Suspicious
Suspect

47119382d12cef62a454138b6c071dc9

PE Executable
|
MD5: 47119382d12cef62a454138b6c071dc9
|
Size: 1.09 MB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
47119382d12cef62a454138b6c071dc9
Sha1
5d6d7a74d3a43fc40cdda1080f0727ac46f8dd05
Sha256
a04a0223a2cb079868f34225df1953d8897690ef0fd730f2d83a8dfa9515d874
Sha384
044aab395f287442717f93e2239569c8645795869ef8823419cd5abd34f0bfe1de63c5074e959904c6eab93a26443590
Sha512
e8d39b8fd909556643de5c6610e0b6c3cd70d9dea0a212ddb0b9708e22627b0ed3151f4cb1aea6869a81fbf642d6f44b927ca9edb3133a180490c6bb9b798682
SSDeep
24576:ZJFkJsViRSTb7d/cQF/pnAvnIq3Tvqt2k2dBhnB:maVi0bdllxeIqj02j
TLSH
7935F0417FB1AEC2D96807B00621EAF412B9AF9A5C24D3E66ECCBFDB753C7406918153

PeID

.NET executable
Microsoft Visual C# / Basic .NET
Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual C# v7.0 / Basic .NET
Microsoft Visual Studio .NET
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:0
ID:0002
ID:0
ID:0003
ID:0
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
Informations
Name
Value
Module Name

PNPk.exe

Full Name

PNPk.exe

EntryPoint

System.Void AtYarışıOyunu.Program::Main()

Scope Name

PNPk.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

PNPk

Assembly Version

0.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.0

Total Strings

288

Main Method

System.Void AtYarışıOyunu.Program::Main()

Main IL Instruction Count

13

Main IL

nop <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) nop <null> newobj System.Void AtYarışıOyunu.Form3::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> newobj System.Void AtYarışıOyunu.frm1::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> ret <null>

Module Name

PNPk.exe

Full Name

PNPk.exe

EntryPoint

System.Void AtYarışıOyunu.Program::Main()

Scope Name

PNPk.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

PNPk

Assembly Version

0.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.0

Total Strings

288

Main Method

System.Void AtYarışıOyunu.Program::Main()

Main IL Instruction Count

13

Main IL

nop <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) nop <null> newobj System.Void AtYarışıOyunu.Form3::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> newobj System.Void AtYarışıOyunu.frm1::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> ret <null>

Artefacts
Name
Value
Embedded Resources

4

Suspicious Type Names (1-2 chars)

0

47119382d12cef62a454138b6c071dc9 (1.09 MB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙