Gridinsoft Logo

The mke2fs.exe File Analysis

Technical Analysis

File Name mke2fs.exe
File Type
PE32 executable (console) Intel 80386, for MS Windows
Scanner Version 1.0.219.174
Database Version 2025-06-28 06:00:21 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
759,392
File Size (bytes)
2025-06-28
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
1dd078e6fa18067474f3a701863c4281
SHA1
3f7b57f349eed3154d15c98c331ee4a3130a3984
SHA256
e471dd11b4afa217ed05f520c408f22340001b83f39647a541fca6f37bb34c13
SHA512
b8b21f33128edcfe4e12b5fafd3a16c162b9b2ec24d5d438eebdc8d9cff286c16900b0c9ea2abd31f1f8aac6a606c6affef5c84a40f258bf514855fa70f920fc
ImpHash
29e0c9adc6867903047cad33bcf35628

PE Analysis

Basic Information

Image Base 0x00400000
Entry Point 0x00401480
Compilation Time 2082-07-21 22:21:04
Checksum 0x000c8dc9 (Actual: 0x000c8dc9)
OS Version 6.0
PEiD Signatures PE32 executable (console) Intel 80386, for MS Windows
PDB Path /mnt/disks/build-disk/src/android/sdk-release/out/soong/.intermediates/external/e2fsprogs/misc/mke2fs/windows_x86/mke2fs.pdb
Digital Signature OK
Imports 14 libraries
Exports 0 functions
Resources 0 Resources
Sections 7 Sections

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 550,152 bytes 550,400 bytes 6.60 (Compressed) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 3DA1F80E8B81A6F4ACBAB52076619609
.rdata 0x00088000 169,576 bytes 169,984 bytes 6.70 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 03BEF525CC47DB7E9A8C5AF88E0F0A50
.buildid 0x000b2000 205 bytes 512 bytes 2.51 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 1D838DB155B22226BD03C876D215636B
.data 0x000b3000 9,852 bytes 4,096 bytes 3.59 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE BC409440D4107142631160B041AE92F7
.gcc_exc 0x000b6000 1,004 bytes 1,024 bytes 2.38 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ F960D0A69F1054EAA97429C594E6000E
.tls 0x000b7000 20 bytes 512 bytes 0.00 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE BF619EAC0CDF3F68D496EA9344137E8B
.reloc 0x000b8000 21,280 bytes 21,504 bytes 6.58 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ C435478324E6E7E24ED41049B96F0938
Entropy Analysis Alert

3 section(s) with elevated entropy (≥6.5) - possible compression

Certificate Chain Analysis

Certificate Information
Signing Date 06:33 PM 04/23/2025 (74 days ago)
Verification Status Signed
Signers Google LLC; DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1; DigiCert Trusted Root G4; DigiCert
Counter Signers DigiCert Timestamp 2024; DigiCert Trusted G4 RSA4096 SHA256 TimeStamping CA; DigiCert Trusted Root G4; DigiCert
Certificate Chain Summary
DigiCert Trusted Root G4 #1 Primary
Validity Period: 2022-08-01 00:00:00 → 2031-11-09 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 0E 9B 18 8E F9 D0 2D E7 EF DB 50 E2 08 40 18 5A
DigiCert Trusted G4 RSA4096 SHA256 TimeStamping CA #2 Chain
Validity Period: 2022-03-23 00:00:00 → 2037-03-22 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 07 36 37 B7 24 54 7C D8 47 AC FD 28 66 2A 5E 5B
DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1 #3 Chain
Validity Period: 2021-04-29 00:00:00 → 2036-04-28 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 08 AD 40 B2 60 D2 9C 4C 9F 5E CD A9 BD 93 AE D9
DigiCert Timestamp 2024 #4 Chain
Validity Period: 2024-09-26 00:00:00 → 2035-11-25 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 0B AE 66 BC 5A BA 7F 95 87 C6 F9 E9 04 E3 33 04
Google LLC #5 Chain
Validity Period: 2024-04-08 00:00:00 → 2027-04-10 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 0B 50 CF 24 6B 26 3E FD 85 A7 29 31 51 58 F3 FF

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware