Gridinsoft Logo
File Icon

The fbs4setup.exe File Analysis

Technical Analysis

File Name fbs4setup.exe
File Type
PE32+ executable (GUI) x86-64, for MS Windows
Scanner Version 1.0.217.174
Database Version 2025-05-26 21:00:15 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
5,399,512
File Size (bytes)
2025-05-26
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
833a1e228c41da066581c18ec1640ca6
SHA1
ad82f6dd35b9b89332e8de9a45ba0def61d2aec7
SHA256
6b00ee658d5583c99c3b846d5ef46104afeaf5dc01cea2348583354aa3761ffa
SHA512
247cf393b00583f4a2e89275a80e8fdd56c049288e55e7129839fa054ae7eb0f20cb78a36dd3ecb80b0fef4885bd6a145f01b23570ca070fa90d2918b3e15f14
ImpHash
99a576e857d857072918fd4f3133a697

PE Analysis

Basic Information

Icon
Hash: a52a4e667c66fc8d4776b06cedacf0f1
Fuzzy: ab8639502307700f3195a146ef8fa0e4
dHash: f2b8d8d8dadadce8
Image Base 0x140000000
Entry Point 0x1407e92cd
Compilation Time 1970-03-03 03:52:32
Checksum 0x00527ba4 (Actual: 0x0052c09c)
OS Version 6.0
PEiD Signatures PE32+ executable (GUI) x86-64, for MS Windows
PDB Path E:\workspace\metatrader5\Build\Installers\Distributive Core\Release64\core.pdb
Digital Signature OK
Imports 14 libraries
Exports 0 functions
Resources 98 Resources
Sections 10 Sections

Version Information

Comments https://www.metaquotes.net
CompanyName MetaQuotes Ltd.
FileDescription Setup
FileVersion 5.0.0.4989
InternalName Setup
LegalCopyright © 2000-2025, MetaQuotes Ltd.
LegalTrademarks MetaTrader
OriginalFilename Setup
ProductName Setup
ProductVersion 5.0.0.4989
Translation 0x0000 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 1,518,672 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ D41D8CD98F00B204E9800998ECF8427E
.rdata 0x00174000 755,012 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ D41D8CD98F00B204E9800998ECF8427E
.data 0x0022d000 1,799,908 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
.pdata 0x003e5000 61,908 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ D41D8CD98F00B204E9800998ECF8427E
.fptable 0x003f5000 256 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
.cod0 0x003f6000 2,216,802 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ D41D8CD98F00B204E9800998ECF8427E
.cod1 0x00614000 3,176 bytes 3,584 bytes 3.05 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE C619E747BE6705FED9F5B33E75289EDE
.cod2 0x00615000 5,120,064 bytes 5,120,512 bytes 7.89 (Packed/Encrypted) IMAGE_SCN_CNT_CODE|IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_NOT_PAGED|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 15BA2D88C4C0C7C11DCB75F367D722D8
.rsrc 0x00af8000 1,686,062 bytes 158,720 bytes 5.71 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 27AB76EDBEB835F63E98F3E7C1A2821B
.reloc 0x00c94000 80 bytes 512 bytes 0.87 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ E3A931B2A0E4CE02F07F0D85C92089AC
Entropy Analysis Alert

1 section(s) with high entropy (≥7.5) detected - possible packing/encryption

Resource Analysis

Total Resources: 98 (1,680,791 bytes)
Resource Type Count Total Size Percentage
AFX_DIALOG_LAYOUT 6 12 bytes
0%
FILE 3 592,415 bytes
35.2%
LNG 7 635,446 bytes
37.8%
RT_BITMAP 3 141,630 bytes
8.4%
RT_ICON 30 150,640 bytes
9%
RT_DIALOG 6 3,128 bytes
0.2%
RT_STRING 5 1,810 bytes
0.1%
RT_ACCELERATOR 1 48 bytes
0%
RT_RCDATA 33 153,066 bytes
9.1%
RT_GROUP_ICON 2 432 bytes
0%
RT_VERSION 1 888 bytes
0.1%
RT_MANIFEST 1 1,276 bytes
0.1%

Certificate Chain Analysis

No Digital Signatures

This file is not digitally signed.

Security Implications:
  • Cannot verify the publisher's identity
  • Increased security risk when running this file
  • May trigger security warnings on some systems

⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources

Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware