54bfcf356a9276cee2329b08b0e238c2

Summary

Architecture IMAGE_FILE_MACHINE_I386
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date 2019-May-08 09:31:13
Debug artifacts D:\RRNExt MYSQL\NxtGen\MYSQL\RRS\obj\x86\Debug\RRS.pdb
Comments Trading and Charting application
CompanyName rupeeseed ventures pvt ltd
FileDescription RRS
FileVersion 1.0.0.0
InternalName RRS.exe
LegalCopyright Copyright © rupeeseed
LegalTrademarks
OriginalFilename RRS.exe
ProductName RRS
ProductVersion 1.0.0.0
Assembly Version 1.0.0.0

Plugin Output

Info Matching compiler(s): Microsoft Visual C# v7.0 / Basic .NET
.NET executable -> Microsoft
Info Interesting strings found in the binary: Contains domain names:
  • http://schemas.microsoft.com
  • http://schemas.microsoft.com/winfx/2006/xaml
  • http://schemas.microsoft.com/winfx/2006/xaml/presentation
  • microsoft.com
  • schemas.microsoft.com
Suspicious No VirusTotal score. This file has never been scanned on VirusTotal.

Hashes

MD5 54bfcf356a9276cee2329b08b0e238c2
SHA1 f4039d64ec54e2f3ccb62ddacb42057936254f4b
SHA256 0641efcc29f67eae8b48c6ae6e4ab5f932fa8884c6f10ba0eb77bb4075802181
SHA3 a709df6ddb9b6d7de0be11533500e5e7cc1735d07b28a788f0dd49934fa8e692
SSDeep 1536:uvJEuOcQZhYEpB0HTx3e7CB5MqErjmpkHG+iPPi0T2DiHWh6evTJqitaC4sT7Ka:u2u1HTxu7qESkEHaVvWyCQ5nTpz
Imports Hash f34d5f2d4577ed6d9ceec516c1f5a744

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0x80

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_I386
NumberofSections 3
TimeDateStamp 2019-May-08 09:31:13
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xe0
Characteristics IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_EXECUTABLE_IMAGE

Image Optional Header

Magic PE32
LinkerVersion 48.0
SizeOfCode 0x86c00
SizeOfInitializedData 0x2600
SizeOfUninitializedData 0
AddressOfEntryPoint 0x00088AFA (Section: .text)
BaseOfCode 0x2000
BaseOfData 0x8a000
ImageBase 0x400000
SectionAlignment 0x2000
FileAlignment 0x200
OperatingSystemVersion 4.0
ImageVersion 0.0
SubsystemVersion 6.0
Win32VersionValue 0
SizeOfImage 0x90000
SizeOfHeaders 0x200
Checksum 0
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NO_SEH
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x100000
SizeofStackCommit 0x1000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 16d53a321b127032a155ae99db390312
SHA1 939dd07da0ad80a687d35ade729b70138f64844f
SHA256 9c307e5d818f069553f84db477496059f367b66b82e8f323cc6b5edfa2f53c37
SHA3 44b38e891558246ed79d28cb149dc42a42b1018e2f940d50258c6768300b023f
VirtualSize 0x86b00
VirtualAddress 0x2000
SizeOfRawData 0x86c00
PointerToRawData 0x200
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 3.9666

.rsrc

MD5 52099cdf56a7cc09ca82034d76e465aa
SHA1 429e7e543b4047996f7a407981a5982d5806e767
SHA256 fac7dabf4baad42e24fd7ea2087c0a96c037153b4428c32861fd9a1b8902d494
SHA3 c65e45ae420a93ac7dcd31d4a57c1ce11058fccace5ce13b6e603934c587e1fb
VirtualSize 0x2328
VirtualAddress 0x8a000
SizeOfRawData 0x2400
PointerToRawData 0x86e00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 5.05031

.reloc

MD5 7908e2683929fec567007e3cef2d26b2
SHA1 c055f67ab945714e9de657829fb8d11022842b0b
SHA256 fba715d9b1ad577c4b24d58d2ec3cd025a01131d8ece2bfb4758113e7bb83145
SHA3 31e98d6ee55cd3bc29a1135e38159358b478f9660f04b8f3a1afa74ef934622f
VirtualSize 0xc
VirtualAddress 0x8e000
SizeOfRawData 0x200
PointerToRawData 0x89200
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy 0.10191

Imports

mscoree.dll _CorExeMain

Delayed Imports

1

Type RT_ICON
Language UNKNOWN
Codepage UNKNOWN
Size 0x468
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.54589
MD5 ddf7a255fd61e0a177f729785c27961b
SHA1 be482476a05f800452e77c90e3b922d84d36f6ef
SHA256 750b24fbd7e4307f0e887133688851ceb3c20dd7e4e9ded8b6f4eaa972547af3
SHA3 7e149d06ad3709ff817eed9700d5c26cae65de5373d1cd7fc4aa8f2b4477c0b0

2

Type RT_ICON
Language UNKNOWN
Codepage UNKNOWN
Size 0x10a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.61407
MD5 f7bfb8d5e7280957df8c6b4ffacdb62f
SHA1 9b0144bcb899cf23e01d1f8e26f2badfb678ab1b
SHA256 14110202a9d78a8b925f3b653058fcd0c4cf3184e33351dd8785bd57b088a101
SHA3 fbad19abcd6aba039fed246d22dd573f8af96a004c090603ac0357abe4cf19f3

32512

Type RT_GROUP_ICON
Language UNKNOWN
Codepage UNKNOWN
Size 0x22
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.21059
Detected Filetype Icon file
MD5 86561693760b088960969f3b7654507a
SHA1 82368be1644244e0fd66f1d737b3d45d26b2218f
SHA256 b1a9ff73f6a9d486c67f409a629924792ca40aa8966d45e48239863f63629fd0
SHA3 206e8d2db4680b7736ddcf7885984ca26fa1a66e72ec9073e8052ba82ea94408

1 (#2)

Type RT_VERSION
Language UNKNOWN
Codepage UNKNOWN
Size 0x368
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.28421
MD5 bc90cce54bf397c6a3e7196e84534fb9
SHA1 035258691713e28922097ad7c0d52afdce25eef7
SHA256 ecd356c265b54aacbfb17976626907ff1847918b934ab006dda593acccec9d2f
SHA3 288c72401b1b9c6952cfd41818509427573783335c95124ba51f35e40b033588

1 (#3)

Type RT_MANIFEST
Language UNKNOWN
Codepage UNKNOWN
Size 0x927
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.88618
MD5 d5a7ca30cff74e67b1498dcc319fa553
SHA1 90c802d9529e831f20b0184e6a79f9774d68581d
SHA256 063a0dbdd9dad957c08407f3cde7309a66442c8fd6c2f1344d20d254e39f324b
SHA3 21580aa072b88a92853c74aea76222d00a1e2ec3a6855455084898a2d270a8e0

Version Info

Signature 0xfeef04bd
StructVersion 0x10000
FileVersion 1.0.0.0
ProductVersion 1.0.0.0
FileFlags (EMPTY)
FileOs VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
FileType VFT_APP
Language UNKNOWN
Comments Trading and Charting application
CompanyName rupeeseed ventures pvt ltd
FileDescription RRS
FileVersion (#2) 1.0.0.0
InternalName RRS.exe
LegalCopyright Copyright © rupeeseed
LegalTrademarks
OriginalFilename RRS.exe
ProductName RRS
ProductVersion (#2) 1.0.0.0
Assembly Version 1.0.0.0
Resource LangID UNKNOWN

IMAGE_DEBUG_TYPE_CODEVIEW

Characteristics 0
TimeDateStamp 2019-May-08 09:31:13
Version 0.0
SizeofData 284
AddressOfRawData 0x8898c
PointerToRawData 0x86b8c
Referenced File D:\RRNExt MYSQL\NxtGen\MYSQL\RRS\obj\x86\Debug\RRS.pdb

TLS Callbacks

Load Configuration

RICH Header

Errors

<-- -->