| Architecture |
IMAGE_FILE_MACHINE_AMD64
|
|---|---|
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| Compilation Date | 2026-Mar-27 08:16:05 |
| Detected languages |
English - United States
|
| Debug artifacts |
C:\Users\user\source\repos\cs2 int\x64\Release\cs2 int.pdb
|
| Info | Interesting strings found in the binary: |
Contains domain names:
|
| Suspicious | The PE is possibly packed. | Unusual section name found: .fptable |
| Malicious | The PE contains functions mostly used by malware. |
[!] The program may be hiding some of its imports:
|
| Suspicious | No VirusTotal score. | This file has never been scanned on VirusTotal. |
| e_magic | MZ |
|---|---|
| e_cblp | 0x90 |
| e_cp | 0x3 |
| e_crlc | 0 |
| e_cparhdr | 0x4 |
| e_minalloc | 0 |
| e_maxalloc | 0xffff |
| e_ss | 0 |
| e_sp | 0xb8 |
| e_csum | 0 |
| e_ip | 0 |
| e_cs | 0 |
| e_ovno | 0 |
| e_oemid | 0 |
| e_oeminfo | 0 |
| e_lfanew | 0x108 |
| Signature | PE |
|---|---|
| Machine |
IMAGE_FILE_MACHINE_AMD64
|
| NumberofSections | 7 |
| TimeDateStamp | 2026-Mar-27 08:16:05 |
| PointerToSymbolTable | 0 |
| NumberOfSymbols | 0 |
| SizeOfOptionalHeader | 0xf0 |
| Characteristics |
IMAGE_FILE_DLL
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE
|
| Magic | PE32+ |
|---|---|
| LinkerVersion | 14.0 |
| SizeOfCode | 0x8b400 |
| SizeOfInitializedData | 0x2e200 |
| SizeOfUninitializedData | 0 |
| AddressOfEntryPoint | 0x0000000000066784 (Section: .text) |
| BaseOfCode | 0x1000 |
| ImageBase | 0x180000000 |
| SectionAlignment | 0x1000 |
| FileAlignment | 0x200 |
| OperatingSystemVersion | 6.0 |
| ImageVersion | 0.0 |
| SubsystemVersion | 6.0 |
| Win32VersionValue | 0 |
| SizeOfImage | 0xbe000 |
| SizeOfHeaders | 0x400 |
| Checksum | 0 |
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| DllCharacteristics |
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
|
| SizeofStackReserve | 0x100000 |
| SizeofStackCommit | 0x1000 |
| SizeofHeapReserve | 0x100000 |
| SizeofHeapCommit | 0x1000 |
| LoaderFlags | 0 |
| NumberOfRvaAndSizes | 16 |
| KERNEL32.dll |
SuspendThread
ResumeThread CreateToolhelp32Snapshot Sleep GetLastError HeapReAlloc CloseHandle HeapAlloc HeapDestroy GetThreadContext GetProcAddress GetCurrentProcessId GetModuleHandleW FlushInstructionCache SetThreadContext OpenThread OutputDebugStringA MultiByteToWideChar GlobalAlloc GlobalFree GlobalLock WideCharToMultiByte GlobalUnlock GetModuleHandleA GetLocaleInfoA LoadLibraryA QueryPerformanceFrequency IsDBCSLeadByte FreeLibrary QueryPerformanceCounter FreeLibraryAndExitThread DisableThreadLibraryCalls CreateThread GetTempPathA GetTickCount SetEndOfFile GetCurrentThreadId HeapSize CreateFileW GetStringTypeW SetStdHandle GetProcessHeap FreeEnvironmentStringsW GetEnvironmentStringsW GetCommandLineW GetCommandLineA GetCPInfo GetOEMCP GetACP IsValidCodePage FindNextFileW FindFirstFileExW FindClose GetFileSizeEx GetConsoleOutputCP WriteFile FlushFileBuffers LCMapStringW LoadLibraryExW GetFileType GetStdHandle ReadConsoleW Thread32First Thread32Next GetCurrentProcess HeapFree GetConsoleMode VirtualProtect HeapCreate VirtualQuery VirtualAlloc GetSystemInfo WriteConsoleW VirtualFree SetFilePointerEx UnhandledExceptionFilter IsDebuggerPresent RtlVirtualUnwind RtlCaptureContext IsProcessorFeaturePresent ReleaseSRWLockExclusive AcquireSRWLockExclusive WakeAllConditionVariable SleepConditionVariableSRW SetUnhandledExceptionFilter GetStartupInfoW GetSystemTimeAsFileTime InitializeSListHead RtlLookupFunctionEntry RtlUnwindEx RtlPcToFileHeader RaiseException InterlockedFlushSList SetLastError FlsAlloc FlsGetValue FlsSetValue FlsFree EncodePointer EnterCriticalSection LeaveCriticalSection InitializeCriticalSectionEx DeleteCriticalSection ReadFile ExitProcess TerminateProcess GetModuleHandleExW GetModuleFileNameW |
|---|---|
| USER32.dll |
CloseClipboard
EmptyClipboard GetClipboardData SetClipboardData OpenClipboard SendInput GetAsyncKeyState mouse_event FindWindowA DestroyWindow CallWindowProcA DefWindowProcA CreateWindowExA UnregisterClassA SetWindowLongPtrA RegisterClassExA DefWindowProcW GetKeyState GetMessageExtraInfo ScreenToClient GetCapture ClientToScreen TrackMouseEvent GetKeyboardLayout GetForegroundWindow LoadCursorW SetCapture SetCursor GetClientRect IsWindowUnicode ReleaseCapture SetCursorPos GetCursorPos |
| SHELL32.dll |
ShellExecuteW
SHGetFolderPathA |
| IMM32.dll |
ImmSetCandidateWindow
ImmSetCompositionWindow ImmReleaseContext ImmGetContext |
| D3DCOMPILER_47.dll |
D3DCompile
|
| d3d11.dll |
D3D11CreateDeviceAndSwapChain
|
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2026-Mar-27 08:16:05 |
| Version | 0.0 |
| SizeofData | 83 |
| AddressOfRawData | 0xa8b8c |
| PointerToRawData | 0xa738c |
| Referenced File | C:\Users\user\source\repos\cs2 int\x64\Release\cs2 int.pdb |
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2026-Mar-27 08:16:05 |
| Version | 0.0 |
| SizeofData | 20 |
| AddressOfRawData | 0xa8be0 |
| PointerToRawData | 0xa73e0 |
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2026-Mar-27 08:16:05 |
| Version | 0.0 |
| SizeofData | 892 |
| AddressOfRawData | 0xa8bf4 |
| PointerToRawData | 0xa73f4 |
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2026-Mar-27 08:16:05 |
| Version | 0.0 |
| SizeofData | 0 |
| AddressOfRawData | 0 |
| PointerToRawData | 0 |
| StartAddressOfRawData | 0x1800a8fb8 |
|---|---|
| EndAddressOfRawData | 0x1800a8fc0 |
| AddressOfIndex | 0x1800b3ecc |
| AddressOfCallbacks | 0x18008d558 |
| SizeOfZeroFill | 0 |
| Characteristics |
IMAGE_SCN_ALIGN_4BYTES
|
| Callbacks | (EMPTY) |
| Size | 0x140 |
|---|---|
| TimeDateStamp | 1970-Jan-01 00:00:00 |
| Version | 0.0 |
| GlobalFlagsClear | (EMPTY) |
| GlobalFlagsSet | (EMPTY) |
| CriticalSectionDefaultTimeout | 0 |
| DeCommitFreeBlockThreshold | 0 |
| DeCommitTotalFreeThreshold | 0 |
| LockPrefixTable | 0 |
| MaximumAllocationSize | 0 |
| VirtualMemoryThreshold | 0 |
| ProcessAffinityMask | 0 |
| ProcessHeapFlags | (EMPTY) |
| CSDVersion | 0 |
| Reserved1 | 0 |
| EditList | 0 |
| SecurityCookie | 0x1800b3040 |
| XOR Key | 0x30becfc8 |
|---|---|
| Unmarked objects | 0 |
| C++ objects (33145) | 160 |
| C objects (33145) | 30 |
| ASM objects (33145) | 23 |
| ASM objects (35403) | 10 |
| C objects (35403) | 15 |
| C++ objects (35403) | 38 |
| Imports (33145) | 17 |
| Total imports | 175 |
| C objects (LTCG) (35727) | 24 |
| Resource objects (35727) | 1 |
| Linker (35727) | 1 |
No comments yet.