Gridinsoft Logo
File Icon

The overseer.exe (Avast Overseer) File Analysis

Technical Analysis

File Name overseer.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.144.174
Database Version 2023-10-29 10:03:07 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
1,830,296
File Size (bytes)
2023-10-29
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
370868e99ba3942c0ce85f14a4d3b103
SHA1
8d727c7f8f4840c6506fbfd1106cf7a5c8a3596a
SHA256
6a593bf45280524936d70aaf58978d370651e768ea9cd124ec72209c11885f73
SHA512
7d5c93f0d2b199aed9ab1e4ee2612136f156476a457f28ad154e1b2cdd0aa95f62e541c5ab23ffde33b9048afb749aa3381120d8331108c6f315cfb39d8e59f9
ImpHash
c364948a5cd749dd20175c4079c58e32

PE Analysis

Basic Information

Icon
Hash: 547d555493d034d516aa965b6762642d
Fuzzy: c4daedc07d67aa18b239072283f41696
dHash: f0f0f26dd88c8ef0
Image Base 0x00400000
Entry Point 0x00488010
Compilation Time 2023-05-30 09:51:06
Checksum 0x001c0f26 (Actual: 0x001c0f26)
OS Version 6.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
PDB Path C:\BUILD\work\3ec84b7238d5b18a\BUILDS\Release\x86\overseer.pdb
Digital Signature Invalid length in certificate table header
Imports 14 libraries
Exports 4 functions
Resources 13 Resources
Sections 5 Sections

Digital Signatures

DigiCert Trusted Root G4 DigiCert, Inc. (US)
DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1 Avast Software s.r.o. (CZ)

Version Information

CompanyName Avast Software
LegalCopyright Copyright © 2023 Avast Software
FileDescription Avast Overseer
FileVersion 1.0.478.0
InternalName overseer
OriginalFilename overseer.exe
ProductName Avast Antivirus
ProductVersion 1.0.478.0
ProductId avast-overseer
Translation 0x0409 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 1,374,810 bytes 1,375,232 bytes 6.60 (Compressed) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 4C37FBE715FF9BE0B1D02ACE339C9EC2
.rdata 0x00151000 294,760 bytes 294,912 bytes 5.46 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 0604267730F837F1A077210DE1903604
.data 0x00199000 42,052 bytes 31,744 bytes 5.00 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 6C327843413A0003B4109630870069E5
.rsrc 0x001a4000 52,480 bytes 52,736 bytes 4.27 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ D3BE8B65E66DD6A3A967AF4B61A06E2D
.reloc 0x001b1000 63,500 bytes 64,000 bytes 6.67 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 69EB40BD728C273D8315C0DFD60AD5FE
Entropy Analysis Alert

2 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 13 (51,700 bytes)
Resource Type Count Total Size Percentage
RT_ICON 9 49,164 bytes
95.1%
RT_STRING 1 716 bytes
1.4%
RT_GROUP_ICON 1 132 bytes
0.3%
RT_VERSION 1 808 bytes
1.6%
RT_MANIFEST 1 880 bytes
1.7%

Certificate Chain Analysis

Certificate #1
Subject DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1
DigiCert, Inc.
US
Issuer DigiCert Trusted Root G4
Serial Number 11533403529598586876501374841704918745
Certificate #2
Subject Avast Software s.r.o.
Avast Software s.r.o.
CZ
Issuer DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1
Serial Number 11977075600086850269065619583942273279
Certificate Verification Status

Invalid length in certificate table header

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware