Suspicious
Suspect

1b643e94f456fc7e0c0915ca0606eba0

PE Executable
|
MD5: 1b643e94f456fc7e0c0915ca0606eba0
|
Size: 708.1 KB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Very low

Hash
Hash Value
MD5
1b643e94f456fc7e0c0915ca0606eba0
Sha1
03d8d60c32cf0904af8db0fd27abc34e6ba3112e
Sha256
282c71a915fb16491ac0ca5e5bc43ec8079ebf6db203d880d2b40c6217782807
Sha384
a6e524205bca1b51c150dd2ecf95f62b917acf4510ae80d310d08a7056570bf3ec44301d9a3e380bc5262703e7ac9b9b
Sha512
baae9b429400d6020666c4e849bff83d0a2c156bb0ccc76eae2d83fef7c25cc9ee808a9dc0c24ba5513e802e2c160daed9151a423d13e8196e07c3ed08d2481a
SSDeep
12288:gyniWNi9N3rN3FYRc3KQHtyb96xFJwwEneiW3iY7sgFTWpDKq22T:gai9nUc35wbU/qTxUsgFTuDKR2
TLSH
86E412A57346E911EC9A2BF00531D3B091B25ED8F013C3778AEE6CE7F87A3603558692
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
POSManager.Properties.Resources.resources
Fuhq
[NBF]root.Data
[NBF]root.Data-preview.png
whey
[NBF]root.Data
Informations
Name
Value
Module Name

EGmP.exe

Full Name

EGmP.exe

EntryPoint

System.Void POSManager.Program::Main()

Scope Name

EGmP.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

EGmP

Assembly Version

2.8.5.1

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.0

Total Strings

92

Main Method

System.Void POSManager.Program::Main()

Main IL Instruction Count

10

Main IL

nop <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) nop <null> newobj System.Void POSManager.MainForm::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> ret <null>

Artefacts
Name
Value
PDB Path

EGmP.pdb

1b643e94f456fc7e0c0915ca0606eba0 (708.1 KB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙