Gridinsoft Logo
File Icon

The sora_1st.exe File Analysis

Technical Analysis

File Name sora_1st.exe
File Type
PE32+ executable (GUI) x86-64, for MS Windows
Scanner Version 1.0.231.174
Database Version 2025-12-17 02:00:36 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
9,973,248
File Size (bytes)
2025-12-17
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
de8d2e7d520aff04a3033f3d26177b6b
SHA1
d07b9d93392d1ac5cb329b8407e02f83069e57d9
SHA256
110f51a0e3914fb7ba4bd46193453d2db526a527d039c5d4d8e44da39191284f
SHA512
3396d2985cf6c42b46a0ede2634eac30618c7bcaf5020560d507daa27ef8198ddc645b6dc1ab770186bf22877aef48bd140e2246957bdb09d854aeeb05d96044
ImpHash
83981704e914db2614482b5409e2494d

PE Analysis

Basic Information

Icon
Hash: 7a829b35d18278eb131feea160616557
Fuzzy: 340b0cf0149164f12b16e3b184f62936
dHash: 98ac292d72f4d69b
Image Base 0x140000000
Entry Point 0x1406a1164
Compilation Time 2025-10-30 04:31:55
Checksum 0x00000000 (Actual: 0x00985fff)
OS Version 6.0
PEiD Signatures PE32+ executable (GUI) x86-64, for MS Windows
PDB Path d:\JenkinsRemoteFS\workspace\sora_steam\bin\sora_deploy_steam.pdb
Digital Signature No valid SignedData structure was found.
Imports 11 libraries
Exports 0 functions
Resources 8 Resources
Sections 6 Sections

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 7,835,465 bytes 7,835,648 bytes 6.45 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 0A132CF734093EDACFE794E3E8690B90
.rdata 0x0077a000 1,347,222 bytes 1,347,584 bytes 5.69 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 59C5B81F0C810B45199F380C9A76DE4E
.data 0x008c3000 283,732 bytes 263,168 bytes 5.06 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 32144454918E548F017F205DFEA14F98
.pdata 0x00909000 286,956 bytes 287,232 bytes 6.53 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 73FFEF711B32B7E59CB1C7D031D4F58C
.rsrc 0x00950000 207,368 bytes 207,872 bytes 7.90 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 20228E3B97EEF402673BC9F3ADA44F76
.reloc 0x00983000 30,328 bytes 30,720 bytes 5.44 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 9E5820D673E99E0494EE825F80254B89
Entropy Analysis Alert

1 section(s) with high entropy (≥7.5) detected - possible packing/encryption

1 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 8 (206,878 bytes)
Resource Type Count Total Size Percentage
RT_ICON 6 206,237 bytes
99.7%
RT_GROUP_ICON 1 90 bytes
0%
RT_MANIFEST 1 551 bytes
0.3%

Certificate Chain Analysis

No Digital Signatures

This file is not digitally signed.

Security Implications:
  • Cannot verify the publisher's identity
  • Increased security risk when running this file
  • May trigger security warnings on some systems

⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources

Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.

Your Score for
/

Gridinsoft Anti-Malware

Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware

Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!

Gridinsoft Anti-Malware