Gridinsoft Logo

The alist.exe File Analysis

Technical Analysis

File Name alist.exe
File Type
PE32+ executable (console) x86-64 (stripped to external PDB), for MS Windows
Scanner Version 1.0.220.174
Database Version 2025-07-14 01:00:17 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
91,961,856
File Size (bytes)
2025-07-14
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
b1461ffaf91362151db549dbe3ffdf5a
SHA1
6b382b60194655119167e7262ecd0d97b4da7239
SHA256
4fa87103a6317b3229811d16717d43ad35a9faeb7fdc91fcf9acc325b2b5ef4f
SHA512
8b06d3ee76487f331e2b6a254fa012a21006b2aee274198ed3a93d86d71462ae656f62f6e56aec7b66122ce2079d30d8723395de160ac6ff016012d1af0f1ede
ImpHash
1e5378534f99a560242e5afdc85ebd45

PE Analysis

Basic Information

Image Base 0x00400000
Entry Point 0x004014f0
Compilation Time 1970-01-01 00:00:00
Checksum 0x057be111 (Actual: 0x057c2fb8)
OS Version 6.1
PEiD Signatures PE32+ executable (console) x86-64 (stripped to external PDB), for MS Windows
Digital Signature No valid SignedData structure was found.
Imports 2 libraries
KERNEL32, msvcrt
Exports 10 functions
Resources 0 Resources
Sections 11 Sections

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 32,486,928 bytes 32,487,424 bytes 6.13 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_32BYTES 2BD08187CDC644963BCDE8D897AC627A
.data 0x01efd000 3,611,312 bytes 3,611,648 bytes 4.62 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_32BYTES 4CB57C4D4C81B5055E77A04B83F5AE22
.rdata 0x0226f000 54,166,272 bytes 54,166,528 bytes 6.28 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_32BYTES D8D893B7F94E054C9E7CCB22EC8D35F7
.pdata 0x05618000 888,924 bytes 889,344 bytes 6.16 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_4BYTES 83E131E67D742E0C31B859F4A79858A4
.xdata 0x056f2000 37,212 bytes 37,376 bytes 3.49 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_4BYTES 21AE48AA3ED271A8CAB7C03A6335ED93
.bss 0x056fc000 459,768 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_32BYTES D41D8CD98F00B204E9800998ECF8427E
.edata 0x0576d000 345 bytes 512 bytes 4.01 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_4BYTES A8C0A6E3B994C4A0EA2B3BCF945CA9E8
.idata 0x0576e000 6,152 bytes 6,656 bytes 4.62 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_4BYTES 32CB7FB9C24041F3EAA34D5C7CEECCED
.CRT 0x05770000 104 bytes 512 bytes 0.32 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_8BYTES 18549257125B43BD5CBEFB1C2E86EB31
.tls 0x05771000 16 bytes 512 bytes 0.00 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_8BYTES BF619EAC0CDF3F68D496EA9344137E8B
.reloc 0x05772000 759,876 bytes 760,320 bytes 5.46 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_4BYTES 1C962E36ABFE8DCC60C623F3830B42B2

Certificate Chain Analysis

Certificate Information
Certificate Chain Summary
Microsoft Code Signing PCA #1 Primary
Validity Period: 2007-08-22 22:31:02 → 2012-08-25 07:00:00
Signature Algorithm: 1.3.14.3.2.29
Serial Number: 2E AB 11 DC 50 FF 5C 9D CB C0
Microsoft Corporation #2 Chain
Validity Period: 2009-12-07 22:40:29 → 2011-03-07 22:40:29
Signature Algorithm: sha1RSA
Serial Number: 61 01 CF 3E 00 00 00 00 00 0F
Microsoft Timestamping PCA #3 Chain
Validity Period: 2006-09-16 01:04:47 → 2019-09-15 07:00:00
Signature Algorithm: sha1RSA
Serial Number: 6A 0B 99 4F C0 00 25 AB 11 DB 45 1F 58 7A 67 A2
Microsoft Time-Stamp Service #4 Chain
Validity Period: 2008-07-25 19:01:15 → 2013-07-25 19:11:15
Signature Algorithm: sha1RSA
Serial Number: 61 05 A2 30 00 00 00 00 00 08

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware