Gridinsoft Logo

The Go.dll File Analysis

Technical Analysis

File Name Go.dll
File Type
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.218.174
Database Version 2025-06-11 00:00:14 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
2,842,624
File Size (bytes)
2025-06-11
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
18534f0229b68d8a7a7324568e629b12
SHA1
c010131aa832de66b937daa97165bc7065f8b1af
SHA256
cb8d4d13e5339aa40f911e1c92480bc82e91e6d770bf9dc83f89d7469e4353b0
SHA512
1150d64fe5f2f372cf2a7d33830551d322cd845cd7774077ad9a800c8bcb0b6975b374a40b9d7e8381c3cb92d96fe49e206bd15e9546be5c1e3b84c09e00e026
ImpHash
5e5ac8ab7be27ac2d1c548e5589378b6

PE Analysis

Basic Information

Image Base 0x10000000
Entry Point 0x10b1cb04
Compilation Time 2024-06-16 07:47:06
Checksum 0x00000000 (Actual: 0x002ba7d8)
OS Version 6.0
PEiD Signatures PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
Digital Signature No valid SignedData structure was found.
Imports 7 libraries
kernel32, user32, advapi32, oleaut32, gdi32, shell32, version
Exports 1 functions
Resources 1 Resources
Sections 8 Sections

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
0x00001000 102,400 bytes 57,344 bytes 7.79 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 99705DD140D0588C31544F9C7494E13B
0x0001a000 53,248 bytes 24,576 bytes 7.98 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 647145EF7BE673B1E9C929414D949AD1
0x00027000 8,192 bytes 4,096 bytes 2.08 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 34D965B2E7D65C4A9B0A0FF9AC5B881E
0x00029000 4,096 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
0x0002a000 8,192 bytes 8,192 bytes 6.31 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 510A738C5F08E2BF01825CF14CE4F018
.rsrc 0x0002c000 4,096 bytes 4,096 bytes 0.44 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 2E90853FECEF73004F086C07F7820A13
0x0002d000 8,945,664 bytes 208,896 bytes 7.99 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 95FE90ECFF86D652DF838A63D1AEF8F9
.data 0x008b5000 2,531,328 bytes 2,531,328 bytes 7.98 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 9EA0F559A6E32A8F9A2D4BA6E21B78F7
Entropy Analysis Alert

4 section(s) with high entropy (≥7.5) detected - possible packing/encryption

Resource Analysis

Total Resources: 1 (145 bytes)
Resource Type Count Total Size Percentage
RT_MANIFEST 1 145 bytes
100%

Certificate Chain Analysis

No Digital Signatures

This file is not digitally signed.

Security Implications:
  • Cannot verify the publisher's identity
  • Increased security risk when running this file
  • May trigger security warnings on some systems

⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources

Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware