The JZUniDriverCovIns 37cfebfa exe 江下信息科技(惠州)有限公司 File Malware Analysis
Gridinsoft Logo
File Icon

The JZUniDriverCovIns_37cfebfa.exe File Analysis

Technical Analysis

File Name JZUniDriverCovIns_37cfebfa.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed, Nullsoft Installer self-extracting archive
Scanner Version 1.0.216.174
Database Version 2025-05-17 06:00:29 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
11,721,368
File Size (bytes)
2025-05-17
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
3b1d0be810adb3bd40536dca0f22691a
SHA1
297bd7505b2b83d7a0ac482687e0a1bae3a305db
SHA256
c825a8cf03ce855b855d8f974b6dfabeb95bd44f484b08110d36bf506ac35e36
SHA512
c312a8055ec548c66248cf2434e423fd1a106161e292347e67861d785e76801f1aeb3b92a20a5f030d00f8e825fe9f1efc561b14366a710859357446225e906c
ImpHash
b7aa01e7263a2be32db5b6f93337a38a

PE Analysis

Basic Information

Icon
Hash: 5197c19e98d64c4aadfb40a9e148d3f1
Fuzzy: c6d7d02fc5dfedb218d046baf5dc6bbb
dHash: 78f0aaa2ccc8fa3c
Image Base 0x00400000
Entry Point 0x00640120
Compilation Time 2024-03-30 16:56:02
Checksum 0x00b2f679 (Actual: 0x00b2f679)
OS Version 4.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed, Nullsoft Installer self-extracting archive
Digital Signature OK
Imports 7 libraries
ADVAPI32, COMCTL32, GDI32, KERNEL32, ole32, SHELL32, USER32
Exports 0 functions
Resources 21 Resources
Sections 3 Sections

Version Information

Comments https://www.callmysoft.com/driver
CompanyName 江下信息科技(惠州)有限公司
FileDescription 万能驱动大师(专业版)
FileVersion 6.1.3.0
LegalCopyright ©<江下科技>版权所有
ProductName 万能驱动大师(专业版)
ProductVersion 6.1.3.0
Translation 0x0804 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
UPX0 0x00001000 2,334,720 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
UPX1 0x0023b000 24,576 bytes 21,504 bytes 7.83 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE CD8041EEF70BC16B4BBEAE9B63D69DB6
.rsrc 0x00241000 876,544 bytes 874,496 bytes 7.61 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 576B8A69A6B8951B5FAAA886704A5F1B
Entropy Analysis Alert

2 section(s) with high entropy (≥7.5) detected - possible packing/encryption

Resource Analysis

Total Resources: 21 (873,318 bytes)
Resource Type Count Total Size Percentage
RT_ICON 15 869,850 bytes
99.6%
RT_DIALOG 3 1,000 bytes
0.1%
RT_GROUP_ICON 1 216 bytes
0%
RT_VERSION 1 656 bytes
0.1%
RT_MANIFEST 1 1,596 bytes
0.2%

Certificate Chain Analysis

No Digital Signatures

This file is not digitally signed.

Security Implications:
  • Cannot verify the publisher's identity
  • Increased security risk when running this file
  • May trigger security warnings on some systems

⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources

Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware

Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!

Gridinsoft Anti-Malware