Gridinsoft Logo
File Icon

The 金融大师.exe File Analysis

Technical Analysis

File Name 金融大师.exe
File Type
PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows
Scanner Version 1.0.225.174
Database Version 2025-09-26 07:00:32 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
13,728,768
File Size (bytes)
2025-09-26
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
064fa34be5381c246670ce6a3c6e19ff
SHA1
43352a7c221d8d6a11e170eb93ee81c541888123
SHA256
488f5f361e13482dc12bb7ede24a6b82ce8a68746cec6d49905cd25597c7f2c5
SHA512
fd387085fcfafb8427edf17403dd6ba7f8aa3363d3226ea33d2279a5098605efce4106e34d0ffb53a4ab1b7ba46b99173853576fc30d49a954b38455919ae4c0
ImpHash
c36dcf754c40a603462159e6f2845adc

PE Analysis

Basic Information

Icon
Hash: 1916febfa964f69698cc096fb83269fd
Fuzzy: 97f0645be61d446dae882183c8de86b2
dHash: b2d4d4dacececc92
Image Base 0x00400000
Entry Point 0x033e860c
Compilation Time 2024-06-11 07:40:03
Checksum 0x00000000 (Actual: 0x00d1d544)
OS Version 5.1
PEiD Signatures PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows
Digital Signature No valid SignedData structure was found.
Imports 30 libraries
Exports 73 functions
Resources 1604 Resources
Sections 8 Sections

Version Information

Comments
CompanyName 杭州核新软件技术有限公司(Hexin)
FileDescription 同花顺金融分析平台
FileVersion 2019, 4, 3, 1
InternalName E02
LegalCopyright 版权所有 (C) 1995-2024
LegalTrademarks
OriginalFilename hexin.exe
PrivateBuild
ProductName 同花顺用户端主程序
ProductVersion 9,30,49,00
SpecialBuild
Translation 0x0804 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
0x00001000 21,549,056 bytes 8,241,664 bytes 8.00 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE DBD885AD553515C3D98B03924D291DA2
0x0148e000 4,259,840 bytes 1,184,256 bytes 8.00 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE C63F779C24A6D0516FF0FFF6F1E1A504
0x0189e000 475,136 bytes 70,144 bytes 7.99 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 34A6221CBAEDA62AEAF0CBD189693C77
0x01912000 11,677,696 bytes 1,182,720 bytes 8.00 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE BFDE135A29D418A134C1B5FB3C139072
0x02435000 1,531,904 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
.rsrc 0x025ab000 585,728 bytes 585,216 bytes 5.48 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ C89BC74AD165A94E7A504E247E82EF00
0x0263a000 7,909,376 bytes 207,872 bytes 8.00 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 9B1EAD686C3048CFA465F9B1B1681E70
.data 0x02dc5000 2,256,896 bytes 2,255,872 bytes 7.97 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 5AB8852C0DF1DA5B19014F4F86C52F27
Entropy Analysis Alert

6 section(s) with high entropy (≥7.5) detected - possible packing/encryption

Resource Analysis

Total Resources: 1604 (11,597,042 bytes)
Resource Type Count Total Size Percentage
GIF 46 37,270 bytes
0.3%
JPEG 1 5,731 bytes
0%
PNG 3 9,913 bytes
0.1%
WAVE 1 11,444 bytes
0.1%
RT_CURSOR 77 56,904 bytes
0.5%
RT_BITMAP 372 10,782,112 bytes
93%
RT_ICON 145 359,510 bytes
3.1%
RT_MENU 73 42,956 bytes
0.4%
RT_DIALOG 299 101,254 bytes
0.9%
RT_STRING 413 142,476 bytes
1.2%
RT_ACCELERATOR 5 568 bytes
0%
RT_RCDATA 1 35,908 bytes
0.3%
RT_GROUP_CURSOR 74 1,522 bytes
0%
RT_GROUP_ICON 86 2,532 bytes
0%
RT_VERSION 1 844 bytes
0%
RT_HTML 2 4,552 bytes
0%
RT_MANIFEST 2 1,403 bytes
0%
None 3 143 bytes
0%

Certificate Chain Analysis

No Digital Signatures

This file is not digitally signed.

Security Implications:
  • Cannot verify the publisher's identity
  • Increased security risk when running this file
  • May trigger security warnings on some systems

⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources

Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.

Your Score for
/

Gridinsoft Anti-Malware

Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware

Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!

Gridinsoft Anti-Malware