Gridinsoft Logo
File Icon

The SystemSettings.exe (Settings) File Analysis

Technical Analysis

File Name SystemSettings.exe
File Type
PE32+ executable (GUI) x86-64, for MS Windows
Scanner Version 1.0.210.174
Database Version 2025-03-13 00:00:48 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
98,256
File Size (bytes)
2025-03-13
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
9e1088ba442fcf0bf027d227c8e9c52d
SHA1
eb235674389e7419ea2141e12a97bd1c7c7b070f
SHA256
2463bad26958698e5b05ec8192baabf7091bb222608acb9d24e882a004fdeb14
SHA512
f471d257aaf5b41d01416d14b54a3f63b9b56aa3c3ed14e220ea8a7ce3e525a3fbac545a1a4689210f8e4ab8b83587439d7667d39d215805c84d5ddea3dacff3
ImpHash
ec87c68a546fb4bdecf11bcb83e7d0e5

PE Analysis

Basic Information

Icon
Hash: f0fc3ffaa707352d64c3595cd7b2050d
Fuzzy: fc7f8081cfc987979e55202a13df0866
dHash: e869e8cccce869e8
Image Base 0x140000000
Entry Point 0x1400040c0
Compilation Time 2038-03-12 12:43:20
Checksum 0x00023efe (Actual: 0x00023efe)
OS Version 10.0
PEiD Signatures PE32+ executable (GUI) x86-64, for MS Windows
PDB Path SystemSettings.pdb
Digital Signature OK
Imports 22 libraries
Exports 0 functions
Resources 13 Resources
Sections 7 Sections

Version Information

CompanyName Microsoft Corporation
FileDescription Settings
FileVersion 10.0.19041.5438 (WinBuild.160101.0800)
InternalName Settings
LegalCopyright © Microsoft Corporation. All rights reserved.
OriginalFilename SystemSettings.exe
ProductName Microsoft® Windows® Operating System
ProductVersion 10.0.19041.5438
Translation 0x0409 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 14,875 bytes 15,360 bytes 5.95 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ AC1F1C1F437A9030D778126D3B99D3FE
.imrsiv 0x00005000 4 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
.rdata 0x00006000 7,634 bytes 7,680 bytes 4.49 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 3F8AE0E82379A64EA75E46C1DBFE8C8C
.data 0x00008000 2,264 bytes 512 bytes 0.72 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE E211E7243DF989FDD0ACC086BD7D6B04
.pdata 0x00009000 840 bytes 1,024 bytes 3.57 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 27B10AE19DAE951D181E75FB9B737AF7
.rsrc 0x0000a000 61,016 bytes 61,440 bytes 3.95 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 7B2B6BBE118EDB9E12DF9BEAE48AFD79
.reloc 0x00019000 60 bytes 512 bytes 0.75 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 76F59C92B8A1E3DC7FBDB4F82B9F59EF

Resource Analysis

Total Resources: 13 (60,172 bytes)
Resource Type Count Total Size Percentage
MUI 1 248 bytes
0.4%
WEVT_TEMPLATE 1 9,198 bytes
15.3%
RT_ICON 8 49,150 bytes
81.7%
RT_GROUP_ICON 1 118 bytes
0.2%
RT_VERSION 1 908 bytes
1.5%
RT_MANIFEST 1 550 bytes
0.9%

Certificate Chain Analysis

Certificate Information
Product Microsoft® Windows® Operating System
Description Settings
File Version 10.0.19041.5438 (WinBuild.160101.0800)
Original Name SystemSettings.exe
Signing Date 10:04 PM 01/22/2025 (135 days ago)
Verification Status Signed
Signers Microsoft Windows; Microsoft Windows Production PCA 2011; Microsoft Root Certificate Authority 2010
Counter Signers Microsoft Time-Stamp Service; Microsoft Time-Stamp PCA 2010; Microsoft Root Certificate Authority 2010
Internal Name Settings
Copyright © Microsoft Corporation. All rights reserved.
Certificate Chain Summary
Microsoft Windows #1 Primary
Validity Period: 2024-09-12 20:04:06 → 2025-09-11 20:04:06
Signature Algorithm: sha256RSA
Serial Number: 33 00 00 04 A7 04 3E E4 22 C8 34 FA FC 00 00 00 00 04 A7
Microsoft Windows Production PCA 2011 #2 Chain
Validity Period: 2011-10-19 18:41:42 → 2026-10-19 18:51:42
Signature Algorithm: sha256RSA
Serial Number: 61 07 76 56 00 00 00 00 00 08
Microsoft Time-Stamp Service #3 Chain
Validity Period: 2023-12-06 18:45:38 → 2025-03-05 18:45:38
Signature Algorithm: sha256RSA
Serial Number: 33 00 00 01 EC E0 2B A4 82 D0 91 52 80 00 01 00 00 01 EC
Microsoft Time-Stamp PCA 2010 #4 Chain
Validity Period: 2021-09-30 18:22:25 → 2030-09-30 18:32:25
Signature Algorithm: sha256RSA
Serial Number: 33 00 00 00 15 C5 E7 6B 9E 02 9B 49 99 00 00 00 00 00 15

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware