Gridinsoft Logo
File Icon

The Setup.exe (PDF Reader) File Analysis

Technical Analysis

File Name Setup.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.196.174
Database Version 2024-11-09 01:00:22 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
8,719,568
File Size (bytes)
2024-11-09
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
b43b96e4483dce09976dc250f87ecf1a
SHA1
4290076db1e87a46b73e8391186025f1f5b492bb
SHA256
5eaf95ad5163607ea220e439f13e58ae1bd9b408d94e06d5d721e8daca911c12
SHA512
383b723d2d547f775a661bf6990e834b0233849822c7cbc3f0aaf0f276b1c05b0f7bde754dae3da133f7a8aae669b31547889495e5370a6617c09a2a3b61c438
ImpHash
543ff43a43ebc6d708b7bdd3d8aa2b5a

PE Analysis

Basic Information

Icon
Hash: 0cf6d9c2a7c7597a96c33ad3a802cc71
Fuzzy: 7db9adc87ca8141b4f1633e7e22d21b1
dHash: 68cc9ab2b6c8a2f0
Image Base 0x00400000
Entry Point 0x00a92b34
Compilation Time 2023-07-31 23:49:19
Checksum 0x0085be3a (Actual: 0x0085be3a)
OS Version 5.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
Digital Signature OK
Imports 17 libraries
Exports 3 functions
Resources 143 Resources
Sections 11 Sections

Version Information

CompanyName VOVSOFT
FileVersion 4.1.0.0
InternalName PDF Reader
LegalCopyright VOVSOFT
LegalTrademarks VOVSOFT
OriginalFilename pdfreader.exe
ProductVersion 4.1.0.0
Comments VOVSOFT
ProgramID com.vovsoft.pdfreader
FileDescription PDF Reader
ProductName PDF Reader
Translation 0x0409 0x04e4

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 6,872,644 bytes 6,873,088 bytes 6.51 (Compressed) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 1D9D3100CEF2F3467FF45FB09FAA8F3E
.itext 0x0068f000 15,348 bytes 15,360 bytes 6.33 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 05D5F7D94C91218099DE2FF7AEB8EF80
.data 0x00693000 238,588 bytes 238,592 bytes 6.04 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE BD2D703405DBB9258D835BF7020F9312
.bss 0x006ce000 211,832 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
.idata 0x00702000 16,712 bytes 16,896 bytes 5.12 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 4266AEFB9FAE4DBD4841373E923964C0
.didata 0x00707000 3,372 bytes 3,584 bytes 4.09 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 3714CD5AEEB9282346BF7CEE97511E90
.edata 0x00708000 155 bytes 512 bytes 1.86 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ DBEDFE778BCD0EF876EF333FC8F59107
.tls 0x00709000 516 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
.rdata 0x0070a000 93 bytes 512 bytes 1.38 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ E84D24A0E88E05E9E494AE98D6B3858D
.reloc 0x0070b000 542,916 bytes 543,232 bytes 6.71 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 22D70287EFF3FBA62FBEDD890D09889B
.rsrc 0x00790000 1,015,296 bytes 1,015,296 bytes 6.13 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ A8BC9B54949CE738EBA6BAE9BDD58C7E
Entropy Analysis Alert

2 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 143 (1,007,273 bytes)
Resource Type Count Total Size Percentage
VCLSTYLE 1 34,307 bytes
3.4%
RT_CURSOR 8 2,464 bytes
0.2%
RT_BITMAP 13 5,196 bytes
0.5%
RT_ICON 26 117,567 bytes
11.7%
RT_DIALOG 2 164 bytes
0%
RT_STRING 70 88,884 bytes
8.8%
RT_RCDATA 11 755,520 bytes
75%
RT_GROUP_CURSOR 8 160 bytes
0%
RT_GROUP_ICON 2 376 bytes
0%
RT_VERSION 1 832 bytes
0.1%
RT_MANIFEST 1 1,803 bytes
0.2%

Certificate Chain Analysis

Certificate Information
Product PDF Reader
Description PDF Reader
File Version 4.1.0.0
Original Name pdfreader.exe
Signing Date 11:49 PM 07/31/2023 (717 days ago)
Verification Status Signed
Signers FATİH RAMAZAN ÇIKAN; Sectigo Public Code Signing CA R36; Sectigo Public Code Signing Root R46; Sectigo (AAA)
Counter Signers DigiCert Timestamp 2022 - 2; DigiCert Trusted G4 RSA4096 SHA256 TimeStamping CA; DigiCert Trusted Root G4; DigiCert
Internal Name PDF Reader
Copyright VOVSOFT
Certificate Chain Summary
Sectigo Public Code Signing Root R46 #1 Primary
Validity Period: 2021-05-25 00:00:00 → 2028-12-31 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 48 FC 93 B4 60 55 94 8D 36 A7 C9 8A 89 D6 94 16
Sectigo Public Code Signing CA R36 #2 Chain
Validity Period: 2021-03-22 00:00:00 → 2036-03-21 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 62 1D 6D 0C 52 01 9E 3B 90 79 15 20 89 21 1C 0A
FATİH RAMAZAN ÇIKAN #3 Chain
Validity Period: 2022-08-25 00:00:00 → 2023-08-25 23:59:59
Signature Algorithm: sha384RSA
Serial Number: B3 6F F2 58 D2 CE 50 52 EE 69 C6 39 4C AA 64 D2
DigiCert Timestamp 2022 - 2 #4 Chain
Validity Period: 2022-09-21 00:00:00 → 2033-11-21 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 0C 4D 69 72 4B 94 FA 3C 2A 4A 3D 29 07 80 3D 5A
DigiCert Trusted G4 RSA4096 SHA256 TimeStamping CA #5 Chain
Validity Period: 2022-03-23 00:00:00 → 2037-03-22 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 07 36 37 B7 24 54 7C D8 47 AC FD 28 66 2A 5E 5B
DigiCert Trusted Root G4 #6 Chain
Validity Period: 2022-08-01 00:00:00 → 2031-11-09 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 0E 9B 18 8E F9 D0 2D E7 EF DB 50 E2 08 40 18 5A

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware