The PCTriage.exe (Node.js JavaScript Runtime) File Analysis
Technical Analysis
| File Name | PCTriage.exe |
| File Type |
PE32+ executable (console) x86-64, for MS Windows
|
| Scanner Version | 1.0.234.174 |
| Database Version | 2026-01-16 16:00:22 UTC |
Clean File
No threats detected by our scanner
Scan Another File
File Identification
| Hash Type | Value | Action |
|---|---|---|
| MD5 |
f7855fea77676dd37fe88e4218438549
|
|
| SHA1 |
a4caf9438f0bfa5d7b9d6fd46f5fe84be70d59cc
|
|
| SHA256 |
5623ef3b6dc13aa914f2bbe021a4802ccd99e9be7ed8a9f26a51e3b126678598
|
|
| SHA512 |
a38804734d3ea9f13d77ad33c2befd15b6d3af1b3602e60ef5ac9756d70272e24f5deac9a26319fd3cb086b99585ed4c5f3f8e0004c43dde022d2a3d10396238
|
|
| ImpHash |
66b10d8b5718b0fd6fb4865843d44280
|
PE Analysis
Basic Information
▼| Icon |
Hash: 5b68da4010f12363d151f409ceb33d34
Fuzzy: e487424e8b5cee3808f28e6462b06171 dHash: 70f8bcf8f8f2f070 |
| Image Base | 0x140000000 |
| Entry Point | 0x1410ac2f8 |
| Compilation Time | 2022-07-08 23:26:58 |
| Checksum | 0x0226b7f7 (Actual: 0x0226b7f7) |
| OS Version | 6.0 |
| PEiD Signatures |
PE32+ executable (console) x86-64, for MS Windows
|
| PDB Path | C:\Users\runneradmin\AppData\Local\Temp\pkg.d7c6a10fb0263a69b4596321\node\out\Release\node.pdb |
| Digital Signature | OK |
| Imports | 11 libraries |
| Exports | 17293 functions |
| Resources | 9 Resources |
| Sections | 7 Sections |
Version Information
▼| CompanyName | Node.js |
| ProductName | Node.js |
| FileDescription | Node.js JavaScript Runtime |
| FileVersion | 16.16.0 |
| ProductVersion | 16.16.0 |
| OriginalFilename | node.exe |
| InternalName | node |
| LegalCopyright | Copyright Node.js contributors. MIT license. |
| Translation | 0x0409 0x04b0 |
PE Sections
▼| Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
|---|---|---|---|---|---|---|
.text |
0x00001000 |
17,792,064 bytes | 17,792,512 bytes | 6.46 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
7FF811E53E91692C74554CB15F627F2E |
.rdata |
0x010f9000 |
15,697,348 bytes | 15,697,408 bytes | 6.21 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
00E05BBFB79C8C0AD351B0BC1D2FDA5D |
.data |
0x01ff2000 |
2,984,236 bytes | 186,880 bytes | 3.50 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
D2D86D1A7FD7661DE7074D191730E9BE |
.pdata |
0x022cb000 |
841,896 bytes | 842,240 bytes | 6.78 (Compressed) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
7C7DD899FC914D0919CF1EB2BEF4E7FB |
_RDATA |
0x02399000 |
244 bytes | 512 bytes | 2.88 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
27931C106C58FBE03BB12872283529B7 |
.rsrc |
0x0239a000 |
141,944 bytes | 142,336 bytes | 6.16 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
6BB4493027C58EEED89B1869F5855775 |
.reloc |
0x023bd000 |
115,492 bytes | 115,712 bytes | 5.49 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
81BE29A4AC9AA11476A8FAE36BA3EE7A |
Entropy Analysis Alert
1 section(s) with elevated entropy (≥6.5) - possible compression
Resource Analysis
▼| Resource Type | Count | Total Size | Percentage |
|---|---|---|---|
| RT_ICON | 6 | 139,730 bytes | |
| RT_GROUP_ICON | 1 | 90 bytes | |
| RT_VERSION | 1 | 744 bytes | |
| RT_MANIFEST | 1 | 822 bytes |
Certificate Chain Analysis
▼Certificate Information
| Product | Node.js |
| Description | Node.js JavaScript Runtime |
| File Version | 16.16.0 |
| Original Name | node.exe |
| Signing Date | 02:30 PM 11/20/2025 (57 days ago) |
| Verification Status | Signed |
| Signers | COLSOF S.A.S; GlobalSign GCC R45 EV CodeSigning CA 2020; GlobalSign Code Signing Root R45 |
| Counter Signers | Globalsign TSA for Advanced - G4; GlobalSign Timestamping CA - SHA384 - G4; GlobalSign Root CA - R6 |
| Internal Name | node |
| Copyright | Copyright Node.js contributors. MIT license. |
Certificate Chain Summary
76 53 FE AC 75 46 48 93 F5 E5 D7 4A 48 3A 4E F877 BD 0E 05 B7 59 0B B6 1D 47 61 53 1E 3F 75 ED6D D0 DE C5 C2 5C DD F1 9E 15 FE 1801 03 32 E1 65 BF 9B 78 43 E0 99 75 94 63 77 0B01 EC 1C 92 40 DE FD 2E 40 5D 7C 47 7445 E6 BB 03 83 33 C3 85 65 48 E6 FF 45 51✓ This file has been digitally signed and the certificate chain has been verified
- The signature ensures file integrity and authenticity from the publisher
- Timestamping proves when the signature was applied
Certificate Verification Status
OK
Remember: This is Result of Online Virus Scanner
Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:
Download Anti-Malware
Keep Your System Protected
This file appears clean, but regular security maintenance is important
-
Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
-
Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
-
Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
-
Email Security: Be cautious with email attachments and links, even from known contacts.
Leave a Comment
Gridinsoft Anti-Malware
Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware
Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!