Gridinsoft Logo
File Icon

The Sim_EKB_Install_2022_11_27_Run_as_Admin.exe (Simatic key help) File Analysis

Technical Analysis

File Name Sim_EKB_Install_2022_11_27_Run_as_Admin.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.226.174
Database Version 2025-10-06 07:00:26 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
4,085,760
File Size (bytes)
2025-10-06
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
7d0bf40047e3aa9c57ddb248272b2ff8
SHA1
8586dddf0b9cc8b996c20b9c4fd9a0f4ee544790
SHA256
b59248759b1633c4e8bbbbdb05e4ebe9f38c7ef84fdf73de558bda1d7f3ea645
SHA512
e61c30daa7095954cb314f44219aab1953e83bc5443f91d0891dda4e55e3581fb1763551401ad070753ec520a799958103e346b649938d47c70e5e9f76fac473
ImpHash
d868ee9a29f0610773606137f3f876e1

PE Analysis

Basic Information

Icon
Hash: 3b7f343f7bbbf2ed2927bb32a5a0c57c
Fuzzy: f556f203c4aa374525e74e601a0880cf
dHash: 3e9698b86464a4a4
Image Base 0x00400000
Entry Point 0x0073ee84
Compilation Time 2022-11-27 10:48:18
Checksum 0x00000000 (Actual: 0x003e8845)
OS Version 5.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
Digital Signature No valid SignedData structure was found.
Imports 13 libraries
Exports 3 functions
Resources 79 Resources
Sections 11 Sections

Version Information

CompanyName plcforum.uz.ua
FileDescription Simatic key help
FileVersion 2015.03.29
ProductVersion 2015.03.29
Translation 0x0409 0x04e4

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 3,388,496 bytes 3,388,928 bytes 6.10 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 5A651B2DEC7075D29FC0D9C8CF945205
.itext 0x0033d000 7,964 bytes 8,192 bytes 6.29 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 40AC3D0FB7F7C652AD74AE4E4CC6ACF6
.data 0x0033f000 157,012 bytes 157,184 bytes 5.42 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 316CC2AAEE3BFDB774F805B0081F3672
.bss 0x00366000 5,463,760 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
.idata 0x0089c000 15,862 bytes 15,872 bytes 5.27 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 63F4E8C3555F067CAA3DE5D4DE85654E
.didata 0x008a0000 2,624 bytes 3,072 bytes 3.74 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE E27A56E21B49834A813F3CD9DF9BDE92
.edata 0x008a1000 165 bytes 512 bytes 2.08 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 8C36AE1AA722677CAF7A0E74D968D249
.tls 0x008a2000 76 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
.rdata 0x008a3000 93 bytes 512 bytes 1.36 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 0EEF7B402AD1D95962EC5530BEC5A4DA
.reloc 0x008a4000 297,520 bytes 297,984 bytes 6.65 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 688D32802491456168FF4CB60DDCB9F3
.rsrc 0x008ed000 212,480 bytes 212,480 bytes 6.22 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 8B77877309B03FD6CA01B11A194FE324
Entropy Analysis Alert

1 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 79 (207,783 bytes)
Resource Type Count Total Size Percentage
RT_CURSOR 7 2,156 bytes
1%
RT_BITMAP 26 8,044 bytes
3.9%
RT_ICON 1 744 bytes
0.4%
RT_STRING 28 22,092 bytes
10.6%
RT_RCDATA 7 172,623 bytes
83.1%
RT_GROUP_CURSOR 7 140 bytes
0.1%
RT_GROUP_ICON 1 20 bytes
0%
RT_VERSION 1 476 bytes
0.2%
RT_MANIFEST 1 1,488 bytes
0.7%

Certificate Chain Analysis

Certificate Information
Description Simatic key help
File Version 2015.03.29

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.

Your Score for
/

Gridinsoft Anti-Malware

Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware

Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!

Gridinsoft Anti-Malware