Gridinsoft Logo
File Icon

The scrcpy.exe File Analysis

Technical Analysis

File Name scrcpy.exe
File Type
PE32+ executable (console) x86-64, for MS Windows
Scanner Version 1.0.216.174
Database Version 2025-05-11 12:00:19 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
693,766
File Size (bytes)
2025-05-11
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
00fa7e004a9e096505ea9f2ba95d5331
SHA1
3268b4460da4ea1f80c14d64766c1b8d94ad7552
SHA256
2da2bbd1469f03e4dd00dfdbfeaaa6b2379035aa54821840092a672db4313258
SHA512
02ebbf74eead7c7204b9ec757d381089da7eb208d678722f56dbbc10987dcb67cb3d19c40d3426a556083370b1ae192ed81cb97821796ce84ab044ff41c2b19e
ImpHash
c3907470575c1b4a2687269b0c5b867c

PE Analysis

Basic Information

Icon
Hash: 8f56cefb650cdaf675b0664659892a46
Fuzzy: 5e896eec0c04efabac2fd91d509c1d37
dHash: d4aad4e8ccd4e868
Image Base 0x140000000
Entry Point 0x1400013f0
Compilation Time 2024-08-02 20:39:44
Checksum 0x000a9ce2 (Actual: 0x000a9ce2)
OS Version 4.0
PEiD Signatures PE32+ executable (console) x86-64, for MS Windows
Digital Signature No valid SignedData structure was found.
Imports 10 libraries
SDL2, avcodec-61, avformat-61, avutil-59, swresample-5, libusb-1, KERNEL32, msvcrt, SHELL32, WS2_32
Exports 0 functions
Resources 4 Resources
Sections 22 Sections

Version Information

FileDescription Display and control your Android device
InternalName scrcpy
LegalCopyright Romain Vimont, Genymobile
OriginalFilename scrcpy.exe
ProductName scrcpy
ProductVersion 2.6.1
Translation 0x0409 0x04e4

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 175,720 bytes 176,128 bytes 6.23 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 4D92F83DA73E80AB58E704BF67022F4F
.data 0x0002c000 912 bytes 1,024 bytes 1.64 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 56FD33B692844C9649ED336137F80D61
.rdata 0x0002d000 56,704 bytes 56,832 bytes 5.26 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 868FEBEE0881A507C11F5D1388341545
.pdata 0x0003b000 3,192 bytes 3,584 bytes 4.91 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 0C48F6408636CC2984EB91599DB0FF4E
.xdata 0x0003c000 3,484 bytes 3,584 bytes 4.44 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 3FE2D7B5B8EDCD42ED21507A9BB53704
.bss 0x0003d000 529,856 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
.idata 0x000bf000 11,152 bytes 11,264 bytes 4.67 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 4F1A6AA4DBCCA4ACD876F101836B1862
.CRT 0x000c2000 96 bytes 512 bytes 0.30 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 0C9D0B9D0F8D89709BD4DB09B4212A96
.tls 0x000c3000 16 bytes 512 bytes 0.00 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE BF619EAC0CDF3F68D496EA9344137E8B
.rsrc 0x000c4000 10,288 bytes 10,752 bytes 7.49 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ D76342E6DC2FA952D6CB2634055148E1
.reloc 0x000c7000 1,092 bytes 1,536 bytes 4.44 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 212306170A1E472FFA4B6CC96BFD5E33
/4 0x000c8000 2,416 bytes 2,560 bytes 1.92 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 2C7170ABC7D068ACC1A37F735F127EDE
/19 0x000c9000 124,647 bytes 124,928 bytes 5.79 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 729C81B8B2F2907C0F0BF960CD709EDC
/31 0x000e8000 21,105 bytes 21,504 bytes 4.81 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 6A69D5D93F1A2C9902C369B5EC9FC8F9
/45 0x000ee000 59,402 bytes 59,904 bytes 5.05 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ FECDEFEB91B7BF6D87FD7886F33E2894
/57 0x000fd000 9,072 bytes 9,216 bytes 4.67 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 311DD7328CEE4F61B60C2B69D595C429
/70 0x00100000 1,116 bytes 1,536 bytes 4.09 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 9D5644EF3E212768894DD5FB3116DE26
/81 0x00101000 1,157 bytes 1,536 bytes 1.40 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 94F3CEAEAFB4589487893D580300FC9F
/92 0x00102000 96 bytes 512 bytes 0.20 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ A0D92BFA8C4D5994936E2A056E640BF2
/106 0x00103000 8,360 bytes 8,704 bytes 4.66 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 6B81FA020069683DA1F5A9753548AAC6
/122 0x00106000 73,515 bytes 73,728 bytes 6.00 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ BB65A5EA4346536786FEF170C978A28A
/138 0x00118000 2,608 bytes 3,072 bytes 5.68 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ DE0457839BE2923E3B0C324C21B0A146
Entropy Analysis Alert

1 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 4 (9,969 bytes)
Resource Type Count Total Size Percentage
RT_ICON 1 8,818 bytes
88.5%
RT_GROUP_ICON 1 20 bytes
0.2%
RT_VERSION 1 636 bytes
6.4%
RT_MANIFEST 1 495 bytes
5%

Certificate Chain Analysis

No Digital Signatures

This file is not digitally signed.

Security Implications:
  • Cannot verify the publisher's identity
  • Increased security risk when running this file
  • May trigger security warnings on some systems

⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources

Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware