×
This file seems to be a .NET executable .
Sadly, Manalyzer's analysis techniques were designed for native code, so it's likely that this report won't tell you much.
Sorry!
Architecture
IMAGE_FILE_MACHINE_I386
Subsystem
IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date
2020-Oct-22 16:29:45
Comments
CompanyName
FileDescription
EspiaoNFe
FileVersion
1.0.0.0
InternalName
DefaultEspiaoNFe.exe
LegalCopyright
Copyright © 2012
LegalTrademarks
OriginalFilename
DefaultEspiaoNFe.exe
ProductName
EspiaoNFe
ProductVersion
1.0.0.0
Assembly Version
1.0.0.0
MD5
6ee4b71c3be845404ee947ea2c50ea3f
SHA1
0c9c6e866a8852b38d7adc7de47d24a2568c1bd1
SHA256
0ee75731ae2714657d7362dcb2c641aedd3e393e8c3b76f48b86f018020c5df7
SHA3
54a220780f506fe13e2d127fd82dc0a5aabfb695ead88cb7275b14ad71dd707a
SSDeep
196608:EKrFl4oquqJKoU4199clKpdOfumaJSrstBpMxG8LGa/4I1nEzcRvnJLpCGmz1Y7:fmzG7TH
Imports Hash
f34d5f2d4577ed6d9ceec516c1f5a744
e_magic
MZ
e_cblp
0x90
e_cp
0x3
e_crlc
0
e_cparhdr
0x4
e_minalloc
0
e_maxalloc
0xffff
e_ss
0
e_sp
0xb8
e_csum
0
e_ip
0
e_cs
0
e_ovno
0
e_oemid
0
e_oeminfo
0
e_lfanew
0x80
Signature
PE
Machine
IMAGE_FILE_MACHINE_I386
NumberofSections
3
TimeDateStamp
2020-Oct-22 16:29:45
PointerToSymbolTable
0
NumberOfSymbols
0
SizeOfOptionalHeader
0xe0
Characteristics
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_EXECUTABLE_IMAGE
Magic
PE32
LinkerVersion
8.0
SizeOfCode
0x7cc400
SizeOfInitializedData
0x8800
SizeOfUninitializedData
0
AddressOfEntryPoint
0x007CE36E (Section: .text)
BaseOfCode
0x2000
BaseOfData
0
ImageBase
0x400000
SectionAlignment
0x2000
FileAlignment
0x200
OperatingSystemVersion
4.0
ImageVersion
0.0
SubsystemVersion
4.0
Win32VersionValue
0
SizeOfImage
0x7dc000
SizeOfHeaders
0x200
Checksum
0
Subsystem
IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NO_SEH
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve
0x100000
SizeofStackCommit
0x1000
SizeofHeapReserve
0x100000
SizeofHeapCommit
0x1000
LoaderFlags
0
NumberOfRvaAndSizes
16
MD5
4590a30410fc735cb49b6c46f20b63bd
SHA1
07bafdd4a7ed39bd9fe8db3c4b00401125593a1b
SHA256
b5cb29006eb46b7f65b7a8727277d89366b6b9c95bc5c2b74c1766ea5f84cc14
SHA3
39485d318350d8b8c6a1310a18c3f35f1b41acd213c1b841458fe1fe0dc012ab
VirtualSize
0x7cc374
VirtualAddress
0x2000
SizeOfRawData
0x7cc400
PointerToRawData
0x200
PointerToRelocations
0
PointerToLineNumbers
0
NumberOfLineNumbers
0
NumberOfRelocations
0
Characteristics
IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy
6.86065
MD5
a3e2702e848bce05a911b6a4c668a895
SHA1
cf5a254d63d2fa745f7749038da8b62bb1e08fdd
SHA256
98daa8151c50ce66e084f1b13438a427107392792581a8eeb65b603fb3bce929
SHA3
44620f34a22ac1c648c2703792048bde16256fddd17dfefc1eaec211a16bff5b
VirtualSize
0x8600
VirtualAddress
0x7d0000
SizeOfRawData
0x8600
PointerToRawData
0x7cc600
PointerToRelocations
0
PointerToLineNumbers
0
NumberOfLineNumbers
0
NumberOfRelocations
0
Characteristics
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy
4.40834
MD5
bc88edad9ea8848e1cbcafaf4fe1ef79
SHA1
60f681ea8382d292be5da32bb6b41598480f8220
SHA256
6728fbf667d0153fa95f7fa7bf8d66350132dc09bd23c22e58e9101a03dfa99a
SHA3
04fbd07670db3866001af9cfbc2e715fd7d657e9401e6c6e00875245a0649cee
VirtualSize
0xc
VirtualAddress
0x7da000
SizeOfRawData
0x200
PointerToRawData
0x7d4c00
PointerToRelocations
0
PointerToLineNumbers
0
NumberOfLineNumbers
0
NumberOfRelocations
0
Characteristics
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy
0.10191
Type
RT_ICON
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x468
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
4.73151
MD5
21288405bc6c5cdf9d3c1a8ace7cc504
SHA1
1fdec0b51ddf2086d456657b302aa22b54c462ee
SHA256
78ab02234aebf60209072b45e57c0ccdd2f6848f8437d01f60eacb1dfa83c6a0
SHA3
75529bc18b2631c58b39353085afd059a77cd39fdd1289d29b7db0cbfc90a48a
Type
RT_ICON
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x10a8
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
4.36927
MD5
e3b452c7edfdebf5503bd537c8ab930c
SHA1
b12a3107cc61acfdbec4dcd73e9db29c3c959bd4
SHA256
2d28fde46c05b9911d0451da31631f5ec4c2f6585a651de2e9887d90f987c6d4
SHA3
d31d1ddfdb2d82b3247704552f2084deae069e715355b92c2356f4995e51cfb3
Type
RT_ICON
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x25a8
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
4.41012
MD5
a6c1017ce1792df623e7c0f916ec8923
SHA1
9f188124353b95736f977db2f67ffd4263d8db56
SHA256
ec764ebbe5f1db20c7de2dc1827d723fc04ac2074f2ab8708d75596dbcebca0e
SHA3
1bd70f1b455eeff9d7a60508ff1ed978fced9c056a52b9b92def50b12c967194
Type
RT_ICON
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x4228
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
4.02399
MD5
e9aec161077553a65b0da524a32caae3
SHA1
8f284b395728a18086d8a52f22a34e983a9f4726
SHA256
b613747e750b5e463b7da74fd4215b90c258147c2ac13894d7f6903bdfd6b9e2
SHA3
51492b29feb812ca19b92d1b21da53b6e9a2899eb539dcda45c92e2574a29566
Type
RT_GROUP_ICON
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x3e
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
2.62308
Detected Filetype
Icon file
MD5
bec82d9c5028d979a420e534950d6233
SHA1
e1bd3221bbc5ba3e8172dc4e58089198b2ff4347
SHA256
0885230f1722c42fe74e368066038da27b8391506ba1582add2d240e41b30ab1
SHA3
c6629df6bbc335ec2e5c14a509e058afe8ca773892a9aa4fc96ba37eafef2cc7
Type
RT_VERSION
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x33c
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
3.26818
MD5
9777ada75cfddc16eca55ace9037ba00
SHA1
6a2066ca5cf68d6c16b77a5e5484762ef90ba53e
SHA256
9a7521dd260f0a21b4834dc1475715577a0bd86657ab9f8ddf8313a71da0768f
SHA3
036559c39236b5a95c2f29ae7a26dff7d89d87c91d689ff96065c5a755c0d2bf
Type
RT_MANIFEST
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x1ea
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
5.00112
MD5
b7db84991f23a680df8e95af8946f9c9
SHA1
cac699787884fb993ced8d7dc47b7c522c7bc734
SHA256
539dc26a14b6277e87348594ab7d6e932d16aabb18612d77f29fe421a9f1d46a
SHA3
4f72877413d13a67b52b292a8524e2c43a15253c26aaf6b5d0166a65bc615cff
Signature
0xfeef04bd
StructVersion
0x10000
FileVersion
1.0.0.0
ProductVersion
1.0.0.0
FileFlags
(EMPTY)
FileOs
VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
FileType
VFT_APP
Language
UNKNOWN
Comments
CompanyName
FileDescription
EspiaoNFe
FileVersion (#2)
1.0.0.0
InternalName
DefaultEspiaoNFe.exe
LegalCopyright
Copyright © 2012
LegalTrademarks
OriginalFilename
DefaultEspiaoNFe.exe
ProductName
EspiaoNFe
ProductVersion (#2)
1.0.0.0
Assembly Version
1.0.0.0