEx ReleaseDC GetDC SetMenuItemInfoW DestroyAcceleratorTable CloseTouchInputHandle MonitorFromRect UpdateWindow SetFocus GetRawInputData SetWindowRgn DestroyIcon TrackPopupMenu ValidateRect RegisterTouchWindow ChangeDisplaySettingsExW GetParent FindWindowExW TranslateAcceleratorW MsgWaitForMultipleObjectsEx GetMessageW GetWindow GetWindowThreadProcessId EnumWindows ToUnicodeEx EnumChildWindows DispatchMessageA GetMessageA AdjustWindowRect PostThreadMessageW DispatchMessageW TranslateMessage DestroyWindow SystemParametersInfoW FlashWindowEx LoadCursorW SetCursor IsIconic IsWindow CreateWindowExW SetCursorPos GetForegroundWindow SetWindowTextW IsWindowVisible GetWindowTextW GetWindowTextLengthW SetParent SetPropW SetWindowLongPtrW GetWindowLongPtrW ShowCursor ClipCursor GetSystemMetrics GetClipCursor DefWindowProcW SetWindowDisplayAffinity GetWindowPlacement SetWindowPlacement PeekMessageW AdjustWindowRectEx GetMenu GetWindowLongW SetWindowPos SetWindowLongW GetSystemMenu RegisterWindowMessageA IsProcessDPIAware GetUpdateRect |
| crypt32.dll |
CertFreeCertificateChain
CertVerifyCertificateChainPolicy CertEnumCertificatesInStore CertFreeCertificateContext CryptUnprotectData CryptProtectData CertDuplicateCertificateContext CertDuplicateStore CertOpenStore CertDuplicateCertificateChain CertAddCertificateContextToStore CertCloseStore CertGetCertificateChain |
| bcryptprimitives.dll |
ProcessPrng
|
| psapi.dll |
GetProcessMemoryInfo
|
| oleaut32.dll |
GetErrorInfo
SysStringLen SysFreeString SetErrorInfo |
| ole32.dll |
OleInitialize
CoTaskMemAlloc RegisterDragDrop CoUninitialize CoCreateInstance RevokeDragDrop CoCreateFreeThreadedMarshaler CoInitialize CoInitializeEx CoTaskMemFree |
| shell32.dll |
SHGetKnownFolderPath
ShellExecuteExW ShellExecuteW ILFree ILCreateFromPathW SHOpenFolderAndSelectItems SHCreateItemFromParsingName DragQueryFileW DragFinish SHAppBarMessage |
| comctl32.dll |
SetWindowSubclass
RemoveWindowSubclass DefSubclassProc TaskDialogIndirect |
| gdi32.dll |
SetTextColor
CreateDIBSection GetDeviceCaps SelectObject CreateCompatibleDC DeleteDC CreateRectRgn CreateSolidBrush SetBkMode CombineRgn BitBlt DeleteObject |
| dwmapi.dll |
DwmEnableBlurBehindWindow
DwmGetWindowAttribute DwmSetWindowAttribute |
| shlwapi.dll |
SHCreateMemStream
|
| ws2_32.dll |
WSADuplicateSocketW
select shutdown socket recv WSARecv freeaddrinfo getaddrinfo send WSASend listen accept closesocket WSACleanup WSAStartup getsockname setsockopt bind connect ioctlsocket WSASocketW WSAIoctl WSAGetLastError getsockopt getpeername |
| secur32.dll |
QueryContextAttributesW
FreeCredentialsHandle DeleteSecurityContext EncryptMessage FreeContextBuffer AcceptSecurityContext InitializeSecurityContextW ApplyControlToken DecryptMessage AcquireCredentialsHandleA |
| api-ms-win-crt-math-l1-1-0.dll |
ceil
floor __setusermatherr trunc pow round roundf |
| api-ms-win-crt-string-l1-1-0.dll |
wcscmp
wcsncmp strlen strcmp _wcsicmp strcpy_s wcslen wcsncat |
| api-ms-win-crt-heap-l1-1-0.dll |
calloc
_callnewh _set_new_mode free malloc |
| api-ms-win-crt-utility-l1-1-0.dll |
_rotl64
|
| api-ms-win-crt-convert-l1-1-0.dll |
wcstol
_ultow_s _wtoi |
| api-ms-win-crt-runtime-l1-1-0.dll |
abort
exit _initterm_e _initterm terminate _exit _configure_narrow_argv _crt_atexit _register_onexit_function _set_app_type _seh_filter_exe _initialize_onexit_table __p___argc _get_initial_narrow_environment _register_thread_local_exe_atexit_callback _c_exit _cexit __p___argv _initialize_narrow_environment |
| api-ms-win-crt-stdio-l1-1-0.dll |
_set_fmode
__p__commode |
| api-ms-win-crt-locale-l1-1-0.dll |
_configthreadlocale
|
| Signature | 0xfeef04bd |
|---|---|
| StructVersion | 0x10000 |
| FileVersion | 1.0.4.0 |
| ProductVersion | 1.0.4.0 |
| FileFlags | (EMPTY) |
| FileOs |
VOS_DOS_WINDOWS32
VOS_NT
VOS_NT_WINDOWS32
VOS_WINCE
VOS__WINDOWS32
|
| FileType |
VFT_APP
|
| Language | UNKNOWN |
| CompanyName | volt |
| FileDescription | Volt |
| FileVersion (#2) | 0.1.0 |
| ProductName | Volt |
| ProductVersion (#2) | 0.1.0 |
| Resource LangID | English - United States |
|---|
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2026-Jul-13 23:32:17 |
| Version | 0.0 |
| SizeofData | 38 |
| AddressOfRawData | 0xc197f4 |
| PointerToRawData | 0xc17df4 |
| Referenced File | tauri_app.pdb |
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2026-Jul-13 23:32:17 |
| Version | 0.0 |
| SizeofData | 20 |
| AddressOfRawData | 0xc1981c |
| PointerToRawData | 0xc17e1c |
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2026-Jul-13 23:32:17 |
| Version | 0.0 |
| SizeofData | 1068 |
| AddressOfRawData | 0xc19830 |
| PointerToRawData | 0xc17e30 |
| StartAddressOfRawData | 0x140c19ca8 |
|---|---|
| EndAddressOfRawData | 0x140c19f24 |
| AddressOfIndex | 0x140c305a4 |
| AddressOfCallbacks | 0x1405aae48 |
| SizeOfZeroFill | 0 |
| Characteristics |
IMAGE_SCN_ALIGN_8BYTES
|
| Callbacks |
0x00000001401EB7B0
|
| Size | 0x140 |
|---|---|
| TimeDateStamp | 1970-Jan-01 00:00:00 |
| Version | 0.0 |
| GlobalFlagsClear | (EMPTY) |
| GlobalFlagsSet | (EMPTY) |
| CriticalSectionDefaultTimeout | 0 |
| DeCommitFreeBlockThreshold | 0 |
| DeCommitTotalFreeThreshold | 0 |
| LockPrefixTable | 0 |
| MaximumAllocationSize | 0 |
| VirtualMemoryThreshold | 0 |
| ProcessAffinityMask | 0 |
| ProcessHeapFlags | (EMPTY) |
| CSDVersion | 0 |
| Reserved1 | 0 |
| EditList | 0 |
| SecurityCookie | 0x140c2e080 |
| XOR Key | 0xed7ef073 |
|---|---|
| Unmarked objects | 0 |
| Imports (VS2008 SP1 build 30729) | 17 |
| ASM objects (35207) | 9 |
| C objects (35207) | 13 |
| C++ objects (35207) | 47 |
| Total imports | 428 |
| C objects (35217) | 34 |
| Unmarked objects (#2) | 75 |
| Resource objects (35217) | 1 |
| Linker (35217) | 1 |
No comments yet.