Gridinsoft Logo

The dotnet.exe (.NET Host) File Analysis

Technical Analysis

File Name dotnet.exe
File Type
PE32 executable (console) Intel 80386, for MS Windows
Scanner Version 1.0.211.174
Database Version 2025-03-19 20:00:29 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
105,616
File Size (bytes)
2025-03-19
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
814f1295e466363bd54bee66f4a17b71
SHA1
7a85db13044e2702ee51662a105e57d90d06956a
SHA256
83cb32044ca0936bba5c3d7654464c08a353bdae88670057323f96e4189a3019
SHA512
3a85e733ed3771c92f6254d6e11ec9b07bcd6eac0b0d27e7d3e8c4cfc95b83884d14a50a563e7ff00ab2eebe2a39b118a466c8dcdad730dade501113ff76a624
ImpHash
2e92166dd737e035714d3bf2dfa2a8e4

PE Analysis

Basic Information

Image Base 0x00400000
Entry Point 0x0040d060
Compilation Time 2022-09-26 17:54:20
Checksum 0x000293a2 (Actual: 0x000293a2)
OS Version 6.0
PEiD Signatures PE32 executable (console) Intel 80386, for MS Windows
PDB Path D:\a\_work\1\s\artifacts\obj\win-x86.Release\corehost\dotnet\dotnet.pdb
Digital Signature OK
Imports 9 libraries
KERNEL32, api-ms-win-crt-runtime-l1-1-0, api-ms-win-crt-stdio-l1-1-0, api-ms-win-crt-string-l1-1-0, api-ms-win-crt-convert-l1-1-0, api-ms-win-crt-heap-l1-1-0, api-ms-win-crt-locale-l1-1-0, api-ms-win-crt-math-l1-1-0, api-ms-win-crt-time-l1-1-0
Exports 0 functions
Resources 2 Resources
Sections 5 Sections

Version Information

CompanyName Microsoft Corporation
FileDescription .NET Host
FileVersion 6,0,1022,47605 @Commit: 5a400c212afdf8e675c9a1d38442e6d2f19f7b74
InternalName .NET Host
LegalCopyright © Microsoft Corporation. All rights reserved.
OriginalFilename .NET Host
ProductName Microsoft® .NET Framework
ProductVersion 6.0.10 @Commit: 5a400c212afdf8e675c9a1d38442e6d2f19f7b74
Translation 0x0409 0x04e4

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 64,474 bytes 64,512 bytes 6.47 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 86E47468AAC26D3D2FD093D248468D0C
.rdata 0x00011000 21,872 bytes 22,016 bytes 4.51 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ B15EE928444DB8C71497299D3D18D6E4
.data 0x00017000 2,564 bytes 1,024 bytes 3.88 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 9055DB2CBE43CA67CA97B7481839D7B1
.rsrc 0x00018000 2,488 bytes 2,560 bytes 4.99 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ A953BDC05E2D80CB5505EFDF48B3C448
.reloc 0x00019000 3,896 bytes 4,096 bytes 6.47 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 298D23C68E16580969075C7CBF64C0BB

Resource Analysis

Total Resources: 2 (2,326 bytes)
Resource Type Count Total Size Percentage
RT_VERSION 1 996 bytes
42.8%
RT_MANIFEST 1 1,330 bytes
57.2%

Certificate Chain Analysis

Certificate Information
Product Microsoft® .NET Framework
Description .NET Host
File Version 6,0,1022,47605 @Commit: 5a400c212afdf8e675c9a1d38442e6d2f19f7b74
Original Name .NET Host
Signing Date 06:34 PM 09/28/2022 (982 days ago)
Verification Status Signed
Signers .NET; Microsoft Code Signing PCA 2011; Microsoft Root Certificate Authority 2011
Counter Signers Microsoft Time-Stamp Service; Microsoft Time-Stamp PCA 2010; Microsoft Root Certificate Authority 2010
Internal Name .NET Host
Copyright © Microsoft Corporation. All rights reserved.
Certificate Chain Summary
.NET #1 Primary
Validity Period: 2022-08-04 20:23:57 → 2023-08-03 20:23:57
Signature Algorithm: sha384RSA
Serial Number: 33 00 00 03 05 4D 62 0D 68 85 07 AA 33 00 00 00 00 03 05
Microsoft Code Signing PCA 2011 #2 Chain
Validity Period: 2011-07-08 20:59:09 → 2026-07-08 21:09:09
Signature Algorithm: sha256RSA
Serial Number: 61 0E 90 D2 00 00 00 00 00 03
Microsoft Time-Stamp Service #3 Chain
Validity Period: 2022-03-02 18:51:36 → 2023-05-11 18:51:36
Signature Algorithm: sha256RSA
Serial Number: 33 00 00 01 AD FC DF 4D 58 E3 5D 32 E9 00 01 00 00 01 AD
Microsoft Time-Stamp PCA 2010 #4 Chain
Validity Period: 2021-09-30 18:22:25 → 2030-09-30 18:32:25
Signature Algorithm: sha256RSA
Serial Number: 33 00 00 00 15 C5 E7 6B 9E 02 9B 49 99 00 00 00 00 00 15

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware