Gridinsoft Logo
File Icon

The NAMECONTROLSERVER.EXE (Microsoft Office Contact Retriever) File Analysis

Technical Analysis

File Name NAMECONTROLSERVER.EXE
File Type
PE32+ executable (GUI) x86-64, for MS Windows
Scanner Version 1.0.247.174
Database Version 2026-06-13 17:00:27 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
150,328
File Size (bytes)
2026-06-13
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
0f2707cf257cdd0305cd550901367855
SHA1
d69b563280f6d0803b6e191c46227222d8845447
SHA256
305086c067ebb8e31d3bf0427749a539e177487324752154c7c37a2bad037655
SHA512
5cd17ad632f61572ce659143c4d5849ccae81fbb17850bba91aad3e705c1adb0263b6c80925230959e60ae4318a3be86bc25e93814a3f732c558fd7d9bdbb0b4
ImpHash
87a10a427529001b8f8906b85a78ccc8

PE Analysis

Basic Information

Icon
Hash: f374c7c0e6092340e7351188a32d6a88
Fuzzy: ef71e179a2287507cb102b6057cfb659
dHash: 49f6a9b9b3b0ba00
Image Base 0x140000000
Entry Point 0x14000efa0
Compilation Time 2026-06-06 09:59:42
Checksum 0x0002bb7d (Actual: 0x0002bb7d)
OS Version 6.1
PEiD Signatures PE32+ executable (GUI) x86-64, for MS Windows
PDB Path D:\dbs\el\omr\Target\x64\ship\postc2r\x-none\namecontrolserver.pdbb000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
Digital Signature OK
Imports 12 libraries
Exports 0 functions
Resources 16 Resources
Sections 8 Sections

Version Information

CompanyName Microsoft Corporation
FileDescription Microsoft Office Contact Retriever
FileVersion 16.0.20026.20168
InternalName NameControlServer
LegalTrademarks1 Microsoft® is a registered trademark of Microsoft Corporation.
LegalTrademarks2 Windows® is a registered trademark of Microsoft Corporation.
OriginalFilename NameControlServer.Exe
ProductName Microsoft Office
ProductVersion 16.0.20026.20168
Translation 0x0000 0x04e4

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 62,524 bytes 62,976 bytes 6.21 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 37F6900F72CC919CE75BBDD6F38FDC50
.rdata 0x00011000 28,025 bytes 28,160 bytes 4.26 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ F3A559E2798EDFDE12EE2CD2042EA2A4
.data 0x00018000 8,160 bytes 6,144 bytes 4.06 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 940F95072C0DD3320F4B1D2D33255C14
.pdata 0x0001a000 3,144 bytes 3,584 bytes 4.39 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 321477FAF6D7309B9FD1FF800E00FA6B
.didat 0x0001b000 680 bytes 1,024 bytes 2.10 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE E345C53C8B1BA0EB0F31677023FACAA6
.c2r 0x0001c000 316 bytes 512 bytes 2.12 (Normal) IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 7654323BB7346065DFD3BBDAC278F038
.rsrc 0x0001d000 23,876 bytes 24,064 bytes 5.02 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ A392A6FD1D7D21A95B9FDC9067213CCD
.reloc 0x00023000 1,032 bytes 1,536 bytes 4.29 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ E9962C43037A72AC34CA0629F19F39C9

Resource Analysis

Total Resources: 16 (22,882 bytes)
Resource Type Count Total Size Percentage
REGISTRY 2 842 bytes
3.7%
TYPELIB 1 3,856 bytes
16.9%
RT_ICON 9 14,696 bytes
64.2%
RT_STRING 1 66 bytes
0.3%
RT_GROUP_ICON 1 132 bytes
0.6%
RT_VERSION 1 2,204 bytes
9.6%
RT_MANIFEST 1 1,086 bytes
4.7%

Certificate Chain Analysis

Certificate Information
Product Microsoft Office
Description Microsoft Office Contact Retriever
File Version 16.0.20026.20168
Original Name NameControlServer.Exe
Signing Date 10:49 AM 06/06/2026 (7 days ago)
Verification Status Signed
Signers Microsoft Corporation; Microsoft Windows Code Signing PCA 2024; Microsoft Root Certificate Authority 2010
Counter Signers Microsoft Time-Stamp Service; Microsoft Time-Stamp PCA 2010; Microsoft Root Certificate Authority 2010
Internal Name NameControlServer
Certificate Chain Summary
Microsoft Windows Code Signing PCA 2024 #1 Primary
Validity Period: 2024-08-08 21:36:23 → 2035-06-23 22:04:01
Signature Algorithm: sha384RSA
Serial Number: 33 00 00 00 1C 48 9F 81 DF A1 B0 B7 77 00 00 00 00 00 1C
Microsoft Corporation #2 Chain
Validity Period: 2026-04-23 22:46:43 → 2027-04-21 22:46:43
Signature Algorithm: sha384RSA
Serial Number: 33 00 00 01 4D 67 F3 0E 1C 99 8F B5 78 00 00 00 00 01 4D
Microsoft Time-Stamp Service #3 Chain
Validity Period: 2026-02-19 19:39:54 → 2027-05-17 19:39:54
Signature Algorithm: sha256RSA
Serial Number: 33 00 00 02 21 33 C0 35 FB D2 0F 21 A4 00 01 00 00 02 21
Microsoft Time-Stamp PCA 2010 #4 Chain
Validity Period: 2021-09-30 18:22:25 → 2030-09-30 18:32:25
Signature Algorithm: sha256RSA
Serial Number: 33 00 00 00 15 C5 E7 6B 9E 02 9B 49 99 00 00 00 00 00 15
Microsoft Code Signing PCA 2024 #5 Chain
Validity Period: 2024-08-08 20:54:18 → 2036-03-22 22:13:04
Signature Algorithm: sha384RSA
Serial Number: 33 00 00 00 39 3B B6 37 19 BF 06 1D 67 00 00 00 00 00 39
Microsoft Corporation #6 Chain
Validity Period: 2025-11-13 19:12:15 → 2026-11-10 19:12:15
Signature Algorithm: sha384RSA
Serial Number: 33 00 00 00 B9 77 D5 EB AF DB 70 7B 64 00 00 00 00 00 B9
Microsoft Time-Stamp Service #7 Chain
Validity Period: 2026-02-19 19:40:07 → 2027-05-17 19:40:07
Signature Algorithm: sha256RSA
Serial Number: 33 00 00 02 29 0E D5 64 2A B4 97 F2 1A 00 01 00 00 02 29

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. 1
    Weekly Quick Scans: Set a reminder to run a scan every Sunday. Most infections are caught within the first week, so regular checks give you peace of mind.
  2. 2
    Update Everything: Those annoying update popups exist for a reason — they patch security holes. Windows, browsers, Adobe, Java — keep them all current.
  3. 3
    Download Smart: Stick to official websites and app stores. If a "free" version of paid software sounds too good to be true, it probably comes with unwanted extras.
  4. 4
    Think Before You Click: Malware loves email attachments and "urgent" links. Even if an email looks like it's from your bank or a friend, verify suspicious requests through a different channel.
Proactive Protection
This file looks clean right now, but that doesn't mean you should let your guard down. New malware appears daily, and even legit files can be compromised after download. When in doubt, verify the source and check for a digital signature.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.

Gridinsoft Portal
Signed in via Gridinsoft Portal · View profile
Your Score for

Gridinsoft Anti-Malware

Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware

Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!

Gridinsoft Anti-Malware