Gridinsoft Logo
File Icon

The Adjprog.exe (Adjustment program for EPSON Inkjet Printer / Scanner) File Analysis

Technical Analysis

File Name Adjprog.exe
File Type
Win32 EXE
Magic Bytes PE32 executable (GUI) Intel 80386, for MS Windows
SSDEEP Hash
98304:RlGt7aIUSZjWzm7jSclBZtMr7J0r4aT+iLch0tI:RlGIIUeom7jSclC0/TchI
Scanner Version 1.0.198.174
Database Version 2024-11-30 15:00:40 UTC

Suspicious File Detected

Detected by 15 security engines - requires caution

This file requires additional checking for potential threats. Based on suspicious indicators, we will soon add it to our virus database.
24%
Detection Rate
5,718,016
File Size (bytes)
15/63
Engines Detected
2024-11-30
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
f9955e6618c907fe349a5b09c9611c84
SHA1
c00706d3ba02d41373481c71e14b6de71d2901d0
SHA256
5b3354069fd3b79f28fdd36507ffc0f3e2422b0b9b2f6ff878ec8e180b8a9a2c
SHA512
7384f77c0fbd96a42baccad4de110975cde778b5b7754e57e155a0e03612c853854740a9f19f7dac7436464eeaed56a5a98ca9409668236ee58264a6d3f93673
ImpHash
806d0bf83c77663d13165a7cf74a757a

Security Engines with Detections (15 of 63)

Lionic
Trojan.Win32.Generic.4!c Malicious
Skyhigh
BehavesLike.Win32.Generic.th Malicious
McAfee
GenericRXAA-AA!F9955E6618C9 Malicious
APEX
Malicious Malicious
ClamAV
Win.Dropper.Genericrxas-9853841-0 Malicious
Trapmine
malicious.moderate.ml.score Malicious
Ikarus
Packed.Win32.Krap Malicious
Jiangmin
Trojan.Reconyc.hrm Malicious
Webroot
W32.Dropper.Gen Malicious
Google
Detected Malicious
Antiy-AVL
Trojan/Win32.Reconyc Malicious
Zoner
Trojan.Win32.91531 Malicious
Rising
Downloader.Reconyc!8.4D4A (RDMK:cmRtazqN/kF11BTd2B+NfKX56y4O) Malicious
SentinelOne
Static AI - Suspicious PE Malicious
Fortinet
W32/PossibleThreat Malicious
48 engines reported no threats - Only engines with detections are shown above for clarity

PE Analysis

Basic Information

Icon
Hash: 71cebf069993990ed5d14e7ef419091f
Fuzzy: 0e7429eaf47953a7cb95a5ae950d8ead
dHash: f8c6ce4666badcf2
Image Base 0x00400000
Entry Point 0x0055f885
Compilation Time 2015-01-28 08:27:22
Checksum 0x002b4a47 (Actual: 0x00578904)
OS Version 4.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
Digital Signature No valid SignedData structure was found.
Imports 12 libraries
Exports 0 functions
Resources 176 Resources
Sections 9 Sections

Version Information

FileDescription Adjustment program for EPSON Inkjet Printer / Scanner
FileVersion 1, 0, 0, 0
InternalName AdjProg
LegalCopyright Copyright (C) SEIKO EPSON CORPORATION 2002-2007. All rights reserved.
OriginalFilename AdjProg.EXE
ProductName Adjustment program for EPSON inkjet printer
ProductVersion 1, 0, 0, 0
Translation 0x0411 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.textbss 0x00001000 2,953,216 bytes 2,949,272 bytes 5.93 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE A565A32C07D1B289A31BC8511AD796EA
.text 0x002d2000 8,192 bytes 8,192 bytes 4.63 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE B34387A7AD097671932FE024C71C4F3D
.data 0x002d4000 1,667,072 bytes 1,667,072 bytes 7.88 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE F81446367FB0D209E7960455AB2234F4
.idata 0x0046b000 4,096 bytes 4,096 bytes 1.16 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 92A160B6317AA41E0FAC310BE42B6044
.rsrc 0x0046c000 16,384 bytes 16,384 bytes 3.40 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ B4584FC6210A93F6B782E4BBB8538D31
.Silvana 0x00470000 4,096 bytes 4,096 bytes 0.44 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 5EACFE37C104B92A7846C66F4883C958
.MaThiO 0x00471000 8,646,656 bytes 4,096 bytes 1.57 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D78CC83E7EB26C41F2F3FE96A0CB7389
ZProtect 0x00cb0000 1,048,576 bytes 1,048,576 bytes 4.19 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE C6FBCA10A3EE9CBC26D7A3413C57EE3B
.mackt 0x00db0000 8,192 bytes 8,192 bytes 4.86 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 222F605AB97B06955AF575BC49FF0784
Entropy Analysis Alert

1 section(s) with high entropy (≥7.5) detected - possible packing/encryption

Resource Analysis

Total Resources: 176 (123,900 bytes)
Resource Type Count Total Size Percentage
RT_CURSOR 16 4,800 bytes
3.9%
RT_BITMAP 2 508 bytes
0.4%
RT_ICON 1 3,240 bytes
2.6%
RT_DIALOG 123 110,284 bytes
89%
RT_STRING 14 3,718 bytes
3%
RT_GROUP_CURSOR 15 314 bytes
0.3%
RT_GROUP_ICON 1 20 bytes
0%
RT_VERSION 1 892 bytes
0.7%
RT_MANIFEST 1 86 bytes
0.1%
None 2 38 bytes
0%

Certificate Chain Analysis

Certificate Information
Product Adjustment program for EPSON inkjet printer
Description Adjustment program for EPSON Inkjet Printer / Scanner
File Version 1, 0, 0, 0
Original Name AdjProg.EXE
Internal Name AdjProg
Copyright Copyright (C) SEIKO EPSON CORPORATION 2002-2007. All rights reserved.

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
15 antivirus engines detected potential threats. This could be a false positive, especially for system tools or packed software. Verify the file source and check if it's digitally signed by a trusted publisher.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware