Gridinsoft Logo
File Icon

The aimp_5.40.2655_w64.exe (AIMP Setup) File Analysis

Technical Analysis

File Name aimp_5.40.2655_w64.exe
File Type
PE32+ executable (GUI) x86-64, for MS Windows
Scanner Version 1.0.210.174
Database Version 2025-03-06 13:00:38 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
18,425,808
File Size (bytes)
2025-03-06
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
3d65347371584023c9d0887e28b270f3
SHA1
239be2fb2fb05e2b40aba5559a6624678350ada8
SHA256
57eb6568286d59daee9ce3fdfc90db4278f709e27990b19704c7b2507aacc1cc
SHA512
758decfb041891bd878e6de845e11f67efe2d7f907b5778d8e6a39ea9daf6adac429c134c27839422abcd660a069e23b9f91c3dfc67266427499dd05b165fdd7
ImpHash
527a4fe33d5c96cdbf288cc354856125

PE Analysis

Basic Information

Icon
Hash: 91537593fafaac77f5d5cc19aedc31b7
Fuzzy: 313cc34a2f53b9e0e6d153d920ee01a1
dHash: f0e8ccd496ecf0b2
Image Base 0x00400000
Entry Point 0x008123d0
Compilation Time 2025-01-14 12:43:33
Checksum 0x0119e38b (Actual: 0x0119e38b)
OS Version 5.0
PEiD Signatures PE32+ executable (GUI) x86-64, for MS Windows
Digital Signature Chain verification from [email protected], CN=IP Izmaylov Artem Andreevich, O=IP Izmaylov Artem Andreevich, L=Tula, ST=Tula Oblast, C=RU (serial:2893703878802427746659492747, sha1:1e18b76e7832f103b16ae8aed5a5dcd16345cef8) failed: Unable to build a validation path for the certificate "Email Address: [email protected], Common Name: IP Izmaylov Artem Andreevich, Organization: IP Izmaylov Artem Andreevich, Locality: Tula, State/Province: Tula Oblast, Country: RU" - no issuer matching "Common Name: GlobalSign GCC R45 CodeSigning CA 2020, Organization: GlobalSign nv-sa, Country: BE" was found
Imports 11 libraries
Exports 2 functions
Resources 59 Resources
Sections 10 Sections

Version Information

Comments Made in Russia
CompanyName Artem Izmaylov
FileDescription AIMP Setup
FileVersion 5.4.0.2655
LegalCopyright Artem Izmaylov
ProductName AIMP
ProductVersion 5.4.0.2655
Translation 0x0419 0x04e3

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 4,339,072 bytes 4,339,200 bytes 5.80 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ C536217619A31BB17DAF6D825912D0D6
.data 0x00425000 458,040 bytes 458,240 bytes 5.15 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE BBE5EDB54E96CD0399C8B6BDEF10BB26
.bss 0x00495000 254,552 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
.idata 0x004d4000 18,090 bytes 18,432 bytes 4.21 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE B7DE9796EAC3401F7F96B8EEC495E3E3
.didata 0x004d9000 9,128 bytes 9,216 bytes 3.69 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE F1427BEE2AAF22C1271F530739AE349B
.edata 0x004dc000 110 bytes 512 bytes 1.30 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ F808AB67302338365A9F4C79CE4A3C6D
.tls 0x004dd000 632 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
.rdata 0x004de000 109 bytes 512 bytes 1.39 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ A698922C940E0B5FB1664E75A074C9EF
.pdata 0x004df000 227,112 bytes 227,328 bytes 6.38 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 632BD0ECF1BD65FBDFEF09F9F9E4FE86
.rsrc 0x00517000 13,362,632 bytes 13,362,688 bytes 7.99 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ BFDA8D5D02FBB41C3D86EA2C6A86C9A6
Entropy Analysis Alert

1 section(s) with high entropy (≥7.5) detected - possible packing/encryption

Resource Analysis

Total Resources: 59 (13,359,368 bytes)
Resource Type Count Total Size Percentage
RT_CURSOR 16 94,712 bytes
0.7%
RT_ICON 5 34,408 bytes
0.3%
RT_STRING 20 16,176 bytes
0.1%
RT_RCDATA 5 13,211,414 bytes
98.9%
RT_GROUP_CURSOR 10 284 bytes
0%
RT_GROUP_ICON 1 76 bytes
0%
RT_VERSION 1 632 bytes
0%
RT_MANIFEST 1 1,666 bytes
0%

Certificate Chain Analysis

Certificate Information
Product AIMP
Description AIMP Setup
File Version 5.4.0.2655
Signing Date 12:43 PM 01/14/2025 (142 days ago)
Verification Status Signed
Signers IP Izmaylov Artem Andreevich; GlobalSign GCC R45 CodeSigning CA 2020; GlobalSign Code Signing Root R45
Counter Signers Globalsign TSA for Advanced - G4 - 202311; GlobalSign Timestamping CA - SHA384 - G4; GlobalSign Root CA - R6
Copyright Artem Izmaylov
Certificate Chain Summary
IP Izmaylov Artem Andreevich #1 Primary
Validity Period: 2023-08-22 08:26:26 → 2026-11-08 12:04:55
Signature Algorithm: sha256RSA
Serial Number: 09 59 9D A1 98 AB 73 B3 9C E6 63 8B
Globalsign TSA for Advanced - G4 - 202311 #2 Chain
Validity Period: 2023-11-02 10:30:02 → 2034-12-04 10:30:02
Signature Algorithm: sha256RSA
Serial Number: 01 19 75 74 71 C9 92 D7 44 DF A5 96 EB B9 70 15
GlobalSign Timestamping CA - SHA384 - G4 #3 Chain
Validity Period: 2018-06-20 00:00:00 → 2034-12-10 00:00:00
Signature Algorithm: sha384RSA
Serial Number: 01 EC 1C 92 40 DE FD 2E 40 5D 7C 47 74
GlobalSign #4 Chain
Validity Period: 2014-12-10 00:00:00 → 2034-12-10 00:00:00
Signature Algorithm: sha384RSA
Serial Number: 45 E6 BB 03 83 33 C3 85 65 48 E6 FF 45 51

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

Chain verification from [email protected], CN=IP Izmaylov Artem Andreevich, O=IP Izmaylov Artem Andreevich, L=Tula, ST=Tula Oblast, C=RU (serial:2893703878802427746659492747, sha1:1e18b76e7832f103b16ae8aed5a5dcd16345cef8) failed: Unable to build a validation path for the certificate "Email Address: [email protected], Common Name: IP Izmaylov Artem Andreevich, Organization: IP Izmaylov Artem Andreevich, Locality: Tula, State/Province: Tula Oblast, Country: RU" - no issuer matching "Common Name: GlobalSign GCC R45 CodeSigning CA 2020, Organization: GlobalSign nv-sa, Country: BE" was found

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware