Gridinsoft Logo

The vmcompute.exe (Hyper-V Host Compute Service) File Analysis

Technical Analysis

File Name vmcompute.exe
File Type
PE32+ executable (GUI) x86-64, for MS Windows
Scanner Version 1.0.210.174
Database Version 2025-03-13 00:00:48 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
3,225,096
File Size (bytes)
2025-03-13
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
54d0453b912d9b6a136235ee76ebc29d
SHA1
b3fa6c4996a28b53f36752f76ffdeccd8c477403
SHA256
15b13a4ffcc6a02a633242a66526e348f0ae6eeb335296aa6456300b5ad1d6c2
SHA512
53a66c71db3f9ac7e733c9889125f2e5fc88e6a9606de886db9fd80dca0838b9f498a78e7c5f9313692314f2782699941068fdc4c981b75a7db455da93608461
ImpHash
8aa2165a205b8f060271e17f9f53fc15

PE Analysis

Basic Information

Image Base 0x140000000
Entry Point 0x1402152d0
Compilation Time 2018-11-25 13:11:04
Checksum 0x0031ab54 (Actual: 0x0031ab54)
OS Version 10.0
PEiD Signatures PE32+ executable (GUI) x86-64, for MS Windows
PDB Path vmcompute.pdb
Digital Signature OK
Imports 80 libraries
Exports 26 functions
Resources 2 Resources
Sections 8 Sections

Version Information

CompanyName Microsoft Corporation
FileDescription Hyper-V Host Compute Service
FileVersion 10.0.19041.5486 (WinBuild.160101.0800)
InternalName Hyper-V Host Compute Service
LegalCopyright © Microsoft Corporation. All rights reserved.
OriginalFilename vmcompute.exe
ProductName Microsoft® Windows® Operating System
ProductVersion 10.0.19041.5486
Translation 0x0409 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 2,290,434 bytes 2,290,688 bytes 6.30 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ F743073607A40D696C1AFFB36046BB26
PAGE 0x00231000 10,916 bytes 11,264 bytes 6.29 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 9984B084B7915F556186C43A4C8141A3
.rdata 0x00234000 685,418 bytes 685,568 bytes 4.98 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ FEA1469E8CCAF978897F33540EDF4F1A
.data 0x002dc000 149,360 bytes 99,328 bytes 4.76 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 66BCFB13658FD5473314490A33ECE48B
.pdata 0x00301000 98,088 bytes 98,304 bytes 6.24 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 117E4AC0880A6D318A64608B1815AE67
.didat 0x00319000 528 bytes 1,024 bytes 1.96 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE C1B02D47EFE95DDC9A46ADB1A20A9509
.rsrc 0x0031a000 1,352 bytes 1,536 bytes 3.07 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 418001C023957FC6A80E701EEB5221A3
.reloc 0x0031b000 26,336 bytes 26,624 bytes 5.43 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ F64E9A2D47AFB3183DCE9DAC56BA94EF

Resource Analysis

Total Resources: 2 (1,176 bytes)
Resource Type Count Total Size Percentage
MUI 1 200 bytes
17%
RT_VERSION 1 976 bytes
83%

Certificate Chain Analysis

Certificate Information
Product Microsoft® Windows® Operating System
Description Hyper-V Host Compute Service
File Version 10.0.19041.5486 (WinBuild.160101.0800)
Original Name vmcompute.exe
Signing Date 05:05 AM 01/23/2025 (135 days ago)
Verification Status Signed
Signers Microsoft Windows; Microsoft Windows Production PCA 2011; Microsoft Root Certificate Authority 2010
Counter Signers Microsoft Time-Stamp Service; Microsoft Time-Stamp PCA 2010; Microsoft Root Certificate Authority 2010
Internal Name Hyper-V Host Compute Service
Copyright © Microsoft Corporation. All rights reserved.
Certificate Chain Summary
Microsoft Windows #1 Primary
Validity Period: 2024-09-12 20:04:06 → 2025-09-11 20:04:06
Signature Algorithm: sha256RSA
Serial Number: 33 00 00 04 A7 04 3E E4 22 C8 34 FA FC 00 00 00 00 04 A7
Microsoft Windows Production PCA 2011 #2 Chain
Validity Period: 2011-10-19 18:41:42 → 2026-10-19 18:51:42
Signature Algorithm: sha256RSA
Serial Number: 61 07 76 56 00 00 00 00 00 08
Microsoft Time-Stamp Service #3 Chain
Validity Period: 2024-07-25 18:31:14 → 2025-10-22 18:31:14
Signature Algorithm: sha256RSA
Serial Number: 33 00 00 01 FC 18 A0 AF CC 69 5A 87 3A 00 01 00 00 01 FC
Microsoft Time-Stamp PCA 2010 #4 Chain
Validity Period: 2021-09-30 18:22:25 → 2030-09-30 18:32:25
Signature Algorithm: sha256RSA
Serial Number: 33 00 00 00 15 C5 E7 6B 9E 02 9B 49 99 00 00 00 00 00 15

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware