Gridinsoft Logo
File Icon

The PER_007_007_006.exe File Analysis

Technical Analysis

File Name PER_007_007_006.exe
File Type
Win32 EXE
Magic Bytes PE32 executable (GUI) Intel 80386, for MS Windows
SSDEEP Hash
98304:DP7LoSAd2radpzUCO2OoMY9GW1VebUrnya44DfZnlZb/UupS8fJA:jnoMYG9wQU13nlZb/UUSw+
Scanner Version 1.0.220.174
Database Version 2025-07-11 15:00:19 UTC

Suspicious File Detected

Detected by 8 security engines - requires caution

This file requires additional checking for potential threats. Based on suspicious indicators, we will soon add it to our virus database.
11%
Detection Rate
5,178,640
File Size (bytes)
8/72
Engines Detected
2025-07-11
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
5f8921c8a4045e09d493f54ae791b714
SHA1
0b15496f6379fc3dfdc32ffb7c672c4ce7d4d296
SHA256
2efe7f7a6d9eebf1f4cd2420b8c69195a928536e892ebd7972889f88c76f69e1
SHA512
69f660ff7c96a66e4de0421c6159e04b711f08d71279f7d60b2733d702e8c6a94a82b66c2d95bc5cb030559a319c126b23e2ad1c259a580f4551ec6e68de31a5
ImpHash
0b53c587d92252505a138d0d9f3f823f

Security Engines with Detections (8 of 72)

Bkav
W32.AIDetectMalware Malicious
Elastic
malicious (moderate confidence) Malicious
Cylance
Unsafe Malicious
APEX
Malicious Malicious
Trapmine
malicious.high.ml.score Malicious
Ikarus
Trojan.Python.Spy Malicious
Google
Detected Malicious
DeepInstinct
MALICIOUS Malicious
64 engines reported no threats - Only engines with detections are shown above for clarity

PE Analysis

Basic Information

Icon
Hash: abf3b16af33f2d05af7d284123c6efe7
Fuzzy: 07839c3d8341313a5e0ac79ff4e7cd3c
dHash: 9e78f286e67a9e4e
Image Base 0x00400000
Entry Point 0x00411cbc
Compilation Time 2016-02-03 19:38:31
Checksum 0x00000000 (Actual: 0x004f6159)
OS Version 5.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
PDB Path d:\Projects\WinRAR\SFX\build\sfxzip32\Release\sfxzip.pdb
Digital Signature No valid SignedData structure was found.
Imports 1 libraries
KERNEL32
Exports 0 functions
Resources 20 Resources
Sections 4 Sections

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 117,353 bytes 117,760 bytes 6.66 (Compressed) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 4F24BB384B98F9672B0BFB7DC8F77C20
.rdata 0x0001e000 20,163 bytes 20,480 bytes 5.06 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 723746437F3E53989C2332043DD53132
.data 0x00023000 192,680 bytes 5,632 bytes 3.53 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 2D7DE81CFCA0EE24A02A8121659C4F6F
.rsrc 0x00053000 17,448 bytes 17,920 bytes 4.75 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ E0F7C28C20DE7837CB88056EF4CED775
Entropy Analysis Alert

1 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 20 (16,163 bytes)
Resource Type Count Total Size Percentage
RT_BITMAP 1 2,998 bytes
18.5%
RT_ICON 1 4,264 bytes
26.4%
RT_DIALOG 6 2,916 bytes
18%
RT_STRING 10 4,090 bytes
25.3%
RT_GROUP_ICON 1 20 bytes
0.1%
RT_MANIFEST 1 1,875 bytes
11.6%

Certificate Chain Analysis

No Digital Signatures

This file is not digitally signed.

Security Implications:
  • Cannot verify the publisher's identity
  • Increased security risk when running this file
  • May trigger security warnings on some systems

⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources

Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
8 antivirus engines detected potential threats. This could be a false positive, especially for system tools or packed software. Verify the file source and check if it's digitally signed by a trusted publisher.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware