Gridinsoft Logo
File Icon

The Noxic.exe (Installation) File Analysis

Technical Analysis

File Name Noxic.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.216.174
Database Version 2025-05-05 17:00:15 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
101,804,515
File Size (bytes)
2025-05-05
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
3a74f44c697eab7f7d4be6f8f45f2fa3
SHA1
9911e33b3db1ffe049f56ee1d5af12c189a02c3a
SHA256
d317c6c038ca4e934f981c1c37d3d47b891249b10c7ce3e24d6ad3306a9a36dc
SHA512
1e047418c6249363674612892389919971e722e8ac5c29bf365c4d41404aba9c2dbf9c76bb7c486da95f09883550d7d7fa24e631a9c91a9d02752e2133fb708a
ImpHash
700f3d71f8650561ec35b7c424ffadf5

PE Analysis

Basic Information

Icon
Hash: 677d753f7aedd830d4f8fb732d2bda36
Fuzzy: 231c26744297b022d1a0357bd1ab62a8
dHash: 9ab2262e3236a64e
Image Base 0x00400000
Entry Point 0x0067c6bc
Compilation Time 2022-09-15 10:38:09
Checksum 0x00000000 (Actual: 0x0612015e)
OS Version 5.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
Digital Signature No valid SignedData structure was found.
Imports 13 libraries
Exports 1 functions
Resources 77 Resources
Sections 11 Sections

Version Information

CompanyName Unknown
FileDescription Installation
FileVersion 1.0.0.0
LegalCopyright (c)
ProductName Setup
ProductVersion 1.0.0.0
Translation 0x0409 0x04e4

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 2,596,264 bytes 2,596,352 bytes 6.43 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ A7C6183C983C872CA55173E0F8BCF713
.itext 0x0027b000 5,932 bytes 6,144 bytes 6.25 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ EDFECB0127C6B7F2D582C7413F5E8070
.data 0x0027d000 39,216 bytes 39,424 bytes 6.08 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE C33F3CBF0E540B3F220F871E3D43A45C
.bss 0x00287000 22,908 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
.idata 0x0028d000 16,292 bytes 16,384 bytes 5.32 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE CE8902D6D5C5929BFF703D35B6F45570
.didata 0x00291000 2,562 bytes 3,072 bytes 3.77 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE F7852A03E3576766A9861DF1E373DD2B
.edata 0x00292000 91 bytes 512 bytes 1.05 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ C48449BEF40BBFDF548BEACE45616EC7
.tls 0x00293000 64 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
.rdata 0x00294000 93 bytes 512 bytes 1.35 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 575FD9F9E06974C22194BA5E0F2A56BD
.reloc 0x00295000 221,908 bytes 222,208 bytes 6.73 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ EDE861083D94A38ED6ADC0F03325DA13
.rsrc 0x002cc000 244,852 bytes 245,248 bytes 4.60 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ F2D77A6CEAD6050FCE56D4EB61D50B40
Entropy Analysis Alert

1 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 77 (240,441 bytes)
Resource Type Count Total Size Percentage
RT_CURSOR 7 2,156 bytes
0.9%
RT_BITMAP 21 6,964 bytes
2.9%
RT_ICON 9 173,288 bytes
72.1%
RT_STRING 24 18,848 bytes
7.8%
RT_RCDATA 6 36,719 bytes
15.3%
RT_GROUP_CURSOR 7 140 bytes
0.1%
RT_GROUP_ICON 1 132 bytes
0.1%
RT_VERSION 1 524 bytes
0.2%
RT_MANIFEST 1 1,670 bytes
0.7%

Certificate Chain Analysis

Certificate Information
Product Setup
Description Installation
File Version 1.0.0.0
Copyright (c)

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware