File size: 21504 bytes
MD5...: 73d8f99400994519cb378cbb4a52c3b9
SHA1..: e397858bf20d6d58dc29d8e4f8033c01fe91eab0
SHA256: 5da2f82506f4b8662323407622bd5149932792be500a2c645eaa9eb1a6dddff8
SHA512: ef9bbd8be9eceb573b820dec6fbbff0a9478d39b021014a9b7616adc46727eb6
fac0d61d9dd8eaf18fca68df95c88c97dcc9ec640fdb0980710ca1206c0cf926
ssdeep: 384
0WxA3BlGFafLJTKIXElRLf45tFzdfQfHFjLIej0yH
0OA3BckL9XMFoFzd
FG08
PEiD..: -
TrID..: File type identification
Win64 Executable Generic (45.8%)
Generic CIL Executable (.NET, Mono, etc.) (39.2%)
Windows Screen Saver (7.0%)
Win32 Executable Generic (4.5%)
Win16/32 Executable Delphi generic (1.1%)
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0x5ebe
timedatestamp.....: 0x4a12d623 (Tue May 19 15:54:11 2009)
machinetype.......: 0x14c (I386)
( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x2000 0x3ec4 0x4000 5.52 702a92a6974cd5d45c6afc186c908d87
.sdata 0x6000 0xb6 0x200 2.52 ad4418a1b568cb314a5b8a5b7982ed41
.rsrc 0x8000 0xa48 0xc00 3.62 8da6efcb91c43dc35d276fe8e243d5ed
.reloc 0xa000 0xc 0x200 0.08 f278c1879e3386d8495a340356247373
( 1 imports )
> mscoree.dll: _CorExeMain
( 0 exports )
PDFiD.: -
RDS...: NSRL Reference Data Set