Gridinsoft Logo
File Icon

The Bootstrapper.exe File Analysis

Technical Analysis

File Name Bootstrapper.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.210.174
Database Version 2025-03-13 12:00:45 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
689,200
File Size (bytes)
2025-03-13
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
c9974036bcc60eef8cb2f800d955884e
SHA1
667ba427619f342f862ca39f6b5926d6cb93f24c
SHA256
b9b9c219bae21202f412a029e4fe60863aa7a1ed2687d995782818a3b10cf09c
SHA512
84ca65817f747d9ac8f0bf69273d21f67a92c2b48d58fcce5918584d29fa26272891b685ce816fb5357b431202b3c1b8eba9c217643a4ccd8a8268101d7ac4b9
ImpHash
42d651751c1d75ed4fa8fe71751854ff

PE Analysis

Basic Information

Icon
Hash: c4cd31b29b022c926ebcf5707e75e703
Fuzzy: a2bbb4374d0f1bbb445e134491a22cdf
dHash: 82353a38333317c0
Image Base 0x00400000
Entry Point 0x0042df71
Compilation Time 2019-09-17 05:33:38
Checksum 0x000b3b6c (Actual: 0x000b3b6c)
OS Version 5.1
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
PDB Path C:\agent\_work\66\s\build\ship\x86\burn.pdb
Digital Signature OK
Imports 8 libraries
ADVAPI32, USER32, OLEAUT32, GDI32, SHELL32, ole32, KERNEL32, RPCRT4
Exports 0 functions
Resources 11 Resources
Sections 6 Sections

Version Information

CompanyName Jotta AS
FileDescription Jottacloud
FileVersion 25.3.12.426
InternalName setup
LegalCopyright Copyright (c) Jotta AS. All rights reserved.
OriginalFilename Bootstrapper.exe
ProductName Jottacloud
ProductVersion 25.3.12.426
Translation 0x0409 0x04e4

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 298,999 bytes 299,008 bytes 6.57 (Compressed) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ C66F549D5FC7D10A5F63350701C6B3F9
.rdata 0x0004a000 128,864 bytes 129,024 bytes 5.14 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 5A2F02DBBBDA51CFAC50FB52CEA6D11B
.data 0x0006a000 5,884 bytes 2,560 bytes 3.16 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 8FE8BA25B04A7BEB04C2AB2D5E9EA736
.wixburn 0x0006c000 56 bytes 512 bytes 0.59 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 6E0344BCDBD10728C3C5D48F03629681
.rsrc 0x0006d000 120,412 bytes 120,832 bytes 3.52 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 3DB213C66755E2F62D47E1AFEC63C63F
.reloc 0x0008b000 15,824 bytes 15,872 bytes 6.79 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 7CC10E0060080262550138057FD6B87D
Entropy Analysis Alert

2 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 11 (119,744 bytes)
Resource Type Count Total Size Percentage
RT_ICON 7 107,346 bytes
89.6%
RT_MESSAGETABLE 1 10,304 bytes
8.6%
RT_GROUP_ICON 1 104 bytes
0.1%
RT_VERSION 1 756 bytes
0.6%
RT_MANIFEST 1 1,234 bytes
1%

Certificate Chain Analysis

No Digital Signatures

This file is not digitally signed.

Security Implications:
  • Cannot verify the publisher's identity
  • Increased security risk when running this file
  • May trigger security warnings on some systems

⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources

Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware