Gridinsoft Logo
File Icon

The ENDORFY Viro Plus USB.exe (USB Audio Setup) File Analysis

Technical Analysis

File Name ENDORFY Viro Plus USB.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.225.174
Database Version 2025-09-20 14:00:23 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
84,727,808
File Size (bytes)
2025-09-20
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
5ec5fe8dd07aec1b10b81b493b3dc7fa
SHA1
7c83f723b24514ba2243da9aebb46159e5a0d0dd
SHA256
a44a5ee1278764e34b7883ae07e72dbd297439bdd246fbf0d63d0458e6c2834b
SHA512
4c6df53ab8c3ba942008822e30d8383fbefc8cf4dad7db960e4b5223f192bf37d990ab4c1656eebf10a252fcd3f93cbdd3f75223d0d2159ac82e3e7ca8a5a470
ImpHash
142c6c8503494f55d028ffb4dc17202f

PE Analysis

Basic Information

Icon
Hash: 5578ad56467ed42e76562ad1e7f77bdb
Fuzzy: d8f45414d84e8e603a593db408488323
dHash: 70d4961769b3d470
Image Base 0x00400000
Entry Point 0x004020a4
Compilation Time 2021-02-02 08:55:29
Checksum 0x050cd94a (Actual: 0x050cd94a)
OS Version 4.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
Digital Signature No valid SignedData structure was found.
Imports 14 libraries
Exports 9 functions
Resources 89 Resources
Sections 9 Sections

Version Information

CompanyName Solid State System
FileDescription USB Audio Setup
FileVersion 3.59.2021.202
LegalCopyright Copyright (C) 2018 Solid State System Corp. All right reserved.
ProductVersion 3.59.2021.202
Comments Write by J.S. Huang
Translation 0x0809 0x04e4

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 2,740,224 bytes 2,737,152 bytes 6.52 (Compressed) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ C8DA41C4D63B99A2638A9F6A0DC88E98
.data 0x0029e000 233,472 bytes 189,952 bytes 3.48 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE FD2264E4B21ADBF8785B8BCB905A4C9F
.tls 0x002d7000 4,096 bytes 512 bytes 0.00 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE BF619EAC0CDF3F68D496EA9344137E8B
.rdata 0x002d8000 4,096 bytes 512 bytes 0.21 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_SHARED|IMAGE_SCN_MEM_READ 634CEBF37508F3E24D41034FD049E803
.idata 0x002d9000 16,384 bytes 15,360 bytes 5.23 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 63D87693CF2AB1DCB44270B7658F7AA9
.didata 0x002dd000 4,096 bytes 2,560 bytes 4.11 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 551DBFCBB6AA5D1B301CC1C5D00EB020
.edata 0x002de000 4,096 bytes 512 bytes 4.04 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ A416B6D45AD883BFEE4524EB8D7D4F92
.rsrc 0x002df000 81,555,016 bytes 81,555,456 bytes 7.35 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ E17231B4B875554ADDDC714E69DDD3ED
.reloc 0x050a6000 225,280 bytes 224,256 bytes 6.73 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_SHARED|IMAGE_SCN_MEM_READ 6A6E6BD0255AE39DBDEE3BA44A49DE07
Entropy Analysis Alert

3 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 89 (81,549,839 bytes)
Resource Type Count Total Size Percentage
APP 3 18,980,656 bytes
23.3%
DRIVER 2 251,936 bytes
0.3%
SERVICE 2 4,772,144 bytes
5.9%
UNINSTALL 1 3,637,248 bytes
4.5%
WINDOWPATCH 1 45,918,843 bytes
56.3%
RT_CURSOR 7 2,156 bytes
0%
RT_BITMAP 23 4,359,948 bytes
5.3%
RT_ICON 10 458,704 bytes
0.6%
RT_STRING 26 25,500 bytes
0%
RT_RCDATA 4 3,141,166 bytes
3.9%
RT_GROUP_CURSOR 7 140 bytes
0%
RT_GROUP_ICON 1 146 bytes
0%
RT_VERSION 1 716 bytes
0%
RT_MANIFEST 1 536 bytes
0%

Certificate Chain Analysis

Certificate Information
Description USB Audio Setup
File Version 3.59.2021.202
Copyright Copyright (C) 2018 Solid State System Corp. All right reserved.

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.

Your Score for
/

Gridinsoft Anti-Malware

Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware

Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!

Gridinsoft Anti-Malware