Gridinsoft Logo
File Icon

The OutlookKutools - jest virus.exe (Kutools for Outlook Installer) File Analysis

Technical Analysis

File Name OutlookKutools - jest virus.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.228.174
Database Version 2025-11-04 16:00:29 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
71,895,136
File Size (bytes)
2025-11-04
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
8a3b997fe581e8dc1ab02d916003be8b
SHA1
1d969fe320ed6939ce5d8313bb5abbe66e8ab58a
SHA256
b452baa99be8187cf66cd5c080d5fed4ac746d9a680bef4f7ccde000c84eb4e5
SHA512
197e7ff766c04cf3f12458a24be84e6e06b6733addad1ac00b5b9335c906447cde49f0990d5c4b56457b9761284eae58d91f0eb9dfcf76a135722f080fc0ca93
ImpHash
f4ea2990b368d10c30f41a310da6c75a

PE Analysis

Basic Information

Icon
Hash: b86adf8a94d8f428171a065be53583ad
Fuzzy: 2aead8348f2edb693cb2bfc3d6cceb6c
dHash: 92e869b1ad69d082
Image Base 0x00400000
Entry Point 0x0051af1c
Compilation Time 2019-11-13 08:49:41
Checksum 0x04499505 (Actual: 0x04499505)
OS Version 6.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
PDB Path C:\JobRelease\win\Release\stubs\x86\ExternalUi.pdb
Digital Signature OK
Imports 1 libraries
KERNEL32
Exports 0 functions
Resources 49 Resources
Sections 5 Sections

Version Information

CompanyName ExtendOffice.com
FileDescription Kutools for Outlook Installer
FileVersion 19.00.100
InternalName OutlookKutools
LegalCopyright Copyright (C) 2024 ExtendOffice.com
OriginalFileName OutlookKutools.exe
ProductName Kutools for Outlook
ProductVersion 19.00.100
Translation 0x0409 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 1,501,167 bytes 1,501,184 bytes 6.45 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ E380F81CA70604895A22A2842AC951E0
.rdata 0x00170000 387,004 bytes 387,072 bytes 4.60 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 7C291565CAA9E916098F8ECB683B0136
.data 0x001cf000 28,920 bytes 21,504 bytes 2.06 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE EFDE3BE424386DFFA2BB4017A0E8E2FB
.rsrc 0x001d7000 422,424 bytes 422,912 bytes 6.14 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 7A03A430F184F9D4881A8732793A2C06
.reloc 0x0023f000 103,724 bytes 103,936 bytes 6.56 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 3058799506C01734B7BE9DD264BA40F5
Entropy Analysis Alert

1 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 49 (419,737 bytes)
Resource Type Count Total Size Percentage
IMAGE_FILE 2 12 bytes
0%
RTF_FILE 2 906 bytes
0.2%
RT_BITMAP 6 26,098 bytes
6.2%
RT_ICON 6 369,968 bytes
88.1%
RT_MENU 2 134 bytes
0%
RT_DIALOG 13 5,950 bytes
1.4%
RT_STRING 15 13,854 bytes
3.3%
RT_GROUP_ICON 1 90 bytes
0%
RT_VERSION 1 820 bytes
0.2%
RT_MANIFEST 1 1,905 bytes
0.5%

Certificate Chain Analysis

Certificate Information
Product Kutools for Outlook
Description Kutools for Outlook Installer
File Version 19.00.100
Original Name OutlookKutools.exe
Signing Date 09:25 AM 06/21/2024 (567 days ago)
Verification Status Signed
Signers ExtendOffice Technology Inc.; Sectigo Public Code Signing CA EV R36; Sectigo Public Code Signing Root R46; Sectigo (AAA)
Counter Signers Sectigo RSA Time Stamping Signer #4; Sectigo RSA Time Stamping CA; Sectigo
Internal Name OutlookKutools
Copyright Copyright (C) 2024 ExtendOffice.com
Certificate Chain Summary
Sectigo Public Code Signing Root R46 #1 Primary
Validity Period: 2021-05-25 00:00:00 → 2028-12-31 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 48 FC 93 B4 60 55 94 8D 36 A7 C9 8A 89 D6 94 16
Sectigo Public Code Signing CA EV R36 #2 Chain
Validity Period: 2021-03-22 00:00:00 → 2036-03-21 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 33 D7 08 A8 91 40 53 19 E2 A5 BB D3 39 B9 AD 6E
Sectigo RSA Time Stamping CA #3 Chain
Validity Period: 2019-05-02 00:00:00 → 2038-01-18 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 30 0F 6F AC DD 66 98 74 7C A9 46 36 A7 78 2D B9
Sectigo RSA Time Stamping Signer #4 #4 Chain
Validity Period: 2023-05-03 00:00:00 → 2034-08-02 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 39 4C 25 E1 7C A0 6D 27 A8 65 E2 3B D9 1D 22 D4
ExtendOffice Technology Inc. #5 Chain
Validity Period: 2022-01-28 00:00:00 → 2025-01-27 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 20 EC B5 63 BA EC 4E 2C 1C DD 75 95 82 55 11 09

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.

Your Score for
/

Gridinsoft Anti-Malware

Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware

Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!

Gridinsoft Anti-Malware