Gridinsoft Logo
File Icon

The OksanaMukha.exe File Analysis

Technical Analysis

File Name OksanaMukha.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.211.174
Database Version 2025-03-24 15:01:09 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
15,413,760
File Size (bytes)
2025-03-24
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
db45431d4b707e1b02b4f5d7db2aa2f7
SHA1
27b4fcd3f29f6169d0e054dc6c657be2afaa0de9
SHA256
3ae5aec1385972ab1a43721118387d400223eb0323d461d3fe02a491112e957e
SHA512
01769793c38b78a135a1b6ebdc8b539fbf345c3f4c56d16c611d2fba51a89b1699a4c842e686e6ed7ff06dee174be5ddd9540e9a5156a4344a9405cb11b2bb74
ImpHash
75b144e8ed4d3424e0c185c759f7cda9

PE Analysis

Basic Information

Icon
Hash: 7b6b56ed40fbbd8496c6bf0c78f1e848
Fuzzy: e7f20514f10ee1c730f144b2f49144e0
dHash: 513c9c4e94dcd890
Image Base 0x00400000
Entry Point 0x00b386dc
Compilation Time 1992-06-19 22:22:17
Checksum 0x00000000 (Actual: 0x00eb7517)
OS Version 1.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
Digital Signature No valid SignedData structure was found.
Imports 14 libraries
Exports 0 functions
Resources 621 Resources
Sections 8 Sections

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
CODE 0x00001000 7,567,160 bytes 7,567,360 bytes 6.48 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 166A6F453890B5CFF16694393CCFDFB2
DATA 0x00739000 38,172 bytes 38,400 bytes 4.90 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 4E4487291378983A0E35AF75FAB541F1
BSS 0x00743000 17,745 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
.idata 0x00748000 13,180 bytes 13,312 bytes 4.95 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE A2B83B48A7084AE8D568ED05B8821449
.tls 0x0074c000 16 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
.rdata 0x0074d000 24 bytes 512 bytes 0.20 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_SHARED|IMAGE_SCN_MEM_READ 6EF6D2F4902E096082140A83D9D0B3D2
.reloc 0x0074e000 485,308 bytes 485,376 bytes 6.63 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_SHARED|IMAGE_SCN_MEM_READ B110B6A05D5BDA2B9920966E536D8785
.rsrc 0x007c5000 7,307,776 bytes 7,307,776 bytes 4.98 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_SHARED|IMAGE_SCN_MEM_READ F3BE0A65C6CBF2E90D8D361CC62929AA
Entropy Analysis Alert

1 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 621 (7,260,848 bytes)
Resource Type Count Total Size Percentage
RT_CURSOR 52 16,008 bytes
0.2%
RT_BITMAP 186 69,764 bytes
1%
RT_ICON 2 1,616 bytes
0%
RT_DIALOG 1 82 bytes
0%
RT_STRING 76 57,830 bytes
0.8%
RT_RCDATA 251 7,114,474 bytes
98%
RT_GROUP_CURSOR 51 1,034 bytes
0%
RT_GROUP_ICON 2 40 bytes
0%

Certificate Chain Analysis

No Digital Signatures

This file is not digitally signed.

Security Implications:
  • Cannot verify the publisher's identity
  • Increased security risk when running this file
  • May trigger security warnings on some systems

⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources

Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware