Gridinsoft Logo
File Icon

The GenP-3.4.14.1.exe (GenP v3.4.14.1) File Analysis

Technical Analysis

File Name GenP-3.4.14.1.exe
File Type
Win32 EXE
Magic Bytes PE32 executable (GUI) Intel 80386, for MS Windows
SSDEEP Hash
24576:RqDEvCTbMWu7rQYlBQcBiT6rprG8a6x8mfmzzeAYQPwMW:RTvC/MTQYxsWR7a6xpuz
Scanner Version 1.0.194.174
Database Version 2024-10-23 17:00:22 UTC

Suspicious File Detected

Detected by 17 security engines - requires caution

This file requires additional checking for potential threats. Based on suspicious indicators, we will soon add it to our virus database.

Patcher software modifies existing programs to bypass licensing restrictions or enable unauthorized use. These tools are associated with software piracy and may introduce security vulnerabilities or additional malware to systems.
23%
Detection Rate
1,350,144
File Size (bytes)
17/73
Engines Detected
2024-10-23
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
3dc79c39b221227b4c40a02e1359c6fa
SHA1
e33919d267ad2eb467eb634dd8a85040ee875451
SHA256
e204ab2c42719e5c63133ef828db154b4c8ea337e9ac932bbb49ca2a5f1d401c
SHA512
3db534fb85ffa74216594283328a886249d5cbfc627abc5039c834815409c2936b8df4164a5d5ae9a2b5a36d4cd5b6bd117de7329e783dac272588f8d899f6d7
ImpHash
279daa640d9140f9842860a738abd363

Security Engines with Detections (17 of 73)

Bkav
W32.AIDetectMalware Malicious
Elastic
malicious (moderate confidence) Malicious
Skyhigh
BehavesLike.Win32.TrojanAitInject.th Malicious
McAfee
Artemis!3DC79C39B221 Malicious
Cylance
Unsafe Malicious
Sangfor
Trojan.Win32.Save.a Malicious
Symantec
ML.Attribute.HighConfidence Malicious
Paloalto
generic.ml Malicious
Rising
HackTool.Patcher/Autoit!1.FF74 (CLASSIC) Malicious
McAfeeD
ti!E204AB2C4271 Malicious
FireEye
Generic.mg.3dc79c39b221227b Malicious
Webroot
W32.Hacktool.Gen Malicious
Cynet
Malicious (score: 100) Malicious
Panda
PUP/Patcher Malicious
MaxSecure
Trojan.Malware.121218.susgen Malicious
Fortinet
W32/PossibleThreat Malicious
DeepInstinct
MALICIOUS Malicious
56 engines reported no threats - Only engines with detections are shown above for clarity

PE Analysis

Basic Information

Icon
Hash: c2449f135313fc9c8d72855f464ee2ae
Fuzzy: 4bb086e68740ceb0dd159f342c864516
dHash: 8671c889983434c0
Image Base 0x00400000
Entry Point 0x00420577
Compilation Time 2024-08-09 07:26:43
Checksum 0x00121436 (Actual: 0x0014c5a8)
OS Version 5.1
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
Digital Signature No valid SignedData structure was found.
Imports 18 libraries
Exports 0 functions
Resources 20 Resources
Sections 5 Sections

Version Information

FileVersion 3.4.14.1
Comments GenP v3.4.14.1
FileDescription GenP v3.4.14.1
ProductName GenP v3.4.14.1
ProductVersion 3.4.14.1
CompanyName GenP
LegalCopyright GenP
LegalTradeMarks GenP
Translation 0x0809 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 633,629 bytes 633,856 bytes 6.67 (Compressed) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 0A1473F3064DCBC32EF93C5C8A90F3A6
.rdata 0x0009c000 195,458 bytes 195,584 bytes 5.69 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ C9CF2468B60BF4F80F136ED54B3989FB
.data 0x000cc000 28,780 bytes 18,432 bytes 0.58 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 53B9025D545D65E23295E30AFDBD16D9
.rsrc 0x000d4000 470,804 bytes 471,040 bytes 7.36 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ D84EEE9FA426744535CD3B3018D9C728
.reloc 0x00147000 30,100 bytes 30,208 bytes 6.80 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ C68EE8931A32D45EB82DC450EE40EFC3
Entropy Analysis Alert

3 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 20 (469,631 bytes)
Resource Type Count Total Size Percentage
RT_ICON 7 160,193 bytes
34.1%
RT_STRING 7 8,900 bytes
1.9%
RT_RCDATA 1 120,994 bytes
25.8%
RT_MESSAGETABLE 1 177,152 bytes
37.7%
RT_GROUP_ICON 2 110 bytes
0%
RT_VERSION 1 664 bytes
0.1%
RT_MANIFEST 1 1,618 bytes
0.3%

Certificate Chain Analysis

Certificate Information
Product GenP v3.4.14.1
Description GenP v3.4.14.1
File Version 3.4.14.1
Copyright GenP

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
17 antivirus engines detected potential threats. This could be a false positive, especially for system tools or packed software. Verify the file source and check if it's digitally signed by a trusted publisher.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware