Gridinsoft Logo
File Icon

The down.exe File Analysis

Technical Analysis

File Name down.exe
File Type
PE32+ executable (GUI) x86-64, for MS Windows
Scanner Version 1.0.215.174
Database Version 2025-04-23 18:00:18 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
3,074,400
File Size (bytes)
2025-04-23
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
54c3b9b433e255305dbddd169f7f9880
SHA1
f18b8c19a80d23e6336cc6c71599191091cd4348
SHA256
6bbc4ed84444f5a9b03ec2c0bbf0439f2d9590237152dc4d62a6e7d805e37690
SHA512
609cc795ca8b8d19be6809a4652a1c761ce0a65c73ec701f3e7115873157a378c4bb768ce3b247357b595301d4077f2681efbae25fcd3dc42ddf67346723416e
ImpHash
f625cf0f5078978e67199c5c50327e8e

PE Analysis

Basic Information

Icon
Hash: dd362dc1daceeac0c06f393c2ceb985f
Fuzzy: 2603571ae27faa83f5ded084ce95913d
dHash: b889cc8ca3baa4cc
Image Base 0x140000000
Entry Point 0x140114060
Compilation Time 2024-08-27 02:46:59
Checksum 0x002f4fa5 (Actual: 0x002f4fa5)
OS Version 6.0
PEiD Signatures PE32+ executable (GUI) x86-64, for MS Windows
PDB Path E:\svnRepo\prod_repo\global_develop\launcher\x64\Master_Global\DOAX_VV_Launcher.pdb
Digital Signature OK
Imports 25 libraries
Exports 0 functions
Resources 20 Resources
Sections 9 Sections

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 1,154,132 bytes 1,154,560 bytes 6.34 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 641E2E2D6527ADF24A75BA32EB893BC6
.rdata 0x0011b000 315,070 bytes 315,392 bytes 4.80 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ B87D1E0B3E5D4EEFF176A365E8D7D105
.data 0x00168000 73,517,176 bytes 1,152,000 bytes 3.66 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 605FBE7B225C8D0288197016ABE0D694
.pdata 0x04785000 74,664 bytes 74,752 bytes 6.16 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 9989972D4A0D864FF7323089D812C01A
.tls 0x04798000 21 bytes 512 bytes 0.02 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE ADB00C88D5919BAB3C4B160CBF2ABED5
.gfids 0x04799000 80 bytes 512 bytes 0.39 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 34BBFC08C04B391D20D80829B5BDD37E
_RDATA 0x0479a000 1,968 bytes 2,048 bytes 3.17 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 0FB83E75FED6DE51E92EA13B905F5F03
.rsrc 0x0479b000 349,880 bytes 350,208 bytes 6.36 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 82CCC2B569B6CA78FF0BD54056546B99
.reloc 0x047f1000 12,292 bytes 12,800 bytes 5.40 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ E4FBC0B3B3B040D7C879C72BEFE0C708

Resource Analysis

Total Resources: 20 (348,713 bytes)
Resource Type Count Total Size Percentage
RT_ICON 12 342,176 bytes
98.1%
RT_MENU 1 112 bytes
0%
RT_DIALOG 3 5,600 bytes
1.6%
RT_STRING 1 84 bytes
0%
RT_ACCELERATOR 1 16 bytes
0%
RT_GROUP_ICON 1 174 bytes
0%
RT_MANIFEST 1 551 bytes
0.2%

Certificate Chain Analysis

Certificate Information
Signing Date 01:27 AM 08/29/2024 (282 days ago)
Verification Status Signed
Signers 株式会社コーエーテクモゲームス; DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1; DigiCert Trusted Root G4; DigiCert
Counter Signers DigiCert Timestamp 2023; DigiCert Trusted G4 RSA4096 SHA256 TimeStamping CA; DigiCert Trusted Root G4; DigiCert
Certificate Chain Summary
DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1 #1 Primary
Validity Period: 2021-04-29 00:00:00 → 2036-04-28 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 08 AD 40 B2 60 D2 9C 4C 9F 5E CD A9 BD 93 AE D9
株式会社コーエーテクモゲームス #2 Chain
Validity Period: 2024-06-24 00:00:00 → 2025-08-12 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 0D A3 CF 47 FD 62 C0 22 E0 4A A0 FB 24 1F F9 C5
DigiCert Timestamp 2023 #3 Chain
Validity Period: 2023-07-14 00:00:00 → 2034-10-13 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 05 44 AF F3 94 9D 08 39 A6 BF DB 3F 5F E5 61 16
DigiCert Trusted G4 RSA4096 SHA256 TimeStamping CA #4 Chain
Validity Period: 2022-03-23 00:00:00 → 2037-03-22 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 07 36 37 B7 24 54 7C D8 47 AC FD 28 66 2A 5E 5B
DigiCert Trusted Root G4 #5 Chain
Validity Period: 2022-08-01 00:00:00 → 2031-11-09 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 0E 9B 18 8E F9 D0 2D E7 EF DB 50 E2 08 40 18 5A

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware