| File Name | cpuleak_scan_en.exe |
| File Type |
PE32 executable (GUI) Intel 80386, for MS Windows
|
| Scanner Version | 1.0.228.174 |
| Database Version | 2025-10-24 18:00:20 UTC |
No threats detected by our scanner
| Hash Type | Value | Action |
|---|---|---|
| MD5 |
85aa89fdff4dcbcdfdd704c00a0da4e5
|
|
| SHA1 |
5a035c56a797a4d7008d0e0ebc328298c7084ae0
|
|
| SHA256 |
21298cefcc6e83d8bd2a6e1783e0d9196fae91c2d0fc21b0a568e8d77be58e1d
|
|
| SHA512 |
28c73d405952ca791f13e644684f7fa24cc3dcbab5b10b44898bf055bed720fe1765ca3796d3065dfa880551827590b7ff4d7fe89c081209bb25420808cf45c5
|
|
| ImpHash |
027ea80e8125c6dda271246922d4c3b0
|
| Icon |
Hash: 3e02527e67af010d267e693e882cb3da
Fuzzy: a0355d3e8cef586bb6e00314ed096af5 dHash: e9f4aa8accc6c664 |
| Image Base | 0x00400000 |
| Entry Point | 0x0041cec9 |
| Compilation Time | 2017-08-11 13:54:06 |
| Checksum | 0x008ebe8b (Actual: 0x008ebe8b) |
| OS Version | 5.1 |
| PEiD Signatures |
PE32 executable (GUI) Intel 80386, for MS Windows
|
| PDB Path | D:\Projects\WinRAR\sfx\build\sfxrar32\Release\sfxrar.pdb |
| Digital Signature | OK |
| Imports |
1 libraries
KERNEL32 |
| Exports | 0 functions |
| Resources | 23 Resources |
| Sections | 6 Sections |
| Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
|---|---|---|---|---|---|---|
.text |
0x00001000 |
188,875 bytes | 188,928 bytes | 6.69 (Compressed) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
5C7B428A0E89EA47B4077685A6B368F9 |
.rdata |
0x00030000 |
39,072 bytes | 39,424 bytes | 5.12 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
93FD19BE3A021A1128E7CAF2A14B8416 |
.data |
0x0003a000 |
127,632 bytes | 3,072 bytes | 3.24 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
74D4929D26AA823ED75BB2F4AE8C5198 |
.gfids |
0x0005a000 |
232 bytes | 512 bytes | 2.06 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
5CFC4D481AA83C2FC6CE55DDF06FB8CF |
.rsrc |
0x0005b000 |
18,048 bytes | 18,432 bytes | 4.64 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
9E21F32CF33E11836C478B0EAD21D6A8 |
.reloc |
0x00060000 |
8,024 bytes | 8,192 bytes | 6.62 (Compressed) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
9CAFFE0A7AF61F18E5154F80560D2242 |
2 section(s) with elevated entropy (≥6.5) - possible compression
| Resource Type | Count | Total Size | Percentage |
|---|---|---|---|
| RT_BITMAP | 1 | 2,998 bytes | |
| RT_ICON | 4 | 4,640 bytes | |
| RT_DIALOG | 6 | 2,916 bytes | |
| RT_STRING | 10 | 4,090 bytes | |
| RT_GROUP_ICON | 1 | 62 bytes | |
| RT_MANIFEST | 1 | 1,875 bytes |
| Signing Date | 08:27 AM 01/10/2018 (2921 days ago) |
| Verification Status | Signed |
| Signers | QIHU 360 SOFTWARE CO. LIMITED; VeriSign Class 3 Code Signing 2010 CA; VeriSign |
| Counter Signers | GlobalSign TSA for MS Authenticode - G2; GlobalSign Timestamping CA - G2; GlobalSign Root CA - R1 |
04 00 00 00 00 01 2F 4E E1 52 D711 21 D6 99 A7 64 97 3E F1 F8 42 7E E9 19 CC 53 41 1454 92 38 03 40 3D C0 8B E2 4F 0D 7C 8C CC 55 9330 D2 67 84 66 AE 9B 33 28 5F 1A 53 17 2F EC 173D 78 D7 F9 76 49 60 B2 61 7D F4 F0 1E CA 86 2A7B 05 B1 D4 49 68 51 44 F7 C9 89 D2 9C 19 9D 1254 58 F2 AA D7 41 D6 44 BC 84 A9 7B A0 96 52 E6✓ This file has been digitally signed and the certificate chain has been verified
OK
Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:
Download Anti-MalwareThis file appears clean, but regular security maintenance is important
Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware
Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!