Gridinsoft Logo
File Icon

The Gbyte_Recovery_Donwloader_1232106.exe (Gbyte Recovery Downloader) File Analysis

Technical Analysis

File Name Gbyte_Recovery_Donwloader_1232106.exe
File Type
PE32+ executable (GUI) x86-64, for MS Windows
Scanner Version 1.0.231.174
Database Version 2026-01-07 21:00:38 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
8,826,016
File Size (bytes)
2026-01-07
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
73436f5f07174de3e3c26be646f718c2
SHA1
a2e0007f79b71aa1196af7b38309cd912f5f384a
SHA256
92081e3477aac8857190743c6ef5dd71958a9a9b36875440a140dfcdb571868a
SHA512
260a4f91dc65589dcfda37554049875a1b91c87f8fae92dab6130a0aced8422e85e1538bf3652f562155c606124e2ef328e5b1da83e4dce8f698ecca8d29ceac
ImpHash
4d47b6f13dbc6143256fbde56865839c

PE Analysis

Basic Information

Icon
Hash: 30e4d251ef363ce689c0ee9993e5b347
Fuzzy: 7595eda97e6d2095d544c658f059e68f
dHash: 841f3b2b3b236f88
Image Base 0x140000000
Entry Point 0x141a49fe0
Compilation Time 2025-11-26 07:57:40
Checksum 0x0086d17a (Actual: 0x0086d17a)
OS Version 6.0
PEiD Signatures PE32+ executable (GUI) x86-64, for MS Windows
Digital Signature OK
Imports 38 libraries
Exports 0 functions
Resources 6 Resources
Sections 3 Sections

Version Information

LegalCopyright Copyright © 2025 Gbyte Tech. All rights reserved.
FileVersion 2.2.2
ProductName Gbyte Recovery Downloader
CompanyName Gbyte
ProductVersion 2.2.2
FileDescription Gbyte Recovery Downloader
Translation 0x0000 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
UPX0 0x00001000 18,784,256 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
UPX1 0x011eb000 8,785,920 bytes 8,782,848 bytes 8.00 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 3E93E97E7634521401DB86CC062C3D25
.rsrc 0x01a4c000 32,768 bytes 31,232 bytes 3.09 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 3F905552C297FE39F501B9029F623FA3
Entropy Analysis Alert

1 section(s) with high entropy (≥7.5) detected - possible packing/encryption

Resource Analysis

Total Resources: 6 (54,299 bytes)
Resource Type Count Total Size Percentage
RT_ICON 2 53,200 bytes
98%
RT_GROUP_ICON 2 40 bytes
0.1%
RT_VERSION 1 668 bytes
1.2%
RT_MANIFEST 1 391 bytes
0.7%

Certificate Chain Analysis

Certificate Information
Product Gbyte Recovery Downloader
Description Gbyte Recovery Downloader
File Version 2.2.2
Signing Date 08:00 AM 11/26/2025 (45 days ago)
Verification Status Signed
Signers Gbyte Technology Co., Limited; Certum Extended Validation Code Signing 2021 CA; Certum Trusted Network CA 2
Counter Signers Sectigo Public Time Stamping Signer R36; Sectigo Public Time Stamping CA R36; Sectigo Public Time Stamping Root R46; Sectigo
Copyright Copyright © 2025 Gbyte Tech. All rights reserved.
Certificate Chain Summary
Certum Extended Validation Code Signing 2021 CA #1 Primary
Validity Period: 2021-05-19 05:32:13 → 2036-05-18 05:32:13
Signature Algorithm: sha384RSA
Serial Number: BB F0 CC B5 B7 B8 31 FD 21 AE 32 77 8A E4 0C 89
Gbyte Technology Co., Limited #2 Chain
Validity Period: 2025-04-10 01:18:27 → 2028-04-09 01:18:26
Signature Algorithm: sha256RSA
Serial Number: 65 20 F8 AE 3D F2 4C 28 9C 49 3B B3 DF 5F 2F A4
Sectigo Public Time Stamping Signer R36 #3 Chain
Validity Period: 2025-03-27 00:00:00 → 2036-03-21 23:59:59
Signature Algorithm: sha384RSA
Serial Number: A4 29 3B 6E 1E DD D7 A7 34 08 87 AD 7A 4E B7 24
Sectigo Public Time Stamping CA R36 #4 Chain
Validity Period: 2021-03-22 00:00:00 → 2036-03-21 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 7A 23 AE DA 53 69 96 0F 91 C8 3E 5C F4 C7 E3 3F
Sectigo Public Time Stamping Root R46 #5 Chain
Validity Period: 2021-03-22 00:00:00 → 2038-01-18 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 36 C2 B0 BD 7C 1B 3A E7 A3 B3 DD 36 CB C9 75 68

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.

Your Score for
/

Gridinsoft Anti-Malware

Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware

Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!

Gridinsoft Anti-Malware