| File Name | ludusavi.exe |
| File Type |
PE32+ executable (console) x86-64, for MS Windows
|
| Scanner Version | 1.0.225.174 |
| Database Version | 2025-09-20 03:00:37 UTC |
No threats detected by our scanner
| Hash Type | Value | Action |
|---|---|---|
| MD5 |
d76fe1c809d7cd903b8c63eee2a1d5ff
|
|
| SHA1 |
f14862a7e50fd8701b8f8ce21860ce79cd390ce5
|
|
| SHA256 |
b7fd5b231d58be1f1c457f14a87488235a6c232d5a2d02b48ac67419c8b5e228
|
|
| SHA512 |
bf9188e26bba7bfe956d4143f868e959f8d090bfb6e324bae52e5bd1e9fb89f8fc7dc6eaf24bd9284ffbb0fd8d333bf09d6fc2f5459465feb59e5f4309ba2375
|
|
| ImpHash |
4751d3ea9b73370de9cf5c6dae88629f
|
| Icon |
Hash: 0806b84d55698d1d5ada0087c225ca1c
Fuzzy: c24fae8451f68ecdc5c980b8e1d53407 dHash: 42c89c9c9b8bcabc |
| Image Base | 0x140000000 |
| Entry Point | 0x141413f1c |
| Compilation Time | 2025-04-18 01:25:22 |
| Checksum | 0x00000000 (Actual: 0x01c73759) |
| OS Version | 6.0 |
| PEiD Signatures |
PE32+ executable (console) x86-64, for MS Windows
|
| PDB Path | ludusavi.pdb |
| Digital Signature | No valid SignedData structure was found. |
| Imports | 19 libraries |
| Exports | 0 functions |
| Resources | 4 Resources |
| Sections | 7 Sections |
| ProductName | ludusavi |
| FileVersion | 0.29.1 |
| FileDescription | ludusavi |
| ProductVersion | 0.29.1 |
| Translation | 0x0000 0x04b0 |
| Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
|---|---|---|---|---|---|---|
.text |
0x00001000 |
21,504,480 bytes | 21,504,512 bytes | 6.32 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
B67B7AD3D1BC53344F4004D540F5C09A |
.rdata |
0x01484000 |
7,312,372 bytes | 7,312,384 bytes | 5.99 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
2DE9F2EE6318159F1CD7B6A2707EB555 |
.data |
0x01b7e000 |
41,816 bytes | 34,816 bytes | 3.67 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
2D8C6912565DC179AA2DED6B9D9B85A3 |
.pdata |
0x01b89000 |
817,596 bytes | 817,664 bytes | 6.85 (Compressed) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
500B9CC8AD4D55A6D2D3E06CFE34C769 |
.fptable |
0x01c51000 |
256 bytes | 512 bytes | 0.00 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
BF619EAC0CDF3F68D496EA9344137E8B |
.rsrc |
0x01c52000 |
18,648 bytes | 18,944 bytes | 2.50 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
C6EA0B8917AAC7656C20129A9EAC743A |
.reloc |
0x01c57000 |
99,580 bytes | 99,840 bytes | 5.49 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
0F35D1EF2A582AF72EB7DF8EA4EE6C5B |
1 section(s) with elevated entropy (≥6.5) - possible compression
| Resource Type | Count | Total Size | Percentage |
|---|---|---|---|
| RT_ICON | 1 | 16,936 bytes | |
| RT_GROUP_ICON | 1 | 20 bytes | |
| RT_VERSION | 1 | 432 bytes | |
| RT_MANIFEST | 1 | 945 bytes |
| Product | ludusavi |
| Description | ludusavi |
| File Version | 0.29.1 |
✓ This file has been digitally signed and the certificate chain has been verified
No valid SignedData structure was found.
Recommendation: Verify the file source and ensure it comes from a trusted publisher.
Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:
Download Anti-MalwareThis file appears clean, but regular security maintenance is important
Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware
Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!