pea.exe

  • File Path: C:\Program Files\PeaZip\res\pea.exe
  • Description: Pea: pack, encrypt, authenticate

Hashes

Type Hash
MD5 AC01E20BCDDC29CBCBDB880DF89AACE8
SHA1 B09D0CC62269578DF48675DA82F9EEAD0F1425F1
SHA256 911446FD16F7A7553FCD8E57C1E699AA2FDA7707FF19C2067FB4003F82E43C66
SHA384 19524CB2E5AFEE88EFCF5F02FFB52BC0C34A9230B9852D76C9DB0E0A904DC406428016EEA4014D0B217FDE677A11BD4D
SHA512 6BEFC22FDAD67944BF96E4A431DB614818AB751D118DA6F1C39F02796A34DCA71437F4FA1464F7B0BDF381D49CD7F08E6251CA73CE3E0957024B60508BF12CCC
SSDEEP 49152:fSzZoiX6EKfmUsGvBK+YpQM3L3PsPyp9S7QMzfc+G+Z+JobtJ:UGiX+fmUXiZqQqSg
IMP AE0E61EC8429D09E075C90A919AC2920
PESHA1 7E9221C5D839CCF84DE2910A2B3CDF7525EE0AAF
PE256 3AB59E6ACF4AC62D77803D685B98FAE73AF8103A9F403294459A819D5A92823F

Runtime Data

Window Title:

Pea

Open Handles:

Path Type
(R-D) C:\Windows\Fonts\StaticCache.dat File
(R-D) C:\Windows\System32\en-US\user32.dll.mui File
(R-D) C:\Windows\WinSxS\amd64_microsoft.windows.c..-controls.resources_6595b64144ccf1df_6.0.19041.1_en-us_cb612d02732b0fd9\comctl32.dll.mui File
(RW-) C:\Program Files\PeaZip\res File
(RW-) C:\Windows\WinSxS\amd64_microsoft.windows.c..-controls.resources_6595b64144ccf1df_6.0.19041.1_en-us_cb612d02732b0fd9 File
(RW-) C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.488_none_ca04af081b815d21 File
\BaseNamedObjects__ComCatalogCache__ Section
\BaseNamedObjects\NLS_CodePage_1252_3_2_0_0 Section
\BaseNamedObjects\NLS_CodePage_437_3_2_0_0 Section
\BaseNamedObjects\windows_shell_global_counters Section
\Sessions\1\BaseNamedObjects\windows_shell_global_counters Section
\Sessions\1\Windows\Theme2547664911 Section
\Windows\Theme3854699184 Section

Loaded Modules:

Path
C:\Program Files\PeaZip\res\pea.exe
C:\Windows\System32\bcryptPrimitives.dll
C:\Windows\System32\combase.dll
C:\Windows\System32\comdlg32.dll
C:\Windows\System32\GDI32.dll
C:\Windows\System32\gdi32full.dll
C:\Windows\System32\IMM32.DLL
C:\Windows\SYSTEM32\kernel.appcore.dll
C:\Windows\System32\KERNEL32.DLL
C:\Windows\System32\KERNELBASE.dll
C:\Windows\SYSTEM32\msimg32.dll
C:\Windows\System32\msvcp_win.dll
C:\Windows\System32\msvcrt.dll
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\System32\ole32.dll
C:\Windows\System32\oleaut32.dll
C:\Windows\System32\RPCRT4.dll
C:\Windows\System32\shcore.dll
C:\Windows\System32\shell32.dll
C:\Windows\System32\SHLWAPI.dll
C:\Windows\System32\ucrtbase.dll
C:\Windows\System32\user32.dll
C:\Windows\system32\uxtheme.dll
C:\Windows\SYSTEM32\version.dll
C:\Windows\System32\win32u.dll
C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.488_none_ca04af081b815d21\comctl32.dll

Signature

  • Status: The file C:\Program Files\PeaZip\res\pea.exe is not digitally signed. You cannot run this script on the current system. For more information about running scripts and setting execution policy, see about_Execution_Policies at https:/go.microsoft.com/fwlink/?LinkID=135170
  • Serial: ``
  • Thumbprint: ``
  • Issuer:
  • Subject:

File Metadata

  • Original Filename: Pea
  • Product Name: Pea
  • Company Name: Giorgio Tani
  • File Version: 0.74.0
  • Product Version: 0.74.0
  • Language: English (United States)
  • Legal Copyright: Giorgio Tani, LGPLv3
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/69
  • VirusTotal Link: https://www.virustotal.com/gui/file/911446fd16f7a7553fcd8e57c1e699aa2fda7707ff19c2067fb4003f82e43c66/detection/

File Similarity (ssdeep match)

File Score
C:\program files\PeaZip\res\pea.exe 29

MIT License. Copyright (c) 2020-2021 Strontic.