×
This file seems to be a .NET executable .
Sadly, Manalyzer's analysis techniques were designed for native code, so it's likely that this report won't tell you much.
Sorry!
Architecture
IMAGE_FILE_MACHINE_I386
Subsystem
IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date
2024-Mar-26 17:37:42
Comments
Sektörüne Yön Veren Yazılım .
CompanyName
Neuroogle 2012
FileDescription
NEUROOGLE_AHBYS
FileVersion
1.0.0.0
InternalName
NEUROOGLE_AHBYS.exe
LegalCopyright
Copyright © 2012
LegalTrademarks
Büyükdoğu Yazılım LTD. ŞTİ.
OriginalFilename
NEUROOGLE_AHBYS.exe
ProductName
NEUROOGLE_AHBYS
ProductVersion
1.0.0.0
Assembly Version
1.0.0.0
MD5
5ed624387c69dea12ba8f392781e6ba6
SHA1
dfd2b23338897aefef64dc64a9362ab339dbec6c
SHA256
7a485e4ee61e5b8f0aa52f0b6e936976628697090fcd9494fb08d901d4e16fd9
SHA3
e11e84c60c8cb8b1c054a95963e10e7154f425fc835f47e9b281e01b3e0a732c
SSDeep
196608:kFsKx9IEdlkms1VSMqCw+jl9pMdk1QPM8szeJKIBI1735i8ZbL/yX3X:Q9dlk5WupLQvszcWHL/yX
Imports Hash
f34d5f2d4577ed6d9ceec516c1f5a744
e_magic
MZ
e_cblp
0x90
e_cp
0x3
e_crlc
0
e_cparhdr
0x4
e_minalloc
0
e_maxalloc
0xffff
e_ss
0
e_sp
0xb8
e_csum
0
e_ip
0
e_cs
0
e_ovno
0
e_oemid
0
e_oeminfo
0
e_lfanew
0x80
Signature
PE
Machine
IMAGE_FILE_MACHINE_I386
NumberofSections
3
TimeDateStamp
2024-Mar-26 17:37:42
PointerToSymbolTable
0
NumberOfSymbols
0
SizeOfOptionalHeader
0xe0
Characteristics
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_EXECUTABLE_IMAGE
Magic
PE32
LinkerVersion
11.0
SizeOfCode
0x1cafe00
SizeOfInitializedData
0x3400
SizeOfUninitializedData
0
AddressOfEntryPoint
0x01CB1BFE (Section: .text)
BaseOfCode
0x2000
BaseOfData
0
ImageBase
0x400000
SectionAlignment
0x2000
FileAlignment
0x200
OperatingSystemVersion
4.0
ImageVersion
0.0
SubsystemVersion
6.0
Win32VersionValue
0
SizeOfImage
0x1cb8000
SizeOfHeaders
0x200
Checksum
0
Subsystem
IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NO_SEH
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve
0x100000
SizeofStackCommit
0x1000
SizeofHeapReserve
0x100000
SizeofHeapCommit
0x1000
LoaderFlags
0
NumberOfRvaAndSizes
16
MD5
72b7956df5baf1d1a7bbc4071bebb1e6
SHA1
3f1030ac9b39e159f5d805bce1cc6dcb811fb6d6
SHA256
f6e33692dcdb22d2f51a442b097be59169d9ce9e26e28fbc80e25efbe6fa2e43
SHA3
0eb45b2305a89533a7d157b902cfbc1bf01afd6d9b3796a2c41ae243fe003eca
VirtualSize
0x1cafc04
VirtualAddress
0x2000
SizeOfRawData
0x1cafe00
PointerToRawData
0x200
PointerToRelocations
0
PointerToLineNumbers
0
NumberOfLineNumbers
0
NumberOfRelocations
0
Characteristics
IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy
6.58538
MD5
e88d4b09ffbae1b636e31875524e244b
SHA1
d9922afaee0ea25e20f699abd3c7a5a4020b0c64
SHA256
f6d6121c196501b708fc7394b8572525b08dfc5e923fc071f2748eba1092651e
SHA3
2fec7f37f6acdc46d68add79b3baca42aa9ef441739a43624cb0fd508234f20b
VirtualSize
0x31a8
VirtualAddress
0x1cb2000
SizeOfRawData
0x3200
PointerToRawData
0x1cb0000
PointerToRelocations
0
PointerToLineNumbers
0
NumberOfLineNumbers
0
NumberOfRelocations
0
Characteristics
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy
3.63741
MD5
0b665eaba65778677941050d435e13c5
SHA1
63bc9d06801c3df70d3787528418d42379f76198
SHA256
a9d86eebad3688343ac15ca34494c110576f2985b8747cf4b46fc7e38f96e1f9
SHA3
354797c826ce806675dd72d3a707db2d058f56682f2587b58977346312cd1b5c
VirtualSize
0xc
VirtualAddress
0x1cb6000
SizeOfRawData
0x200
PointerToRawData
0x1cb3200
PointerToRelocations
0
PointerToLineNumbers
0
NumberOfLineNumbers
0
NumberOfRelocations
0
Characteristics
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy
0.10191
Type
RT_ICON
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x128
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
2.0843
MD5
105b81bd721715275df5b229be68f074
SHA1
d9f82fd4974afb06297b803c70381d79bed90f9a
SHA256
478fe62e420007abb1a697a24cb1b80ced0a8e0a335d6ce68606efe71c4afaa2
SHA3
c5cffeaf58994264ee32c847cfe8575d3d360caa128613a4d47c99a2a49f8375
Type
RT_ICON
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x568
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
1.04772
MD5
f3018f2b932e0949bf386acd81aea508
SHA1
2515ef70721a15a20410f44b2c6fd724b7a2e07f
SHA256
abdc6eaa0ea69a1c506edf070a07fb12071453e08ecf3c6e35f1397d3422051f
SHA3
a7a18654c47f77448da7853d9a7d7fb4eee42c9e0cd6fde09467d6ef9e556e2a
Type
RT_ICON
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x468
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
2.76148
MD5
52b71dd210ac5cf0fe97a3f9ba9a3896
SHA1
ed8632d87b02c7ab7dceb17bac85c8d23982f82b
SHA256
dc2a1f63c0882b33321345f27c07ef9f8bdb87aa687f075a474be430a1135982
SHA3
1852ad0a2b764cd65724857c1d8b61ca8a44398ac0b545e65747de83c84d9780
Type
RT_ICON
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x2e8
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
1.71396
MD5
14dff9b6c56d206aca6add232d20b50a
SHA1
d0b685483ff7225729d953638fb65f7d72f333de
SHA256
accfee1287c9f7dc25ecb19548ed246ceae1652fef5ad532914d5bb9dc9299ef
SHA3
8a9f96e045cf78160e00bb388bf90e23483a77d3075982e33eb9ef4861999af8
Type
RT_ICON
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x8a8
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
1.72071
MD5
a81075dd2b656f081e035280f17e7a93
SHA1
2e05cabb4904b309c79c221eb187ac41c53183de
SHA256
b76fc9f2130962dfc25029a639848894feee7e9eb1a0fe5c680e3a90671741b1
SHA3
573f8978953f0e5bde7dac42120c262e47727a40c0904aee26cc8e88d99ec10b
Type
RT_ICON
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x10a8
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
2.72257
MD5
8eb389e5fd517774f26c9d113315365d
SHA1
16a2a3489eb31857dff142f6ccbbe110e2b3a90b
SHA256
b0a40090c9bfdfdd8d2f77b68d7052d1eeceb41dc5ab2eaa9c85e15104984ef1
SHA3
2ce61f9e0b33eb6c7c04168b99a585cc6e346a715f0d0e66cf67d6a0b8a62710
Type
RT_GROUP_ICON
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x5a
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
2.71964
Detected Filetype
Icon file
MD5
a29f9f54be50b15d74257a197464bfdc
SHA1
85107c8039c33fa53c80003ea45b9081ea1bcf1a
SHA256
05507c3c1ae2629aec59c1d7c14944b8aa1492eee696d1c825c5407c929ed1e1
SHA3
98706ece32a9cff781122b40a3ef44bfdc7eab732ec93fd42d6d8f3c7756693c
Type
RT_VERSION
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x3d4
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
3.53207
MD5
d353a63cf867db6598199e14bab1f357
SHA1
9e9a036e9e7af779215ee3dfc8e88ccabcb28235
SHA256
d9b92ac578a577bb7ec82d620814e5988af50e1828f19a3923a3bfdd9d408e3e
SHA3
2e14bf3cf834fb9e73ce6e491d64ff71b53c38f4478abd9bfb17fb0f63d7989f
Type
RT_MANIFEST
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x419
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
5.00293
MD5
e07656f126f1b3bff23bfe87e3cead87
SHA1
291fe382a8557c88de1b0f8cdbe41caad2e49ba3
SHA256
26270c8b786215667e23f174839ba838643922ddf13d8c22c1923b5cef217fc8
SHA3
87bdb514d7d554d34a524b68b17cffff01a4edf7596316b3a28907d833a5c587
Signature
0xfeef04bd
StructVersion
0x10000
FileVersion
1.0.0.0
ProductVersion
1.0.0.0
FileFlags
(EMPTY)
FileOs
VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
FileType
VFT_APP
Language
UNKNOWN
Comments
Sektörüne Yön Veren Yazılım .
CompanyName
Neuroogle 2012
FileDescription
NEUROOGLE_AHBYS
FileVersion (#2)
1.0.0.0
InternalName
NEUROOGLE_AHBYS.exe
LegalCopyright
Copyright © 2012
LegalTrademarks
Büyükdoğu Yazılım LTD. ŞTİ.
OriginalFilename
NEUROOGLE_AHBYS.exe
ProductName
NEUROOGLE_AHBYS
ProductVersion (#2)
1.0.0.0
Assembly Version
1.0.0.0