Gridinsoft Logo
File Icon

The EGMonitor.exe (EGMonitor) File Analysis

Technical Analysis

File Name EGMonitor.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.228.174
Database Version 2025-11-04 03:00:34 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
340,480
File Size (bytes)
2025-11-04
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
7945dbf2bd3579910342eefbb275f1f7
SHA1
57356643f1f7cd28b485bd4e35dad3f1b13c40c1
SHA256
1103cbd9f49ba8c55c2aceab21a8cf65fe5a73e56205d9e2f69ed3bec08e481a
SHA512
92335555e2ebd7646356f08278c54aafaadd915f53fcd10a235499b106964aa45b8f7c1ec20c5fcfa25efeab8609328076c326c3a7490ba0a6bd71f762d8902b
ImpHash
c1241ce55d89ef03f88b81b4681e717e

PE Analysis

Basic Information

Icon
Hash: aa6e61fc2bad3b2f0c14a033a723402b
Fuzzy: 671fe3757402322ba4509b5969ef1665
dHash: f8f4e63e3e369ef8
Image Base 0x00400000
Entry Point 0x0040aa0b
Compilation Time 2020-05-06 10:07:10
Checksum 0x0005e262 (Actual: 0x0005e262)
OS Version 5.1
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
PDB Path L:\workspace\EGWin\bin\Release\pdbs\EGMonitor.pdb
Digital Signature OK
Imports 16 libraries
Exports 0 functions
Resources 8 Resources
Sections 5 Sections

Version Information

FileDescription EGMonitor
FileVersion 2, 0, 3, 6
InternalName EGMonitor
LegalCopyright Copyright (C) EagleGet 2014~2015
OriginalFilename EGMonito.exe
ProductName EGMonitor
ProductVersion 2, 0, 3, 6
Translation 0x0804 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 181,278 bytes 181,760 bytes 6.65 (Compressed) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 77AA6A282771D7CDFB60AF74B17B68FB
.rdata 0x0002e000 76,348 bytes 76,800 bytes 5.31 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 9658E20795CFAB61F700DCD7997CDEF9
.data 0x00041000 8,444 bytes 4,608 bytes 3.31 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 6C17112AF91D8786D21BF5156D175776
.rsrc 0x00044000 57,928 bytes 58,368 bytes 7.45 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 83F3CB627C56F3C418B5BB4B3EC75888
.reloc 0x00053000 10,900 bytes 11,264 bytes 6.56 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 362423A0D4FFCC549BF78F1AE4AB765C
Entropy Analysis Alert

3 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 8 (57,418 bytes)
Resource Type Count Total Size Percentage
RT_ICON 5 56,289 bytes
98%
RT_GROUP_ICON 1 76 bytes
0.1%
RT_VERSION 1 672 bytes
1.2%
RT_MANIFEST 1 381 bytes
0.7%

Certificate Chain Analysis

Certificate Information
Product EGMonitor
Description EGMonitor
File Version 2, 0, 3, 6
Original Name EGMonito.exe
Signing Date 06:30 AM 05/18/2020 (2062 days ago)
Verification Status Signed
Signers Beijing Pu Technology Limited; Go Daddy Secure Certificate Authority - G2; Go Daddy Root Certificate Authority – G2
Counter Signers Starfield Timestamp Authority - G2; Starfield Secure Certificate Authority - G2; Starfield Root Certificate Authority – G2
Internal Name EGMonitor
Copyright Copyright (C) EagleGet 2014~2015
Certificate Chain Summary
Go Daddy Secure Certificate Authority - G2 #1 Primary
Validity Period: 2011-05-03 07:00:00 → 2031-05-03 07:00:00
Signature Algorithm: sha256RSA
Serial Number: 07
Starfield Secure Certificate Authority - G2 #2 Chain
Validity Period: 2011-05-03 07:00:00 → 2031-05-03 07:00:00
Signature Algorithm: sha256RSA
Serial Number: 07
Beijing Pu Technology Limited #3 Chain
Validity Period: 2019-05-19 12:16:04 → 2020-07-18 10:25:01
Signature Algorithm: sha256RSA
Serial Number: CF EE B0 39 64 BD DA 80
Starfield Timestamp Authority - G2 #4 Chain
Validity Period: 2019-09-17 07:00:00 → 2024-09-17 07:00:00
Signature Algorithm: sha256RSA
Serial Number: 85 FB 77 B2 E1 59 11 97

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.

Your Score for
/

Gridinsoft Anti-Malware

Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware

Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!

Gridinsoft Anti-Malware