Gridinsoft Logo
File Icon

The winrar-x32-701es.exe (WinRAR) File Analysis

Technical Analysis

File Name winrar-x32-701es.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.211.174
Database Version 2025-03-19 20:00:29 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
3,716,824
File Size (bytes)
2025-03-19
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
f4c2f6a261e062696091650c90c8c4c8
SHA1
a238f7ed70bf5e352f445b1716ed0598f77b333e
SHA256
a0b3325c3e4cce4463d36f897ae3c38a3674cb9b5f87f9658451df87231924f8
SHA512
76b4001d18b7b08245871ae46dc5a4e84148e8860b4edc4bca244cfc554126db64be9075c43c1c9be75b1a0930b8007abcf717f2908281ea1eddd2756b825a1b
ImpHash
082d9eac0e630d0d5aee6a677ef22e52

PE Analysis

Basic Information

Icon
Hash: d4a9c34f7171828c8adc9c3a0307afb8
Fuzzy: 2ea515c30e1a6ee8ad367944867f72e8
dHash: b233332a6b2ab232
Image Base 0x00400000
Entry Point 0x00423c00
Compilation Time 2024-05-12 10:17:20
Checksum 0x003940a9 (Actual: 0x003940a9)
OS Version 6.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
PDB Path D:\Projects\WinRAR\sfx\setup\build\sfxrar32\Release\sfxrar.pdb
Digital Signature OK
Imports 3 libraries
KERNEL32, OLEAUT32, gdiplus
Exports 0 functions
Resources 25 Resources
Sections 6 Sections

Version Information

ProductName WinRAR
CompanyName Alexander Roshal
FileDescription WinRAR
FileVersion 7.1.0
ProductVersion 7.1.0
InternalName WinRAR
LegalCopyright Copyright © Alexander Roshal 1993-2024
OriginalFilename WinRAR.exe
Translation 0x0409 0x04e4

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 238,476 bytes 238,592 bytes 6.67 (Compressed) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 3931DCB1354345D01386B6C1B5A8423A
.rdata 0x0003c000 50,976 bytes 51,200 bytes 5.10 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 6D5C12C1DFA727A442F9DC1709F44C3F
.data 0x00049000 54,676 bytes 3,584 bytes 3.44 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE E518D0FDFBFB5474CBD8BC52AEDAE9C2
.didat 0x00057000 404 bytes 512 bytes 3.42 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 04EF2BA913F155377AD1C8BDED6C79FB
.rsrc 0x00058000 159,744 bytes 156,160 bytes 7.76 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ C60BEEA4432E1CBA042AFAEB707BDB44
.reloc 0x0007f000 10,804 bytes 11,264 bytes 6.57 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ B0055D74B62A70D4A16C6F6C42861864
Entropy Analysis Alert

1 section(s) with high entropy (≥7.5) detected - possible packing/encryption

2 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 25 (154,290 bytes)
Resource Type Count Total Size Percentage
PNG 2 69,432 bytes
45%
RT_ICON 7 77,238 bytes
50.1%
RT_DIALOG 4 2,236 bytes
1.4%
RT_STRING 9 2,696 bytes
1.7%
RT_GROUP_ICON 1 104 bytes
0.1%
RT_VERSION 1 712 bytes
0.5%
RT_MANIFEST 1 1,872 bytes
1.2%

Certificate Chain Analysis

Certificate Information
Product WinRAR
Description WinRAR
File Version 7.1.0
Original Name WinRAR.exe
Signing Date 10:25 AM 05/20/2024 (383 days ago)
Verification Status Signed
Signers win.rar GmbH; DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1; DigiCert Trusted Root G4; DigiCert
Counter Signers DigiCert Timestamp 2023; DigiCert Trusted G4 RSA4096 SHA256 TimeStamping CA; DigiCert Trusted Root G4; DigiCert
Internal Name WinRAR
Copyright Copyright © Alexander Roshal 1993-2024
Certificate Chain Summary
DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1 #1 Primary
Validity Period: 2021-04-29 00:00:00 → 2036-04-28 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 08 AD 40 B2 60 D2 9C 4C 9F 5E CD A9 BD 93 AE D9
win.rar GmbH #2 Chain
Validity Period: 2023-08-08 00:00:00 → 2026-08-07 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 04 8B 08 39 9E C7 03 62 3C 72 CD 20 77 AD 65 D9
DigiCert Timestamp 2023 #3 Chain
Validity Period: 2023-07-14 00:00:00 → 2034-10-13 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 05 44 AF F3 94 9D 08 39 A6 BF DB 3F 5F E5 61 16
DigiCert Trusted G4 RSA4096 SHA256 TimeStamping CA #4 Chain
Validity Period: 2022-03-23 00:00:00 → 2037-03-22 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 07 36 37 B7 24 54 7C D8 47 AC FD 28 66 2A 5E 5B
DigiCert Trusted Root G4 #5 Chain
Validity Period: 2022-08-01 00:00:00 → 2031-11-09 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 0E 9B 18 8E F9 D0 2D E7 EF DB 50 E2 08 40 18 5A

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware