The RogueKiller_2026_portable64 (majorgeeks.com).exe (Anti-Malware Scan and Removal) File Analysis
Technical Analysis
| File Name | RogueKiller_2026_portable64 (majorgeeks.com).exe |
| File Type |
PE32+ executable (GUI) x86-64, for MS Windows
|
| Scanner Version | 1.0.239.174 |
| Database Version | 2026-02-25 19:00:24 UTC |
Clean File
No threats detected by our scanner
Scan Another File
File Identification
| Hash Type | Value | Action |
|---|---|---|
| MD5 |
c2995558eaf3d7d64448f945ec7282e9
|
|
| SHA1 |
9ccb533551a5a3bda51fa286b93cdf6680d8e423
|
|
| SHA256 |
c7b7bf91c19018579afce1d714fda55a1debd097cf05502505924260763ffb16
|
|
| SHA512 |
571fd2822f1b728966f4ec9b1fecfe759d8f2943d33f81e0c98b077168ccae791e65b48c99ba741d6a8f2d8c37cf6d6ca4d1f05b688d8f1b36eff0c5e2d1849b
|
|
| ImpHash |
fa21ee008df057dda739313b5fd0697f
|
PE Analysis
Basic Information
▼| Icon |
Hash: 374a174076a3d232207d021b8f85388d
Fuzzy: d2f740df470017271009413b1adc2f32 dHash: f0ce96b2aad4cc71 |
| Image Base | 0x140000000 |
| Entry Point | 0x14107dd5c |
| Compilation Time | 2026-01-20 14:30:31 |
| Checksum | 0x02543543 (Actual: 0x02543543) |
| OS Version | 6.0 |
| PEiD Signatures |
PE32+ executable (GUI) x86-64, for MS Windows
|
| PDB Path | E:\Adlice\RogueKillerQt\x64\RelWithDebInfo\RogueKiller.pdb |
| Digital Signature | OK |
| Imports | 25 libraries |
| Exports | 0 functions |
| Resources | 42 Resources |
| Sections | 11 Sections |
Version Information
▼| CompanyName | Adlice Software |
| FileDescription | Anti-Malware Scan and Removal |
| FileVersion | 16.5.5.0 |
| InternalName | RogueKiller Anti-Malware |
| LegalCopyright | Copyright Adlice Software(C) 2025 |
| LegalTrademarks1 | Adlice Software |
| LegalTrademarks2 | Adlice Software |
| OriginalFilename | Adlice Protect |
| ProductName | Adlice Protect |
| ProductVersion | 16.5.5.0 |
| Translation | 0x040c 0x04b0 |
PE Sections
▼| Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
|---|---|---|---|---|---|---|
.text |
0x00001000 |
19,581,780 bytes | 19,581,952 bytes | 6.48 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
8232510A345C18A815A239A9953B5A89 |
.rdata |
0x012ae000 |
11,404,736 bytes | 11,404,800 bytes | 6.54 (Compressed) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
E310810D8BCF96C4EE0111980870F802 |
.data |
0x01d8f000 |
632,988 bytes | 333,312 bytes | 3.70 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
463C24836BA39E1261757795BA1F1FFE |
.pdata |
0x01e2a000 |
1,164,744 bytes | 1,164,800 bytes | 6.75 (Compressed) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
9C03D2E7C3E4D0E2D2FA806312BF21F1 |
.qtmetad |
0x01f47000 |
1,606 bytes | 2,048 bytes | 4.78 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_SHARED|IMAGE_SCN_MEM_READ
|
824A21E386E1DBBEFBD99D2F485A777B |
.tls |
0x01f48000 |
13 bytes | 512 bytes | 0.02 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
8E3343EFA9AFC26AC6CAF49228CBE049 |
.qtmimed |
0x01f49000 |
322,789 bytes | 323,072 bytes | 8.00 (Packed/Encrypted) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_SHARED|IMAGE_SCN_MEM_READ
|
2D32D357AB751FFBBB513570C6EE6986 |
.gfids |
0x01f98000 |
508 bytes | 512 bytes | 4.24 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
30528DD344B3CFD49799C47300F0B6DE |
_RDATA |
0x01f99000 |
544 bytes | 1,024 bytes | 2.07 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
75C872B557659A0DE9675B523700AFD5 |
.rsrc |
0x01f9a000 |
6,103,632 bytes | 6,104,064 bytes | 7.88 (Packed/Encrypted) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
4F7A7AEEB0FD353636B4B63568C694EE |
.reloc |
0x0256d000 |
119,672 bytes | 119,808 bytes | 5.49 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
19B4700F332D5E2FA12D954977C97F55 |
Entropy Analysis Alert
2 section(s) with high entropy (≥7.5) detected - possible packing/encryption
2 section(s) with elevated entropy (≥6.5) - possible compression
Resource Analysis
▼| Resource Type | Count | Total Size | Percentage |
|---|---|---|---|
| BINARY | 25 | 5,188,980 bytes | |
| WAVE | 1 | 742,130 bytes | |
| RT_ICON | 13 | 168,171 bytes | |
| RT_GROUP_ICON | 1 | 188 bytes | |
| RT_VERSION | 1 | 960 bytes | |
| RT_MANIFEST | 1 | 902 bytes |
Certificate Chain Analysis
▼Certificate Information
| Product | Adlice Protect |
| Description | Anti-Malware Scan and Removal |
| File Version | 16.5.5.0 |
| Original Name | Adlice Protect |
| Signing Date | 02:33 PM 01/20/2026 (144 days ago) |
| Verification Status | Signed |
| Signers | ADLICE; Sectigo Public Code Signing CA EV R36; Sectigo Public Code Signing Root R46; Sectigo (AAA) |
| Counter Signers | Sectigo Public Time Stamping Signer R36; Sectigo Public Time Stamping CA R36; Sectigo Public Time Stamping Root R46 |
| Internal Name | RogueKiller Anti-Malware |
| Copyright | Copyright Adlice Software(C) 2025 |
Certificate Chain Summary
7A 23 AE DA 53 69 96 0F 91 C8 3E 5C F4 C7 E3 3F33 D7 08 A8 91 40 53 19 E2 A5 BB D3 39 B9 AD 6EA4 29 3B 6E 1E DD D7 A7 34 08 87 AD 7A 4E B7 2436 C2 B0 BD 7C 1B 3A E7 A3 B3 DD 36 CB C9 75 68FF 72 A1 3E 68 C0 CD C5 75 04 B3 F7 11 CB 92 A3✓ This file has been digitally signed and the certificate chain has been verified
- The signature ensures file integrity and authenticity from the publisher
- Timestamping proves when the signature was applied
Certificate Verification Status
OK
Remember: This is Result of Online Virus Scanner
Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:
Download Anti-Malware
Keep Your System Protected
This file appears clean, but regular security maintenance is important
-
1
Weekly Quick Scans: Set a reminder to run a scan every Sunday. Most infections are caught within the first week, so regular checks give you peace of mind.
-
2
Update Everything: Those annoying update popups exist for a reason — they patch security holes. Windows, browsers, Adobe, Java — keep them all current.
-
3
Download Smart: Stick to official websites and app stores. If a "free" version of paid software sounds too good to be true, it probably comes with unwanted extras.
-
4
Think Before You Click: Malware loves email attachments and "urgent" links. Even if an email looks like it's from your bank or a friend, verify suspicious requests through a different channel.
Leave a Comment
Gridinsoft Anti-Malware
Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware
Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!