File Name | crawly.exe |
File Type |
PE32+ executable (console) x86-64, for MS Windows
|
Scanner Version | 1.0.216.174 |
Database Version | 2025-05-09 17:00:20 UTC |
No threats detected by our scanner
Hash Type | Value | Action |
---|---|---|
MD5 |
6e1f2ad247f047616f2a921731838905
|
|
SHA1 |
88071247aeb6b703a2b0382981355e36e4246f9c
|
|
SHA256 |
a3ceb1c945fc0b3b07f509629a84224dd8d8482dd83b881f7a1b2d0f5514635e
|
|
SHA512 |
1ad8383266d3a2eef3aa4e9394049222a9e83d41c1c230b433a72e2536cdb1bc24fd097aa495b462fc9afddef0d10fefe2f4088d2dcbdc37b72f73bcc31c23aa
|
|
ImpHash |
d42595b695fc008ef2c56aabd8efd68e
|
Image Base | 0x00400000 |
Entry Point | 0x00473c60 |
Compilation Time | 1970-01-01 00:00:00 |
Checksum | 0x00000000 (Actual: 0x008358ae) |
OS Version | 6.1 |
PEiD Signatures |
PE32+ executable (console) x86-64, for MS Windows
|
Digital Signature | No valid SignedData structure was found. |
Imports |
1 libraries
kernel32 |
Exports | 0 functions |
Resources | 0 Resources |
Sections | 15 Sections |
Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
---|---|---|---|---|---|---|
.text |
0x00001000 |
2,707,225 bytes | 2,707,456 bytes | 6.23 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
BB6EFD7005AD1506551D266428CFA184 |
.rdata |
0x00296000 |
2,882,264 bytes | 2,882,560 bytes | 5.66 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
942DA29DF06B7E36084227295F7C0B6B |
.data |
0x00556000 |
593,568 bytes | 274,944 bytes | 5.04 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
8A8F3774AE5975E182D593526E617EC1 |
.pdata |
0x005e7000 |
60,852 bytes | 60,928 bytes | 5.45 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
1881C934C5C40FE4FD21D4A4B3EAFB9D |
.xdata |
0x005f6000 |
180 bytes | 512 bytes | 1.78 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
824BCA03C284624D1DCE3C66B77AA2D3 |
/4 |
0x005f7000 |
332 bytes | 512 bytes | 5.61 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
AAF28638A5FCA2AE9B61C2D0ECB5C6E7 |
/19 |
0x005f8000 |
483,808 bytes | 483,840 bytes | 8.00 (Packed/Encrypted) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
6B8A8DA9AB3CA290E2F3C30806C3807C |
/32 |
0x0066f000 |
100,272 bytes | 100,352 bytes | 7.94 (Packed/Encrypted) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
40ACEA43F527CA4D9B86B807BC0F32AF |
/46 |
0x00688000 |
99 bytes | 512 bytes | 1.60 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
700834D1DF60CC9AE6885D9924F60878 |
/65 |
0x00689000 |
828,454 bytes | 828,928 bytes | 8.00 (Packed/Encrypted) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
498BF4BE3152751DF842112A68E0B019 |
/78 |
0x00754000 |
606,268 bytes | 606,720 bytes | 7.99 (Packed/Encrypted) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
3CA22D0454201DA1036E2BD69B1A6797 |
/90 |
0x007e9000 |
181,964 bytes | 182,272 bytes | 7.81 (Packed/Encrypted) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
301CFA6485342972DB8FFFE1BE7E344F |
.idata |
0x00816000 |
1,342 bytes | 1,536 bytes | 3.95 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
84774875179705D26C1F688D3161F10C |
.reloc |
0x00817000 |
55,228 bytes | 55,296 bytes | 5.45 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
D49704ECC3A422BD5FA8F7B675D101F5 |
.symtab |
0x00825000 |
399,894 bytes | 400,384 bytes | 5.29 (Normal) |
IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
3E3F7757D33B747BDF15C052BA94612C |
5 section(s) with high entropy (≥7.5) detected - possible packing/encryption
This file is not digitally signed.
⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources
No valid SignedData structure was found.
Recommendation: Verify the file source and ensure it comes from a trusted publisher.
Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:
Download Anti-MalwareThis file appears clean, but regular security maintenance is important