Gridinsoft Logo
File Icon

The 一毛本地引擎Win端.exe File Analysis

Technical Analysis

File Name 一毛本地引擎Win端.exe
File Type
PE32+ executable (console) x86-64, for MS Windows
Scanner Version 1.0.248.174
Database Version 2026-06-17 22:00:14 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
8,287,232
File Size (bytes)
2026-06-17
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
ccfedda8b2b8e00438da477e47e87d3e
SHA1
7a71d55045351c2d45f95d8064c9ae892c7f828c
SHA256
e92e9a0ff644e41dabe072d02fa3cd03a821ec2f0c3f44cf4a36d05c1c30aa33
SHA512
723ec56f4d316f9b935a929114c99df91d4e1449a2299afef93cae75041132df0aaf09b08856c2c482022d2d4b73172326617bb9585a4ae4db93b5de17f72768
ImpHash
ed8b780a3ce7ca4aba78a21f6bc3d4e0

PE Analysis

Basic Information

Icon
Hash: 34be310f99f1f52c2ea8894acc61eea3
Fuzzy: d9e025d2a4342c0307fb05249341ffbf
dHash: f0ce637371198ef0
Image Base 0x140000000
Entry Point 0x140088020
Compilation Time 1970-01-01 00:00:00
Checksum 0x00000000 (Actual: 0x007f4a68)
OS Version 6.1
PEiD Signatures PE32+ executable (console) x86-64, for MS Windows
Digital Signature No valid SignedData structure was found.
Imports 1 libraries
kernel32
Exports 0 functions
Resources 5 Resources
Sections 9 Sections

Version Information

Comments
CompanyName
FileDescription
FileVersion
InternalName
LegalCopyright
LegalTrademarks
OriginalFilename
PrivateBuild
ProductName
ProductVersion
SpecialBuild
Translation 0x0409 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 3,749,425 bytes 3,749,888 bytes 6.23 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 4066D115A2401A4EBA5EEFB48905CE4E
.rdata 0x00395000 3,884,240 bytes 3,884,544 bytes 5.66 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ A4FC8B7811974DF048F8AD1461CFB55E
.data 0x0074a000 34,369,824 bytes 458,752 bytes 5.73 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 83B586824F4A539F0A7F0CB77657DFAB
.pdata 0x02812000 87,480 bytes 87,552 bytes 5.68 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ BFAB99D50F41CE922A831623E3FF5CE7
.xdata 0x02828000 180 bytes 512 bytes 1.78 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 42EB0642482932C8819A167706E48C65
.idata 0x02829000 1,404 bytes 1,536 bytes 4.31 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 76B609F4732D6496F4D766DAEF740D85
.reloc 0x0282a000 74,580 bytes 74,752 bytes 5.43 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 9EFB6A15047B2CE52DDF404E3BE5053E
.symtab 0x0283d000 4 bytes 512 bytes 0.02 (Normal) IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 07B5472D347D42780469FB2654B7FC54
.rsrc 0x0283e000 27,424 bytes 27,648 bytes 7.87 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ A2372EF4901721CEC6F242908FEE6508
Entropy Analysis Alert

1 section(s) with high entropy (≥7.5) detected - possible packing/encryption

Resource Analysis

Total Resources: 5 (27,050 bytes)
Resource Type Count Total Size Percentage
RT_ICON 2 25,264 bytes
93.4%
RT_GROUP_ICON 1 34 bytes
0.1%
RT_VERSION 1 676 bytes
2.5%
RT_MANIFEST 1 1,076 bytes
4%

Certificate Chain Analysis

No Digital Signatures

This file is not digitally signed.

Security Implications:
  • Cannot verify the publisher's identity
  • Increased security risk when running this file
  • May trigger security warnings on some systems

⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources

Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. 1
    Weekly Quick Scans: Set a reminder to run a scan every Sunday. Most infections are caught within the first week, so regular checks give you peace of mind.
  2. 2
    Update Everything: Those annoying update popups exist for a reason — they patch security holes. Windows, browsers, Adobe, Java — keep them all current.
  3. 3
    Download Smart: Stick to official websites and app stores. If a "free" version of paid software sounds too good to be true, it probably comes with unwanted extras.
  4. 4
    Think Before You Click: Malware loves email attachments and "urgent" links. Even if an email looks like it's from your bank or a friend, verify suspicious requests through a different channel.
Proactive Protection
This file looks clean right now, but that doesn't mean you should let your guard down. New malware appears daily, and even legit files can be compromised after download. When in doubt, verify the source and check for a digital signature.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.

Gridinsoft Portal
Signed in via Gridinsoft Portal · View profile
Your Score for

Gridinsoft Anti-Malware

Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware

Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!

Gridinsoft Anti-Malware