The OOSU10.exe (O&O ShutUp10 - Free antispy tool for Windows 10 and 11) File Analysis
Technical Analysis
| File Name | OOSU10.exe |
| File Type |
PE32+ executable (GUI) x86-64, for MS Windows
|
| Scanner Version | 1.0.245.174 |
| Database Version | 2026-05-20 14:00:41 UTC |
Clean File
No threats detected by our scanner
Scan Another File
File Identification
| Hash Type | Value | Action |
|---|---|---|
| MD5 |
65da8c00dabc065b92410ecdefec2a93
|
|
| SHA1 |
0abccb64907acad149f83786234b5e2fbc91f1e1
|
|
| SHA256 |
d520d96414bdfabca11409f4511ce8c3d99e706d6b79f2803920b90abffd5339
|
|
| SHA512 |
ecff8c3d20dc55490983a668a3ab800564f4e51212f11f63afcb24f97239221ed95a5c6d3eb530c83589ddffc9bfc004ba90c862b0b4b83f7f1f65222f8dc9e2
|
|
| ImpHash |
70d2e884fa127843c5bcbb53da86b6c8
|
PE Analysis
Basic Information
▼| Icon |
Hash: 8347f4e345b86718c7c7fa92a0348377
Fuzzy: 91499e34564f4ed85746dbf0fb6aef3b dHash: 273373e4cc983317 |
| Image Base | 0x140000000 |
| Entry Point | 0x1405c27b0 |
| Compilation Time | 2025-08-19 22:11:35 |
| Checksum | 0x04c5fb40 (Actual: 0x04c5fb40) |
| OS Version | 6.0 |
| PEiD Signatures |
PE32+ executable (GUI) x86-64, for MS Windows
|
| PDB Path | D:\a\_work\1\s\artifacts\obj\coreclr\windows.x64.Release\Corehost.Static\singlefilehost.pdb |
| Digital Signature | OK |
| Imports | 17 libraries |
| Exports | 5 functions |
| Resources | 10 Resources |
| Sections | 10 Sections |
Version Information
▼| Translation | 0x0000 0x04b0 |
| Comments | O&O ShutUp10 - Free antispy tool for Windows 10 and 11 |
| CompanyName | O&O Software GmbH |
| FileDescription | O&O ShutUp10 - Free antispy tool for Windows 10 and 11 |
| FileVersion | 3.0.1076.0 |
| InternalName | OOSU10.dll |
| LegalCopyright | © 2015-2026 O&O Software GmbH, Berlin. |
| LegalTrademarks | |
| OriginalFilename | OOSU10.dll |
| ProductName | O&O ShutUp10 |
| ProductVersion | 3.0.1076.0 |
| Assembly Version | 3.0.1076.0 |
PE Sections
▼| Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
|---|---|---|---|---|---|---|
.text |
0x00001000 |
6,345,436 bytes | 6,345,728 bytes | 6.45 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
C1BB8C0A5AD9D9FAEC90519904E56EC3 |
.CLR_UEF |
0x0060f000 |
221 bytes | 512 bytes | 3.10 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
FCF41F3D886AC9E8307A56DFE6E6751B |
.rdata |
0x00610000 |
1,567,332 bytes | 1,567,744 bytes | 5.67 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
0D752D3B728D4C93E3BC013108CD73A6 |
.data |
0x0078f000 |
130,900 bytes | 38,912 bytes | 3.33 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
EACD060BC22B85BDA19C0691A2EA8F7A |
.pdata |
0x007af000 |
221,376 bytes | 221,696 bytes | 6.48 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
66C33A6B3BB03D39301937192217DE49 |
.didat |
0x007e6000 |
56 bytes | 512 bytes | 0.43 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
68722C189FD21A72FCD6606C7BD31139 |
Section |
0x007e7000 |
8 bytes | 512 bytes | 0.00 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
BF619EAC0CDF3F68D496EA9344137E8B |
_RDATA |
0x007e8000 |
78,344 bytes | 78,848 bytes | 5.48 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
617430A8CD708DDA1865FEE2910D8A1A |
.rsrc |
0x007fc000 |
1,384,008 bytes | 1,384,448 bytes | 6.40 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
A7E1F3F7D15736A821ED3D71CA698590 |
.reloc |
0x0094e000 |
32,316 bytes | 32,768 bytes | 5.45 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
D191285E77877A5B7AA026D7F26C78D4 |
Resource Analysis
▼| Resource Type | Count | Total Size | Percentage |
|---|---|---|---|
| RT_ICON | 4 | 31,842 bytes | |
| RT_RCDATA | 3 | 1,346,984 bytes | |
| RT_GROUP_ICON | 1 | 62 bytes | |
| RT_VERSION | 1 | 1,094 bytes | |
| RT_MANIFEST | 1 | 3,251 bytes |
Certificate Chain Analysis
▼Certificate Information
| Product | O&O ShutUp10 |
| Description | O&O ShutUp10 - Free antispy tool for Windows 10 and 11 |
| File Version | 3.0.1076.0 |
| Original Name | OOSU10.dll |
| Signing Date | 08:20 AM 05/20/2026 (24 days ago) |
| Verification Status | Signed |
| Signers | O&O Software GmbH; DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1; DigiCert Trusted Root G4 |
| Counter Signers | Globalsign R45 TSA for CodeSign 202510; GlobalSign Offline R45 Timestamping CA 2025; GlobalSign Timestamping Root R45; GlobalSign Root CA - R6 |
| Internal Name | OOSU10.dll |
| Copyright | © 2015-2026 O&O Software GmbH, Berlin. |
Certificate Chain Summary
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✓ This file has been digitally signed and the certificate chain has been verified
- The signature ensures file integrity and authenticity from the publisher
- Timestamping proves when the signature was applied
Certificate Verification Status
OK
Remember: This is Result of Online Virus Scanner
Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:
Download Anti-Malware
Keep Your System Protected
This file appears clean, but regular security maintenance is important
-
1
Weekly Quick Scans: Set a reminder to run a scan every Sunday. Most infections are caught within the first week, so regular checks give you peace of mind.
-
2
Update Everything: Those annoying update popups exist for a reason — they patch security holes. Windows, browsers, Adobe, Java — keep them all current.
-
3
Download Smart: Stick to official websites and app stores. If a "free" version of paid software sounds too good to be true, it probably comes with unwanted extras.
-
4
Think Before You Click: Malware loves email attachments and "urgent" links. Even if an email looks like it's from your bank or a friend, verify suspicious requests through a different channel.
Leave a Comment
Gridinsoft Anti-Malware
Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware
Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!