Suspicious
Suspect

4d3450b132aba66480a845e58a491971

PE Executable
|
MD5: 4d3450b132aba66480a845e58a491971
|
Size: 1.67 MB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Low

Hash
Hash Value
MD5
4d3450b132aba66480a845e58a491971
Sha1
9527290bf39cca6d20f62cd357a78ebb3fb732a2
Sha256
1d67dacec099bf03c40fcb8320ea5fe18a36113511f2602ce0024ec42c709713
Sha384
d1a3df0ab713fff8bf9eadc8179ebf685ec17585f3a2ceb227328ec0271a22ae676a13b925e926dcaf5682455b60bd9f
Sha512
012530788ea2b920ce5cd931241abee3120e4cb1e603f753fed55dc8f3f196bf199c2790da37056d748c3842be34a14af3cee5a705f8f042c7c687950ef0117b
SSDeep
12288:amZvV0lUMFKYcEccRAeSXYfOjPnk6WWZ22fJeTZcwSeyT6AGaC2dsRwPd1iHpzqb:r6XSIfQWQINwr7CRRwV1nnLnk
TLSH
1A75AD00BFAC1716E53C28FE266649375B722B039418F0DAF8BD52DE9FA5B05463B352

PeID

.NET executable
Microsoft Visual C# / Basic .NET
Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual C# v7.0 / Basic .NET
Microsoft Visual Studio .NET
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:0
ID:0.exif
ID:0-preview.png
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
CafeOtomasyon.frmPackage.resources
btnBack.BackgroundImage
[NBF]root.Data
[NBF]root.Data-preview.png
btnExit.BackgroundImage
[NBF]root.Data
[NBF]root.Data-preview.png
CafeOtomasyon.frmCustomerAdd.resources
CafeOtomasyon.frmMenu.resources
btnCustomer.BackgroundImage
[NBF]root.Data
[NBF]root.Data-preview.png
btnKitchen.BackgroundImage
[NBF]root.Data
[NBF]root.Data-preview.png
btnLock.BackgroundImage
[NBF]root.Data
[NBF]root.Data-preview.png
btnPackageOrder.BackgroundImage
[NBF]root.Data
[NBF]root.Data-preview.png
btnPayment.BackgroundImage
[NBF]root.Data
[NBF]root.Data-preview.png
btnReport.BackgroundImage
[NBF]root.Data
[NBF]root.Data-preview.png
btnReservation.BackgroundImage
[NBF]root.Data
[NBF]root.Data-preview.png
btnSettings.BackgroundImage
[NBF]root.Data
[NBF]root.Data-preview.png
btnTableOrder.BackgroundImage
[NBF]root.Data
[NBF]root.Data-preview.png
CafeOtomasyon.frmPayment.resources
printPreviewDialog1.Icon
[NBF]root.IconData
CafeOtomasyon.frmSignIn.resources
btnSignIn.Image
[NBF]root.Data
[NBF]root.Data-preview.png
CafeOtomasyon.frmOrderControl.resources
$this.AutoScaleDimensions
$this.BackgroundImageLayout
$this.ClientSize
$this.Margin
$this.StartPosition
btnBack.Location
btnBack.Size
btnExit.Location
btnExit.Size
label1.Font
label1.Location
label1.Margin
label1.Size
label2.ImeMode
label2.Location
label2.Size
label4.Location
label4.Size
lblLastOrderDate.Location
lblLastOrderDate.Size
lblTotalOrder.Location
lvControl.Location
lvControl.Size
lvCustomerDetails.Location
lvCustomerDetails.Size
lvOrderDetails.Location
lvOrderDetails.Size
tbxTotalPrice.Font
tbxTotalPrice.Location
tbxTotalPrice.Size
CafeOtomasyon.frmTableOperations.resources
CafeOtomasyon.Properties.Resources.resources
CwiL
[NBF]root.Data
[NBF]root.Data-preview.png
Household-Table-icon
[NBF]root.Data
[NBF]root.Data-preview.png
Household-Table-icon (1)
[NBF]root.Data
[NBF]root.Data-preview.png
cikis
[NBF]root.Data
[NBF]root.Data-preview.png
refresh
[NBF]root.Data
[NBF]root.Data-preview.png
tableopenreserve
[NBF]root.Data
[NBF]root.Data-preview.png
CafeOtomasyon.Report1.rdlc
CafeOtomasyon.Report2.rdlc
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

PDB Path: C:\Users\Administrator\Desktop\Client\Temp\Dcgfkwmbox\src\obj\Debug\DlyK.pdb

Module Name

DlyK.exe

Full Name

DlyK.exe

EntryPoint

System.Void CafeOtomasyon.Program::Main()

Scope Name

DlyK.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

DlyK

Assembly Version

0.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.5

Total Strings

1539

Main Method

System.Void CafeOtomasyon.Program::Main()

Main IL Instruction Count

6

Main IL

call System.Void System.Windows.Forms.Application::EnableVisualStyles() ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) newobj System.Void CafeOtomasyon.frmSignIn::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) ret <null>

Module Name

DlyK.exe

Full Name

DlyK.exe

EntryPoint

System.Void CafeOtomasyon.Program::Main()

Scope Name

DlyK.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

DlyK

Assembly Version

0.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.5

Total Strings

1539

Main Method

System.Void CafeOtomasyon.Program::Main()

Main IL Instruction Count

6

Main IL

call System.Void System.Windows.Forms.Application::EnableVisualStyles() ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) newobj System.Void CafeOtomasyon.frmSignIn::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) ret <null>

4d3450b132aba66480a845e58a491971 (1.67 MB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙