×
This file seems to be a .NET executable .
Sadly, Manalyzer's analysis techniques were designed for native code, so it's likely that this report won't tell you much.
Sorry!
Architecture
IMAGE_FILE_MACHINE_I386
Subsystem
IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date
2019-May-08 09:31:13
Debug artifacts
D:\RRNExt MYSQL\NxtGen\MYSQL\RRS\obj\x86\Debug\RRS.pdb
Comments
Trading and Charting application
CompanyName
rupeeseed ventures pvt ltd
FileDescription
RRS
FileVersion
1.0.0.0
InternalName
RRS.exe
LegalCopyright
Copyright © rupeeseed
LegalTrademarks
OriginalFilename
RRS.exe
ProductName
RRS
ProductVersion
1.0.0.0
Assembly Version
1.0.0.0
Info
Matching compiler(s):
Microsoft Visual C# v7.0 / Basic .NET
.NET executable -> Microsoft
Info
Interesting strings found in the binary:
Contains domain names:
http://schemas.microsoft.com
http://schemas.microsoft.com/winfx/2006/xaml
http://schemas.microsoft.com/winfx/2006/xaml/presentation
microsoft.com
schemas.microsoft.com
Suspicious
No VirusTotal score.
This file has never been scanned on VirusTotal.
MD5
54bfcf356a9276cee2329b08b0e238c2
SHA1
f4039d64ec54e2f3ccb62ddacb42057936254f4b
SHA256
0641efcc29f67eae8b48c6ae6e4ab5f932fa8884c6f10ba0eb77bb4075802181
SHA3
a709df6ddb9b6d7de0be11533500e5e7cc1735d07b28a788f0dd49934fa8e692
SSDeep
1536:uvJEuOcQZhYEpB0HTx3e7CB5MqErjmpkHG+iPPi0T2DiHWh6evTJqitaC4sT7Ka:u2u1HTxu7qESkEHaVvWyCQ5nTpz
Imports Hash
f34d5f2d4577ed6d9ceec516c1f5a744
e_magic
MZ
e_cblp
0x90
e_cp
0x3
e_crlc
0
e_cparhdr
0x4
e_minalloc
0
e_maxalloc
0xffff
e_ss
0
e_sp
0xb8
e_csum
0
e_ip
0
e_cs
0
e_ovno
0
e_oemid
0
e_oeminfo
0
e_lfanew
0x80
Signature
PE
Machine
IMAGE_FILE_MACHINE_I386
NumberofSections
3
TimeDateStamp
2019-May-08 09:31:13
PointerToSymbolTable
0
NumberOfSymbols
0
SizeOfOptionalHeader
0xe0
Characteristics
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_EXECUTABLE_IMAGE
Magic
PE32
LinkerVersion
48.0
SizeOfCode
0x86c00
SizeOfInitializedData
0x2600
SizeOfUninitializedData
0
AddressOfEntryPoint
0x00088AFA (Section: .text)
BaseOfCode
0x2000
BaseOfData
0x8a000
ImageBase
0x400000
SectionAlignment
0x2000
FileAlignment
0x200
OperatingSystemVersion
4.0
ImageVersion
0.0
SubsystemVersion
6.0
Win32VersionValue
0
SizeOfImage
0x90000
SizeOfHeaders
0x200
Checksum
0
Subsystem
IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NO_SEH
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve
0x100000
SizeofStackCommit
0x1000
SizeofHeapReserve
0x100000
SizeofHeapCommit
0x1000
LoaderFlags
0
NumberOfRvaAndSizes
16
MD5
16d53a321b127032a155ae99db390312
SHA1
939dd07da0ad80a687d35ade729b70138f64844f
SHA256
9c307e5d818f069553f84db477496059f367b66b82e8f323cc6b5edfa2f53c37
SHA3
44b38e891558246ed79d28cb149dc42a42b1018e2f940d50258c6768300b023f
VirtualSize
0x86b00
VirtualAddress
0x2000
SizeOfRawData
0x86c00
PointerToRawData
0x200
PointerToRelocations
0
PointerToLineNumbers
0
NumberOfLineNumbers
0
NumberOfRelocations
0
Characteristics
IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy
3.9666
MD5
52099cdf56a7cc09ca82034d76e465aa
SHA1
429e7e543b4047996f7a407981a5982d5806e767
SHA256
fac7dabf4baad42e24fd7ea2087c0a96c037153b4428c32861fd9a1b8902d494
SHA3
c65e45ae420a93ac7dcd31d4a57c1ce11058fccace5ce13b6e603934c587e1fb
VirtualSize
0x2328
VirtualAddress
0x8a000
SizeOfRawData
0x2400
PointerToRawData
0x86e00
PointerToRelocations
0
PointerToLineNumbers
0
NumberOfLineNumbers
0
NumberOfRelocations
0
Characteristics
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy
5.05031
MD5
7908e2683929fec567007e3cef2d26b2
SHA1
c055f67ab945714e9de657829fb8d11022842b0b
SHA256
fba715d9b1ad577c4b24d58d2ec3cd025a01131d8ece2bfb4758113e7bb83145
SHA3
31e98d6ee55cd3bc29a1135e38159358b478f9660f04b8f3a1afa74ef934622f
VirtualSize
0xc
VirtualAddress
0x8e000
SizeOfRawData
0x200
PointerToRawData
0x89200
PointerToRelocations
0
PointerToLineNumbers
0
NumberOfLineNumbers
0
NumberOfRelocations
0
Characteristics
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy
0.10191
Type
RT_ICON
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x468
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
4.54589
MD5
ddf7a255fd61e0a177f729785c27961b
SHA1
be482476a05f800452e77c90e3b922d84d36f6ef
SHA256
750b24fbd7e4307f0e887133688851ceb3c20dd7e4e9ded8b6f4eaa972547af3
SHA3
7e149d06ad3709ff817eed9700d5c26cae65de5373d1cd7fc4aa8f2b4477c0b0
Type
RT_ICON
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x10a8
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
4.61407
MD5
f7bfb8d5e7280957df8c6b4ffacdb62f
SHA1
9b0144bcb899cf23e01d1f8e26f2badfb678ab1b
SHA256
14110202a9d78a8b925f3b653058fcd0c4cf3184e33351dd8785bd57b088a101
SHA3
fbad19abcd6aba039fed246d22dd573f8af96a004c090603ac0357abe4cf19f3
Type
RT_GROUP_ICON
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x22
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
2.21059
Detected Filetype
Icon file
MD5
86561693760b088960969f3b7654507a
SHA1
82368be1644244e0fd66f1d737b3d45d26b2218f
SHA256
b1a9ff73f6a9d486c67f409a629924792ca40aa8966d45e48239863f63629fd0
SHA3
206e8d2db4680b7736ddcf7885984ca26fa1a66e72ec9073e8052ba82ea94408
Type
RT_VERSION
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x368
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
3.28421
MD5
bc90cce54bf397c6a3e7196e84534fb9
SHA1
035258691713e28922097ad7c0d52afdce25eef7
SHA256
ecd356c265b54aacbfb17976626907ff1847918b934ab006dda593acccec9d2f
SHA3
288c72401b1b9c6952cfd41818509427573783335c95124ba51f35e40b033588
Type
RT_MANIFEST
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x927
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
4.88618
MD5
d5a7ca30cff74e67b1498dcc319fa553
SHA1
90c802d9529e831f20b0184e6a79f9774d68581d
SHA256
063a0dbdd9dad957c08407f3cde7309a66442c8fd6c2f1344d20d254e39f324b
SHA3
21580aa072b88a92853c74aea76222d00a1e2ec3a6855455084898a2d270a8e0
Signature
0xfeef04bd
StructVersion
0x10000
FileVersion
1.0.0.0
ProductVersion
1.0.0.0
FileFlags
(EMPTY)
FileOs
VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
FileType
VFT_APP
Language
UNKNOWN
Comments
Trading and Charting application
CompanyName
rupeeseed ventures pvt ltd
FileDescription
RRS
FileVersion (#2)
1.0.0.0
InternalName
RRS.exe
LegalCopyright
Copyright © rupeeseed
LegalTrademarks
OriginalFilename
RRS.exe
ProductName
RRS
ProductVersion (#2)
1.0.0.0
Assembly Version
1.0.0.0
Characteristics
0
TimeDateStamp
2019-May-08 09:31:13
Version
0.0
SizeofData
284
AddressOfRawData
0x8898c
PointerToRawData
0x86b8c
Referenced File
D:\RRNExt MYSQL\NxtGen\MYSQL\RRS\obj\x86\Debug\RRS.pdb