The awincupl exe (Setup Launcher) Atmel File Malware Analysis
Gridinsoft Logo
File Icon

The awincupl.exe (Setup Launcher) File Analysis

Technical Analysis

File Name awincupl.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.194.174
Database Version 2024-10-28 03:00:37 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
21,993,039
File Size (bytes)
2024-10-28
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
b04a5b0b0148a03f02ef1c254095f32e
SHA1
821f1a199328281e9325e574793fc2007b368d63
SHA256
162d3e12602dc7816f039b7a2ede4be0a4bc49b23d17281b4bf27b3b982f30b2
SHA512
a75583981068740be78c62fc59ab3cf48f0d72be5760d29aafa43b52a1a454ea01ff77f20f2fce342291409c7366daddffbb28e743b10d951a3316967a55d3d0
ImpHash
ded26cceacfa296ae026f8b3c34d6ec5

PE Analysis

Basic Information

Icon
Hash: b8a4c86f4b6ae0d00860dfb762aff30d
Fuzzy: e86457f73bcdf352ccf7af9e6dcac0b7
dHash: c8949c8de6b2aec6
Image Base 0x00400000
Entry Point 0x00412c52
Compilation Time 2001-11-30 16:35:33
Checksum 0x00000000 (Actual: 0x01503648)
OS Version 4.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
Digital Signature No valid SignedData structure was found.
Imports 9 libraries
VERSION, SHELL32, COMCTL32, KERNEL32, USER32, GDI32, ADVAPI32, ole32, OLEAUT32
Exports 0 functions
Resources 24 Resources
Sections 4 Sections

Version Information

Comments
CompanyName Atmel
FileDescription Setup Launcher
FileVersion 5.30.4
LegalCopyright 748
ProductName WinCupl
ProductVersion 5.30.4
Translation 0x0409 0x04e4

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 108,198 bytes 110,592 bytes 6.49 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ F27D6A9707AEC95F5726F6C56C9E3591
.rdata 0x0001c000 13,662 bytes 16,384 bytes 4.83 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 54C2976EF1D1B06263D2072C47B162FD
.data 0x00020000 30,104 bytes 20,480 bytes 2.47 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 79D4EA95FC81B9C0B6C876225B43AE97
.rsrc 0x00028000 46,632 bytes 49,152 bytes 7.11 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ E31684E7C67D9CA01EC4F5E95827BF24
Entropy Analysis Alert

1 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 24 (45,196 bytes)
Resource Type Count Total Size Percentage
GIF 1 31,466 bytes
69.6%
RT_CURSOR 1 308 bytes
0.7%
RT_ICON 9 10,024 bytes
22.2%
RT_DIALOG 5 1,490 bytes
3.3%
RT_STRING 3 424 bytes
0.9%
RT_GROUP_CURSOR 1 20 bytes
0%
RT_GROUP_ICON 3 144 bytes
0.3%
RT_VERSION 1 1,320 bytes
2.9%

Certificate Chain Analysis

Certificate Information
Product WinCupl
Description Setup Launcher
File Version 5.30.4
Copyright 748
Certificate Chain Summary
Certificate #1 Primary
Validity Period: 1997-05-12 00:00:00 → 2004-01-07 23:59:59
Signature Algorithm: md5RSA
Serial Number: 4A 19 D2 38 8C 82 59 1C A5 5D 73 5F 15 5D DC A3
VeriSign Time Stamping Service #2 Chain
Validity Period: 2001-02-28 00:00:00 → 2004-01-06 23:59:59
Signature Algorithm: md5RSA
Serial Number: 08 7A 6D 5C 6F 62 93 4F BA C4 FD 43 E1 14 18 9D
Microsoft Root Authority #3 Chain
Validity Period: 1997-01-10 07:00:00 → 2020-12-31 07:00:00
Signature Algorithm: md5RSA
Serial Number: C1 00 8B 3C 3C 88 11 D1 3E F6 63 EC DF 40
Microsoft Corporation #4 Chain
Validity Period: 2001-03-29 21:27:26 → 2002-05-29 21:37:26
Signature Algorithm: sha1RSA
Serial Number: 61 06 2A 8D 00 00 00 00 00 0B
Microsoft Code Signing PCA #5 Chain
Validity Period: 2000-12-10 08:00:00 → 2005-11-12 08:00:00
Signature Algorithm: md5RSA
Serial Number: 6A 0B 99 4F C0 00 DE AA 11 D4 D8 40 9A A8 BE E6

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware

Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!

Gridinsoft Anti-Malware