Gridinsoft Logo
File Icon

The Install_AutoClicker2RecordPlay_rar_sfx_v5.9.8.0.exe (RAR decompression sfx archive) File Analysis

Technical Analysis

File Name Install_AutoClicker2RecordPlay_rar_sfx_v5.9.8.0.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows, RAR self-extracting archive
Scanner Version 1.0.214.174
Database Version 2025-04-19 09:00:20 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
6,845,562
File Size (bytes)
2025-04-19
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
a7bc6cf86653980cd2e09d327ac3adf4
SHA1
8c8feb33782e914022a16e7ca53603c4845106c9
SHA256
e98d1ad317b7e68c8737e818ab04f70df4601ce45dfe19bf63b35254a3c3593f
SHA512
c90f02261c7511364933687db2c14a817127aa2fa65cc2c56c40395617d086467e487fa987d50fc85d7c8c78dc2d76ed9b9c7dccaf55350daf4547da739fae94
ImpHash
d32519c93924bb24d9874d86c5993ee3

PE Analysis

Basic Information

Icon
Hash: 3e02527e67af010d267e693e882cb3da
Fuzzy: a0355d3e8cef586bb6e00314ed096af5
dHash: e9f4aa8accc6c664
Image Base 0x00400000
Entry Point 0x0041d41b
Compilation Time 2014-06-10 17:11:07
Checksum 0x00000000 (Actual: 0x0068cbaf)
OS Version 5.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows, RAR self-extracting archive
PDB Path d:\Projects\WinRAR\SFX\build\sfxrar32\Release\sfxrar.pdb
Digital Signature No valid SignedData structure was found.
Imports 10 libraries
COMCTL32, SHLWAPI, KERNEL32, USER32, GDI32, COMDLG32, ADVAPI32, SHELL32, ole32, OLEAUT32
Exports 0 functions
Resources 23 Resources
Sections 4 Sections

Version Information

FileVersion 5.90.1.0
ProductVersion 5.90.1.0
OriginalFilename Unrar-sfx.exe
InternalName Unrar-sfx.exe
FileDescription RAR decompression sfx archive
CompanyName Alexander Roshal
LegalCopyright 1993-2020 Alexander Roshal
ProductName RAR decompression sfx archive
LegalTrademarks RAR decompression sfx archive
Translation 0x0000 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 165,203 bytes 165,376 bytes 6.72 (Compressed) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 0D2680623EE21EF164D1E5BADD4A9069
.rdata 0x0002a000 20,307 bytes 20,480 bytes 5.35 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 68D6F01F72380C61070D86B06775B053
.data 0x0002f000 137,468 bytes 5,632 bytes 3.47 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 599CDAE4E964B67335324E67538C2A9C
.rsrc 0x00051000 18,448 bytes 18,944 bytes 4.76 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ F9583AC6E7CE46108AD43DF440E378B3
Entropy Analysis Alert

1 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 23 (16,994 bytes)
Resource Type Count Total Size Percentage
RT_BITMAP 1 2,998 bytes
17.6%
RT_ICON 4 4,640 bytes
27.3%
RT_DIALOG 6 2,916 bytes
17.2%
RT_STRING 9 3,850 bytes
22.7%
RT_GROUP_ICON 1 62 bytes
0.4%
RT_VERSION 1 928 bytes
5.5%
RT_MANIFEST 1 1,600 bytes
9.4%

Certificate Chain Analysis

Certificate Information
Product RAR decompression sfx archive
Description RAR decompression sfx archive
File Version 5.90.1.0
Original Name Unrar-sfx.exe
Internal Name Unrar-sfx.exe
Copyright 1993-2020 Alexander Roshal

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware