Gridinsoft Logo
File Icon

The ExtensionModule (1).exe File Analysis

Technical Analysis

File Name ExtensionModule (1).exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
Scanner Version 1.0.231.174
Database Version 2025-12-31 16:00:34 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
1,899,784
File Size (bytes)
2025-12-31
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
776111550287cd63d1fb94b30e478c8d
SHA1
b6785f025ac02d8aadd0c5497927fa357df8464e
SHA256
02c9764d71dbc387bbb1546bb702e5d04a64ebe9ced569bfba93e5e80263aa80
SHA512
381496d8628443bdb0a8ac53cb0b4819901493019ad75cdfa4fe0f0cd4bd80117f165fe99c8cc6e62aaf53c916ea1fb624e3da6ad3293445d2c1a01adfcf223e
ImpHash
573bb7b41bc641bd95c0f5eec13c233b

PE Analysis

Basic Information

Icon
Hash: 493ef729c4f3a037c449320b9a6865c4
Fuzzy: 5819b8abe25931f3fa33a2caf64e9dc2
dHash: 32591939616262b2
Image Base 0x00400000
Entry Point 0x00403557
Compilation Time 2025-03-08 23:05:20
Checksum 0x001d16e5 (Actual: 0x001d16e5)
OS Version 4.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
Digital Signature OK
Imports 7 libraries
ADVAPI32, SHELL32, ole32, COMCTL32, USER32, GDI32, KERNEL32
Exports 0 functions
Resources 51 Resources
Sections 5 Sections

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 26,033 bytes 26,112 bytes 6.47 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ EDE5332BF873A891B30BDDECA5A001A2
.rdata 0x00008000 4,952 bytes 5,120 bytes 5.10 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ B37859E18D3B466791DAE1EB6C76701B
.data 0x0000a000 129,848 bytes 1,536 bytes 4.03 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D13B23F3B755CCBE7F00E1ACCF591CAB
.ndata 0x0002a000 98,304 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
.rsrc 0x00042000 83,976 bytes 84,480 bytes 3.19 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ AF022CDE3E78129739BC295AF8376B95

Resource Analysis

Total Resources: 51 (81,327 bytes)
Resource Type Count Total Size Percentage
RT_ICON 1 67,624 bytes
83.2%
RT_DIALOG 48 12,624 bytes
15.5%
RT_GROUP_ICON 1 20 bytes
0%
RT_MANIFEST 1 1,059 bytes
1.3%

Certificate Chain Analysis

Certificate Information
Signing Date 08:25 PM 11/10/2025 (59 days ago)
Verification Status Signed
Signers BRY TECNOLOGIA S.A; GlobalSign GCC R45 EV CodeSigning CA 2020; GlobalSign Code Signing Root R45
Counter Signers DigiCert SHA256 RSA4096 Timestamp Responder 2025 1; DigiCert Trusted G4 TimeStamping RSA4096 SHA256 2025 CA1; DigiCert Trusted Root G4; DigiCert
Certificate Chain Summary
GlobalSign GCC R45 EV CodeSigning CA 2020 #1 Primary
Validity Period: 2020-07-28 00:00:00 → 2030-07-28 00:00:00
Signature Algorithm: sha256RSA
Serial Number: 77 BD 0E 05 B7 59 0B B6 1D 47 61 53 1E 3F 75 ED
BRY TECNOLOGIA S.A #2 Chain
Validity Period: 2025-09-08 20:37:16 → 2028-09-08 20:37:16
Signature Algorithm: sha256RSA
Serial Number: 0E 28 26 A8 5C 2A 90 A1 68 80 7B 25
DigiCert SHA256 RSA4096 Timestamp Responder 2025 1 #3 Chain
Validity Period: 2025-06-04 00:00:00 → 2036-09-03 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 0A 80 EF 18 4B 8D F1 05 82 D1 C4 76 A7 95 74 68
DigiCert Trusted G4 TimeStamping RSA4096 SHA256 2025 CA1 #4 Chain
Validity Period: 2025-05-07 00:00:00 → 2038-01-14 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 0D C7 AC 57 05 FF 21 99 2E 40 43 22 0C 3A 49 86
DigiCert Trusted Root G4 #5 Chain
Validity Period: 2022-08-01 00:00:00 → 2031-11-09 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 0E 9B 18 8E F9 D0 2D E7 EF DB 50 E2 08 40 18 5A

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.

Your Score for
/

Gridinsoft Anti-Malware

Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware

Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!

Gridinsoft Anti-Malware