File Name | mbam.exe |
File Type |
PE32+ executable (GUI) x86-64, for MS Windows
|
Scanner Version | 1.0.217.174 |
Database Version | 2025-05-31 02:00:17 UTC |
No threats detected by our scanner
Hash Type | Value | Action |
---|---|---|
MD5 |
6365dc2ddbeb5842be33bdab30bf1421
|
|
SHA1 |
5f2767a411b9acf51b27dff68fff3a6598371a55
|
|
SHA256 |
a6216185a12b14f73854b3443263726226614bf5b47283f9a3f3109308469d19
|
|
SHA512 |
d6a8006784e19b49f2a4aa4342ca5ae14d844cc1ee7031fc466dc7498675ad625ac1e0556239322289a7a2bbb3d597f470336eed36313446ca574890a4506859
|
|
ImpHash |
35be62b7277f77a281f2af1b4d5c7d33
|
Icon |
Hash: 6368d8399420870c551723023a6eca74
Fuzzy: 2ca45b560814c50c37f2ba94dec78bb4 dHash: 968e8cb0b296cc18 |
Image Base | 0x140000000 |
Entry Point | 0x14031bb88 |
Compilation Time | 2023-08-29 13:28:25 |
Checksum | 0x016fc0dc (Actual: 0x016fc0dc) |
OS Version | 6.0 |
PEiD Signatures |
PE32+ executable (GUI) x86-64, for MS Windows
|
PDB Path | e:\jenkins\workspace\A_MBAM4_UI_Parallel\Architecture\x64\label\W2K12ENGBLDQt1a\bin\x64\Release\mbam.pdb |
Digital Signature | OK |
Imports | 30 libraries |
Exports | 0 functions |
Resources | 11 Resources |
Sections | 6 Sections |
CompanyName | Malwarebytes |
FileVersion | 4.0.0.1658 |
FileDescription | Malwarebytes |
InternalName | mbam.exe |
LegalCopyright | © Malwarebytes. All rights reserved. |
LegalTrademarks | |
OriginalFilename | mbam.exe |
ProductName | Malwarebytes |
Translation | 0x0409 0x04e4 |
Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
---|---|---|---|---|---|---|
.text |
0x00001000 |
4,179,788 bytes | 4,179,968 bytes | 6.10 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
4B24F3068F6DD80EC0FBCF0EC2A850EB |
.rdata |
0x003fe000 |
18,913,264 bytes | 18,913,280 bytes | 7.50 (Packed/Encrypted) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
74F980D739443A2E6B79BDD0272305D7 |
.data |
0x01608000 |
144,152 bytes | 54,272 bytes | 4.88 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
09E0CB524419D9EAE76C094FAFAD0664 |
.pdata |
0x0162c000 |
317,532 bytes | 317,952 bytes | 6.56 (Compressed) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
52F34E0CEAAB530C281846FBC2DD0471 |
.rsrc |
0x0167a000 |
117,216 bytes | 117,248 bytes | 3.85 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
C35D4627BE2E40933E819237BCE26930 |
.reloc |
0x01697000 |
39,852 bytes | 39,936 bytes | 5.46 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
CA1446077B234FE0759E42A7F99EFA09 |
1 section(s) with high entropy (≥7.5) detected - possible packing/encryption
1 section(s) with elevated entropy (≥6.5) - possible compression
Resource Type | Count | Total Size | Percentage |
---|---|---|---|
RT_ICON | 8 | 115,052 bytes | |
RT_GROUP_ICON | 1 | 118 bytes | |
RT_VERSION | 1 | 728 bytes | |
RT_MANIFEST | 1 | 638 bytes |
Product | Malwarebytes |
Description | Malwarebytes |
File Version | 4.0.0.1658 |
Original Name | mbam.exe |
Signing Date | 01:31 PM 08/29/2023 (643 days ago) |
Verification Status | Signed |
Signers | Malwarebytes Inc.; Sectigo RSA Code Signing CA 2; USERTrust RSA Certification Authority; Sectigo (AAA) |
Counter Signers | Microsoft Public RSA Time Stamping Authority; Microsoft Public RSA Timestamping CA 2020; Microsoft Identity Verification Root Certificate Authority 2020 |
Internal Name | mbam.exe |
Copyright | © Malwarebytes. All rights reserved. |
38 25 D7 FA F8 61 AF 9E F4 90 E7 26 B5 D6 5A D5
47 BF 19 95 DF 8D 52 46 43 F7 DB 6D 48 0D 31 A4
65 52 26 E1 B2 2E 18 E1 59 0F 29 85 AC 22 E7 5C
66 E3 F0 67 79 CA 15 16 6D 50 53 6F 88 19 1A 83
39 72 44 3A F9 22 B7 51 D7 D3 6C 10 DD 31 35 95
A6 57 F7 78 B3 1A E5 23 D6 67 13 17 18 D1 6E B2
9E 02 B0 E9 4A CE B2 10 9C A1 E9 83 6B E0 C2 DB
33 00 00 00 05 E5 CF 0F FF 66 2E C9 87 00 00 00 00 00 05
33 00 00 00 2E 30 2B 14 37 07 50 AD 83 00 00 00 00 00 2E
54 98 D2 D1 D4 5B 19 95 48 13 79 C8 11 C0 87 99
33 00 00 97 FF 0D F7 93 32 FF 49 4C 2D 00 00 00 00 97 FF
33 00 00 00 07 37 8C 5B A1 D9 5B 8C D4 00 00 00 00 00 07
33 00 00 00 07 87 A3 34 A3 7B A5 8E 1C 00 00 00 00 00 07
33 00 00 00 2B 76 4F D4 8F 34 FC A5 CE 00 00 00 00 00 2B
✓ This file has been digitally signed and the certificate chain has been verified
OK
Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:
Download Anti-MalwareThis file appears clean, but regular security maintenance is important