| File Name | WinOptimizerFW.exe |
| File Type |
PE32 executable (GUI) Intel 80386, for MS Windows
|
| Scanner Version | 1.0.228.174 |
| Database Version | 2025-11-08 11:00:25 UTC |
No threats detected by our scanner
| Hash Type | Value | Action |
|---|---|---|
| MD5 |
51d99650e0a3a3c1d2ef758397ba7464
|
|
| SHA1 |
2e00394ce66c4d9ee79bb6896ac3f5a081d44231
|
|
| SHA256 |
cd10964620e9cfdbb6987ccafed4edc4da6d7f5e4279c1e33fab7a3bee26dbe0
|
|
| SHA512 |
c9cacf65ff4710bc654101c2577cbacf433d24abe8f9e22140d3c9aa155b1718a9075881aac4f0ac4e5069680f95fcfd0afefd2a62d432fa7799270514cd90c2
|
|
| ImpHash |
930f76b9828bb74525764bab01e055cf
|
| Icon |
Hash: e2891666a56bf398a2d32b7967a6d151
Fuzzy: 138b641094d363c5f584ae7024ea7479 dHash: 96b2e879cdadc9c6 |
| Image Base | 0x00400000 |
| Entry Point | 0x0083d824 |
| Compilation Time | 2025-04-29 23:08:02 |
| Checksum | 0x00516bed (Actual: 0x00516bed) |
| OS Version | 6.0 |
| PEiD Signatures |
PE32 executable (GUI) Intel 80386, for MS Windows
|
| Digital Signature | OK |
| Imports | 17 libraries |
| Exports | 2 functions |
| Resources | 255 Resources |
| Sections | 10 Sections |
| FileDescription | WinOptimizerFW |
| FileVersion | 1.0.0.0 |
| ProductName | WinOptimizerFW |
| ProductVersion | 1.0.0.0 |
| ProgramID | com.embarcadero.WinOptimizerFW |
| Translation | 0x0409 0x04e4 |
| Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
|---|---|---|---|---|---|---|
.text |
0x00001000 |
4,412,560 bytes | 4,412,928 bytes | 6.34 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
18441869BED8DB2D6C919F69DBBC0651 |
.itext |
0x00437000 |
26,884 bytes | 27,136 bytes | 6.04 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
D43DB180ABD2F3F9F0FC9B2F149DF9B0 |
.data |
0x0043e000 |
57,548 bytes | 57,856 bytes | 5.52 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
32700F206A77C29E8FCB8895A9757397 |
.bss |
0x0044d000 |
166,212 bytes | 0 bytes | 0.00 (Normal) |
IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
D41D8CD98F00B204E9800998ECF8427E |
.idata |
0x00476000 |
16,756 bytes | 16,896 bytes | 5.19 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
9E04222E8AEE3F2927E9885C31D42DC4 |
.didata |
0x0047b000 |
3,030 bytes | 3,072 bytes | 4.39 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
0F115C60FCCE6B0C501628AEFA65122E |
.edata |
0x0047c000 |
119 bytes | 512 bytes | 1.44 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
9C8A5A9E6FC5DDFF07E3DC9888315019 |
.tls |
0x0047d000 |
84 bytes | 0 bytes | 0.00 (Normal) |
IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
D41D8CD98F00B204E9800998ECF8427E |
.rdata |
0x0047e000 |
93 bytes | 512 bytes | 1.40 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
40D7785711576500CAB735567AED5236 |
.rsrc |
0x0047f000 |
746,496 bytes | 746,496 bytes | 6.34 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
13F337C67EC03CC83EE5118FB3F43472 |
| Resource Type | Count | Total Size | Percentage |
|---|---|---|---|
| RT_CURSOR | 20 | 10,560 bytes | |
| RT_BITMAP | 95 | 66,092 bytes | |
| RT_ICON | 13 | 482,104 bytes | |
| RT_DIALOG | 2 | 164 bytes | |
| RT_STRING | 36 | 32,904 bytes | |
| RT_RCDATA | 68 | 135,483 bytes | |
| RT_GROUP_CURSOR | 18 | 360 bytes | |
| RT_GROUP_ICON | 1 | 188 bytes | |
| RT_VERSION | 1 | 548 bytes | |
| RT_MANIFEST | 1 | 720 bytes |
| Product | WinOptimizerFW |
| Description | WinOptimizerFW |
| File Version | 1.0.0.0 |
| Signing Date | 07:03 AM 10/30/2025 (71 days ago) |
| Verification Status | Signed |
| Signers | Ashampoo GmbH & Co. KG; GlobalSign GCC R45 EV CodeSigning CA 2020; GlobalSign Code Signing Root R45 |
| Counter Signers | DigiCert SHA256 RSA4096 Timestamp Responder 2025 1; DigiCert Trusted G4 TimeStamping RSA4096 SHA256 2025 CA1; DigiCert Trusted Root G4; DigiCert |
76 53 FE AC 75 46 48 93 F5 E5 D7 4A 48 3A 4E F877 BD 0E 05 B7 59 0B B6 1D 47 61 53 1E 3F 75 ED3D 47 FB 20 26 58 07 73 2B FD 93 C50A 80 EF 18 4B 8D F1 05 82 D1 C4 76 A7 95 74 680D C7 AC 57 05 FF 21 99 2E 40 43 22 0C 3A 49 860E 9B 18 8E F9 D0 2D E7 EF DB 50 E2 08 40 18 5A✓ This file has been digitally signed and the certificate chain has been verified
OK
Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:
Download Anti-MalwareThis file appears clean, but regular security maintenance is important
Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware
Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!