Gridinsoft Logo

Testing.exe Malware Generic Analysis

Technical Analysis

File Name Testing.exe
File Type
PE32+ executable (console) x86-64, for MS Windows
Scanner Version 1.0.210.174
Database Version 2025-03-16 17:00:59 UTC

Malware.Win64.Generic.cld

Malware family: Generic

This detection name identifies suspicious files displaying Trojan-like behavior patterns. It represents malware that masquerades as benign programs while executing unauthorized activities on the infected system.
N/A
Detection Rate
2,646,528
File Size (bytes)
2025-03-16
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
b9b58fcc03227dd2db0db77a2e8d0269
SHA1
9cc8ed62d81bd384c33da543a7143d7e96a1f7d5
SHA256
0cdacb894e565ceebd06a5e85afe794e68ec0aefc2f0cf251d26c355eb1d0c2c
SHA512
b81f07c6ebe0a5b597ea524e1e94de05208667f8322781cafe31774bb72d6ade4c89058aeba44a29269d9e6db2060a42deac6945b3873617437e75b45d37d1a6
ImpHash
6dba2c2a8bd1f9b5b5c92f40fb456ef8

PE Analysis

Basic Information

Image Base 0x140000000
Entry Point 0x1400cdc14
Compilation Time 2024-05-03 15:14:50
Checksum 0x00000000 (Actual: 0x002942fd)
OS Version 6.0
PEiD Signatures PE32+ executable (console) x86-64, for MS Windows
PDB Path C:\Users\IFIX PC BMC\Desktop\KX Sofwtares PvP\x64\Build\Testing.pdb
Digital Signature No valid SignedData structure was found.
Imports 28 libraries
Exports 0 functions
Resources 1 Resources
Sections 6 Sections

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 852,080 bytes 852,480 bytes 6.49 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 6015431D6DF8B7CD22941D4E77E2568D
.rdata 0x000d2000 795,260 bytes 795,648 bytes 6.72 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ F76E20070DB91A51C783BD6C8099D4D9
.data 0x00195000 964,016 bytes 958,976 bytes 6.79 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 3700F96FA62023946D38E6EB78260429
.pdata 0x00281000 32,568 bytes 32,768 bytes 6.01 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ ABB80EBCB063DA853749A5C0FBC95668
.rsrc 0x00289000 488 bytes 512 bytes 4.77 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 7928E0CB8931047A56664BFABF37D67B
.reloc 0x0028a000 5,016 bytes 5,120 bytes 5.42 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 8A9346708E55929FF444D3628A559C52
Entropy Analysis Alert

2 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 1 (392 bytes)
Resource Type Count Total Size Percentage
RT_MANIFEST 1 392 bytes
100%

Certificate Chain Analysis

No Digital Signatures

This file is not digitally signed.

Security Implications:
  • Cannot verify the publisher's identity
  • Increased security risk when running this file
  • May trigger security warnings on some systems

⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources

Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Malware.Win64.Generic.cld Removal

Gridinsoft has the capability to identify and eliminate Malware.Win64.Generic.cld without requiring further user intervention.

Download Anti-Malware

Removal Instructions

Follow these steps to completely remove the threat from your system

  1. Start by downloading Gridinsoft Anti-Malware to your computer.
  2. Double-click on the gsam-en-install.exe file and follow the on-screen instructions to install the program.
  3. Once the installation of Gridinsoft Anti-Malware is complete, the program will open on the Scan screen.
  4. Click on the "Standard Scan" button to begin scanning your computer for threats.
  5. After the scanning process is finished, click on "Clean Now" to remove any detected threats.
  6. If prompted, restart your system to complete the removal process and ensure all threats are eliminated.
Important: Before You Start
Disconnect from the internet to prevent the malware from spreading or downloading additional threats. Run the scan in Safe Mode for better detection and removal of persistent threats.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware