Gridinsoft Logo

The cloudflared-windows-amd64.exe File Analysis

Technical Analysis

File Name cloudflared-windows-amd64.exe
File Type
PE32+ executable (console) x86-64, for MS Windows
Scanner Version 1.0.218.174
Database Version 2025-06-16 19:00:22 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
66,954,169
File Size (bytes)
2025-06-16
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
685f299895f47deaa750354860e61162
SHA1
71c83ee1a9ee66320c20c4ccfc5362e230ccf473
SHA256
4e35933ff4861464d69379a22be22a197f7a9fba5f60b8b6189e96fdebccc0da
SHA512
edd32d416f759ea879e4b2d9a9b299e77ff28346d1fb3e9e9d76b68dc3a0e0a11b26dbafbd2f3ddaed93290b9f567312284456e8eb9774458cc95bb38c91392a
ImpHash
11e4a5596a0b35b3375f32759477f70e

PE Analysis

Basic Information

Image Base 0x00400000
Entry Point 0x004014e0
Compilation Time 1970-01-01 00:00:00
Checksum 0x03fe65e9 (Actual: 0x03fe613a)
OS Version 6.1
PEiD Signatures PE32+ executable (console) x86-64, for MS Windows
Digital Signature No valid SignedData structure was found.
Imports 2 libraries
KERNEL32, msvcrt
Exports 1 functions
Resources 0 Resources
Sections 20 Sections

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 12,322,288 bytes 12,322,304 bytes 6.12 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_32BYTES B8CE39B3FDABE75673DDDB0712A5EDAF
.data 0x00bc2000 723,552 bytes 723,968 bytes 5.24 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_32BYTES DAA9B7F2F6B2AA2B8BC9F80B1F8ACA2C
.rdata 0x00c73000 13,916,496 bytes 13,916,672 bytes 5.65 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_32BYTES 8B5131841B32DDD9EFE8816E860E775C
.pdata 0x019b9000 334,548 bytes 334,848 bytes 5.94 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_4BYTES 3F3DE58F77DA0D0720FB5C259D7FFB82
.xdata 0x01a0b000 804 bytes 1,024 bytes 3.43 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_4BYTES 82DB80B09CB534EBDD63E9536CBB28CB
.bss 0x01a0c000 7,921,780 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_32BYTES D41D8CD98F00B204E9800998ECF8427E
.edata 0x0219b000 78 bytes 512 bytes 0.93 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_4BYTES 6ADB5B335604F84C71ACBD22D7384210
.idata 0x0219c000 3,688 bytes 4,096 bytes 4.47 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_4BYTES 1708423D62320751380666A6F6431290
.CRT 0x0219d000 104 bytes 512 bytes 0.24 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_8BYTES 89733D0FEBB4AC875EFAD603002B28A7
.tls 0x0219e000 16 bytes 512 bytes 0.00 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_8BYTES BF619EAC0CDF3F68D496EA9344137E8B
.reloc 0x0219f000 282,180 bytes 282,624 bytes 5.44 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_4BYTES B6C2C479B2BDB5C5B4A4A72F87762374
/4 0x021e4000 496 bytes 512 bytes 1.64 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_16BYTES C96BCB64F94F527C0220DCFDCACB5DE0
/19 0x021e5000 11,026,265 bytes 11,026,432 bytes 6.12 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES 9D4C48FC75B8DB75E31BB4E3101311FC
/31 0x02c69000 4,097 bytes 4,608 bytes 4.46 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES 693D5718DEB6F408A2C7225EAC219E08
/45 0x02c6b000 4,416,972 bytes 4,417,024 bytes 6.04 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES 5B8111585570D20926E221226939D1F3
/57 0x030a2000 1,698,256 bytes 1,698,304 bytes 3.84 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_8BYTES C5E8A0A3FC5964C6F7CA60FD828FF3CF
/70 0x03241000 540 bytes 1,024 bytes 3.51 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES C9CF9FE1C33D3418E4AC4844B928A29E
/81 0x03242000 14,993,278 bytes 14,993,408 bytes 2.87 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES CA60C8D5766025D5608AD5388305B650
/92 0x0408f000 3,988,864 bytes 3,988,992 bytes 2.24 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES D03388281D35A85D582CDF3C28E115FF
/106 0x0445d000 48 bytes 512 bytes 0.85 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES 2BF2BE0DE07B71F8DD01BC6D9042B11A

Certificate Chain Analysis

No Digital Signatures

This file is not digitally signed.

Security Implications:
  • Cannot verify the publisher's identity
  • Increased security risk when running this file
  • May trigger security warnings on some systems

⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources

Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware