Gridinsoft Logo
File Icon

The a518-SophosSetup.exe File Analysis

Technical Analysis

File Name a518-SophosSetup.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.216.174
Database Version 2025-05-07 10:00:22 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
1,968,008
File Size (bytes)
2025-05-07
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
effaafeda24998bcd2ab916b5b618f17
SHA1
7befcc232caaf080569f9e9644fd5766c15018b2
SHA256
6f08189b88392a91c629d5c97c013e787c47957833c18c50677c03042627c2b3
SHA512
3a8b6f5fb93941ef8acdf1c834aa5438e75610908325bd3962ac6e5aa36393467291d19ec68c8b662e5c3b4899f6ebbc0b6b3eccb036f14df9565275715289ff
ImpHash
564d85130c7f5912b2430189fffffe32

PE Analysis

Basic Information

Icon
Hash: a6de3cd180bc040ecb1addeb548b072c
Fuzzy: 10a21f270a51a85f673841c2adfef2a4
dHash: f2616d6949f9cc70
Image Base 0x00400000
Entry Point 0x00418b00
Compilation Time 2024-05-17 15:23:27
Checksum 0x00b58928 (Actual: 0x001e375a)
OS Version 6.1
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
PDB Path C:\workspace\_bin\Win32\Release\Build\SafeLauncher.pdb
Digital Signature OK
Imports 1 libraries
KERNEL32
Exports 0 functions
Resources 8 Resources
Sections 6 Sections

Version Information

Comments d767e1c6d9d6ee9844e17c59f1d00c2c411bc542
CompanyName Sophos Limited
FileDescription Sophos Setup
FileVersion 1.20.627.0
InternalName SophosSetup.exe
LegalCopyright Copyright 1989-2024 Sophos Limited. All rights reserved.
OriginalFilename SophosSetup.exe
ProductName Sophos Setup
ProductVersion 1.20
Translation 0x0809 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 222,234 bytes 222,720 bytes 6.65 (Compressed) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 2650E1992475EF0AC0172A06A77724AE
.rdata 0x00038000 75,188 bytes 75,264 bytes 5.41 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 5B0D5CBF9EEEC1703E7D88EF994A0E57
.data 0x0004b000 10,764 bytes 6,656 bytes 3.72 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE AC40AAD8615FC43233040428922F43E7
.didat 0x0004e000 32 bytes 512 bytes 0.32 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 7232F6650507C54BECC886A537AE4AAF
.rsrc 0x0004f000 1,637,536 bytes 1,637,888 bytes 7.00 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ A6D9305E2434073A8DB6BF82E60A1956
.reloc 0x001df000 11,924 bytes 12,288 bytes 6.54 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ A2C95045F69EE620BA0AE56BC85DFA55
Entropy Analysis Alert

3 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 8 (1,637,011 bytes)
Resource Type Count Total Size Percentage
RT_ICON 4 73,361 bytes
4.5%
RT_RCDATA 1 1,560,936 bytes
95.4%
RT_GROUP_ICON 1 62 bytes
0%
RT_VERSION 1 912 bytes
0.1%
RT_MANIFEST 1 1,740 bytes
0.1%

Certificate Chain Analysis

No Digital Signatures

This file is not digitally signed.

Security Implications:
  • Cannot verify the publisher's identity
  • Increased security risk when running this file
  • May trigger security warnings on some systems

⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources

Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware