PESCAN.IO - Analysis Report Basic

File Structure
Analysis Image
PE Chart Code
Executable header (light blue)
Executable sections (pink)
Non-executable sections (black)
External injected code (red)
File Structure in red = malformed or corrupted header

Chart Code For Other Files
Printable characters (blue)
Non-printable characters (black)
Information
Size: 10,00 KB
SHA-256 Hash: D98CD8B3B6929171E7F59F49D42442E09409BE63FFD1304C827BC0703589BD54
SHA-1 Hash: 1E51F6D7CF456EBFC450BD6DC96A665029749E29
MD5 Hash: FCD477BC48641828C3C3BA57A33A2A47
Imphash: D41D8CD98F00B204E9800998ECF8427E
MajorOSVersion: 4
MinorOSVersion: 0
CheckSum: 00000000
EntryPoint (rva): 0
SizeOfHeaders: 200
SizeOfImage: 6000
ImageBase: 0000000140000000
Architecture: x64
Characteristics: 22
TimeDateStamp: 602A8354
Date: 15/02/2021 14:21:08
File Type: EXE
Number Of Sections: 2
ASLR: Disabled
Section Names (Optional Header): .text, .rsrc
Number Of Executable Sections: 1
Subsystem: Windows GUI
UAC Execution Level Manifest: asInvoker

Sections Info
Section Name Flags ROffset RSize VOffset VSizeEntropyChi2
.text 60000020 (Code, Executable, Readable) 200 2000 2000 1EE05,4119179396,19
.rsrc 40000040 (Initialized Data, Readable) 2200 600 4000 5BC4,111476747,33
Description
OriginalFilename: CrackMeEasy.exe
LegalCopyright: Copyright 2016
ProductName: CrackMeEasy
FileVersion: 1.0.0.0
FileDescription: CrackMeEasy
ProductVersion: 1.0.0.0
Language: Unknown (ID=0x0)
CodePage: Unicode (UTF-16 LE) (0x4B0)

Signatures
Certificate - Digital Signature Not Found:
• The file is not signed

Packer/Compiler
Compiler: Microsoft Visual .NET - (You can use a decompiler for this...)
AnyCPU: False
Version: v4.0
Compiler: Microsoft Visual Studio
Detect It Easy (die)
PE+(64): library: .NET(v4.0.30319)[-]
PE+(64): linker: Microsoft Linker(48.0)[-]
PE+(64): archive: Resources(-)[-]
Entropy: 5.17943

File Access
CrackMeEasy.exe

File Access (UNICODE)
CrackMeEasy.exe

Interest's Words
Encrypt
Decrypt
Encryption
exec
attrib

Interest's Words (UNICODE)
PassWord

IP Addresses
12.0.0.0

Strings/Hex Code Found With The File Rules
Rule Type Encoding Matched (Word)
Text Ascii WinAPI Sockets (send)
Text Ascii Encryption (Base64Decode)
Text Ascii Encryption (Base64Encode)
Text Ascii Encryption (FromBase64String)
Text Ascii Encryption (ToBase64String)
Text Ascii Encryption (base64EncodedData)
Resources
Path DataRVA Size FileOffset CodeText
\VERSION\1\0 4090 32C 2290 2C0334000000560053005F00560045005200530049004F004E005F0049004E0046004F0000000000BD04EFFE000001000000,.4...V.S._.V.E.R.S.I.O.N._.I.N.F.O...............
\24\1\0 43CC 1EA 25CC EFBBBF3C3F786D6C2076657273696F6E3D22312E302220656E636F64696E673D225554462D3822207374616E64616C6F6E65...<?xml version="1.0" encoding="UTF-8" standalone
Intelligent String
• 1.0.0.0
• CrackMeEasy.exe
• C:\Users\tunelko\Downloads\TRABAJO\01.IHACKLABS\CTF_2020\H-CON2020\retos\CrackmeEasy\CrackMeEasy\CrackMeEasy\obj\x64\Release\CrackMeEasy.pdb

Extra Analysis
Metric Value Percentage
Ascii Code 5925 57,8613%
Null Byte Code 3344 32,6562%
© 2026 All rights reserved.