The vpnly.exe (VPNLY Setup) File Analysis
Technical Analysis
| File Name | vpnly.exe |
| File Type |
PE32 executable (GUI) Intel 80386, for MS Windows
|
| Scanner Version | 1.0.220.174 |
| Database Version | 2025-07-12 13:00:17 UTC |
Clean File
No threats detected by our scanner
Scan Another File
File Identification
| Hash Type | Value | Action |
|---|---|---|
| MD5 |
38a558511369e58ad4a1350fc2c8ac93
|
|
| SHA1 |
fda8b554516cc8778968a4a8dea80057b13b5c38
|
|
| SHA256 |
3ebb325ad4f0d22eb6bbefad1e5df203e704c09396f804052078b383d95ba0b6
|
|
| SHA512 |
9e7a228fab16f342c7aee52a9dc9647cb5bded1ba08f2f2327cf23f73d7147a3475476bdef27f30dfab426e65c9c7c73bdcd3a4ab6677a4e73057b9c6c13e304
|
|
| ImpHash |
5a594319a0d69dbc452e748bcf05892e
|
PE Analysis
Basic Information
▼| Icon |
Hash: 2c8f98271ac2159c4bd1b860538ae10e
Fuzzy: d1390ad57affec3a3359e8fa0fc8cc09 dHash: e89639d4c6f2dc71 |
| Image Base | 0x00400000 |
| Entry Point | 0x004b5eec |
| Compilation Time | 2020-05-21 05:56:23 |
| Checksum | 0x05afcde5 (Actual: 0x05afcde5) |
| OS Version | 6.0 |
| PEiD Signatures |
PE32 executable (GUI) Intel 80386, for MS Windows
|
| Digital Signature | OK |
| Imports |
7 libraries
kernel32, comctl32, version, user32, oleaut32, netapi32, advapi32 |
| Exports | 3 functions |
| Resources | 25 Resources |
| Sections | 10 Sections |
Version Information
▼| Comments | This installation was built with Inno Setup. |
| CompanyName | VPNLY |
| FileDescription | VPNLY Setup |
| FileVersion | |
| LegalCopyright | |
| OriginalFileName | |
| ProductName | VPNLY |
| ProductVersion | 1.0.14.16 |
| Translation | 0x0000 0x04b0 |
PE Sections
▼| Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
|---|---|---|---|---|---|---|
.text |
0x00001000 |
734,724 bytes | 735,232 bytes | 6.35 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
364BC619A502D7F0A97ABA31E34B82D2 |
.itext |
0x000b5000 |
5,764 bytes | 6,144 bytes | 5.97 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
282B489EAC439B258C98EC516C03C2CD |
.data |
0x000b7000 |
14,244 bytes | 14,336 bytes | 5.04 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
342785CF6BA6DE905CA393413E77B906 |
.bss |
0x000bb000 |
28,064 bytes | 0 bytes | 0.00 (Normal) |
IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
D41D8CD98F00B204E9800998ECF8427E |
.idata |
0x000c2000 |
3,894 bytes | 4,096 bytes | 4.90 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
A73D686F1E8B9BB06EC767721135E397 |
.didata |
0x000c3000 |
420 bytes | 512 bytes | 2.76 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
41B8CE23DD243D14BEEBC71771885C89 |
.edata |
0x000c4000 |
154 bytes | 512 bytes | 1.87 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
43F8D31E224BBD887C839F21E694B898 |
.tls |
0x000c5000 |
24 bytes | 0 bytes | 0.00 (Normal) |
IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
D41D8CD98F00B204E9800998ECF8427E |
.rdata |
0x000c6000 |
93 bytes | 512 bytes | 1.38 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
8F2F090ACD9622C88A6A852E72F94E96 |
.rsrc |
0x000c7000 |
424,052 bytes | 424,448 bytes | 3.02 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
94400AD0AB1B5B3E0379FD12DC1C3ED6 |
Resource Analysis
▼| Resource Type | Count | Total Size | Percentage |
|---|---|---|---|
| RT_ICON | 8 | 410,464 bytes | |
| RT_STRING | 11 | 8,040 bytes | |
| RT_RCDATA | 3 | 768 bytes | |
| RT_GROUP_ICON | 1 | 118 bytes | |
| RT_VERSION | 1 | 1,412 bytes | |
| RT_MANIFEST | 1 | 1,830 bytes |
Certificate Chain Analysis
▼Certificate Information
| Product | VPNLY |
| Description | VPNLY Setup |
| Signing Date | 08:23 AM 05/23/2025 (454 days ago) |
| Verification Status | Signed |
| Signers | Free VPN Unlimited AG; GlobalSign GCC R45 EV CodeSigning CA 2020; GlobalSign Code Signing Root R45 |
| Counter Signers | Globalsign TSA for CodeSign1 - R6; GlobalSign Timestamping CA - SHA384 - G4; GlobalSign Root CA - R6 |
Certificate Chain Summary
77 BD 0E 05 B7 59 0B B6 1D 47 61 53 1E 3F 75 ED72 E0 A0 08 B6 EC D9 F0 3A 36 44 7801 00 0B 20 05 B3 94 07 62 DB 3E 36 79 94 9B A901 EC 1C 92 40 DE FD 2E 40 5D 7C 47 7445 E6 BB 03 83 33 C3 85 65 48 E6 FF 45 51✓ This file has been digitally signed and the certificate chain has been verified
- The signature ensures file integrity and authenticity from the publisher
- Timestamping proves when the signature was applied
Certificate Verification Status
OK
Remember: This is Result of Online Virus Scanner
Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:
Download Anti-Malware
Keep Your System Protected
This file appears clean, but regular security maintenance is important
-
1
Weekly Quick Scans: Set a reminder to run a scan every Sunday. Most infections are caught within the first week, so regular checks give you peace of mind.
-
2
Update Everything: Those annoying update popups exist for a reason — they patch security holes. Windows, browsers, Adobe, Java — keep them all current.
-
3
Download Smart: Stick to official websites and app stores. If a "free" version of paid software sounds too good to be true, it probably comes with unwanted extras.
-
4
Think Before You Click: Malware loves email attachments and "urgent" links. Even if an email looks like it's from your bank or a friend, verify suspicious requests through a different channel.
Leave a Comment
Gridinsoft Anti-Malware
Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware
Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!