Gridinsoft Logo
File Icon

The 迅雷Thunder 12.1.7.2822【11.2.2.1716】.exe (迅雷) File Analysis

Technical Analysis

File Name 迅雷Thunder 12.1.7.2822【11.2.2.1716】.exe
File Type
Win32 EXE
Magic Bytes PE32 executable (GUI) Intel 80386, for MS Windows
SSDEEP Hash
786432:vyADAoIRCvsmqWjjfQJK4prN59e0n7E36mvrAmklb9hUxwc7NTXV3s7vOe:qADOCkm5QA4hP9e0n7MJjLkuxntNuvOe
Scanner Version 1.0.222.174
Database Version 2025-08-10 03:00:37 UTC

Suspicious File Detected

Detected by 7 security engines - requires caution

This file requires additional checking for potential threats. Based on suspicious indicators, we will soon add it to our virus database.
10%
Detection Rate
56,899,345
File Size (bytes)
7/70
Engines Detected
2025-08-10
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
7e0e01dab3b0358ece515eaed429bb37
SHA1
00fc12ec9e46fe9fffc02a5bb7f23ac2d4a30cfd
SHA256
bb1fca198f3f4c7f513dc47d2d78c10e7a69ca9e888b2abdff8bdb8e57d728b6
SHA512
df454bf9000bc9a25f9b48f4e7ac477f63efb660d61b3df52319cbf585c1eed3f2e5b4ae0af6726c6c5deee81fcb711cbaf7f2c97533752c1e308277c5a2937f
ImpHash
0623f5db00daeb7e7d209f48f21ec2ff

Security Engines with Detections (7 of 70)

Bkav
W32.AIDetectMalware Malicious
Skyhigh
Artemis Malicious
CrowdStrike
win/grayware_confidence_60% (D) Malicious
Avast
FileRepMalware [Misc] Malicious
McAfeeD
ti!BB1FCA198F3F Malicious
VBA32
Trojan.Agent Malicious
AVG
FileRepMalware [Misc] Malicious
63 engines reported no threats - Only engines with detections are shown above for clarity

PE Analysis

Basic Information

Icon
Hash: 018f4c2dd3e0a838bc58d5c9adc566f7
Fuzzy: 2ab290a0843f68ad76a3d8fa586002f0
dHash: d4ece0f2bcbac8f0
Image Base 0x00400000
Entry Point 0x004123df
Compilation Time 2011-05-24 15:16:01
Checksum 0x000515a1 (Actual: 0x03649f5f)
OS Version 5.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
Digital Signature No valid SignedData structure was found.
Imports 8 libraries
COMCTL32, KERNEL32, USER32, GDI32, SHELL32, ole32, OLEAUT32, MSVCRT
Exports 0 functions
Resources 12 Resources
Sections 4 Sections

Version Information

CompanyName 深圳市迅雷网络技术有限公司
FileDescription 迅雷
FileVersion 12,1,7,2822
InternalName Thunder 2
LegalCopyright 版权所有 (C) 2025 深圳市迅雷网络技术有限公司
OriginalFilename Thunder
ProductName 迅雷
ProductVersion 12.1.7.2822
LegalTrademarks 迅雷
SpecialBuild 100001
Translation 0x0409 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 71,955 bytes 72,192 bytes 6.58 (Compressed) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 3C72B06E02F4AFBAD83D6AA896575140
.rdata 0x00013000 13,612 bytes 13,824 bytes 4.98 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 62FB898719481A603059FC42554F80EF
.data 0x00017000 10,604 bytes 2,048 bytes 3.69 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 4CB364A72E7C9869EC05686D3FE4AABE
.rsrc 0x0001a000 181,078 bytes 181,248 bytes 5.26 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 8F48204A83C489EB58CD2B49A2211FB9
Entropy Analysis Alert

1 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 12 (180,390 bytes)
Resource Type Count Total Size Percentage
RT_ICON 9 177,904 bytes
98.6%
RT_GROUP_ICON 1 132 bytes
0.1%
RT_VERSION 1 780 bytes
0.4%
RT_MANIFEST 1 1,574 bytes
0.9%

Certificate Chain Analysis

Certificate Information
Product 迅雷
Description 迅雷
File Version 12,1,7,2822
Original Name Thunder
Internal Name Thunder 2
Copyright 版权所有 (C) 2025 深圳市迅雷网络技术有限公司

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
7 antivirus engines detected potential threats. This could be a false positive, especially for system tools or packed software. Verify the file source and check if it's digitally signed by a trusted publisher.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware