Gridinsoft Logo

The ncc-devices.exe File Analysis

Technical Analysis

File Name ncc-devices.exe
File Type
PE32+ executable (console) x86-64 (stripped to external PDB), for MS Windows
Scanner Version 1.0.212.174
Database Version 2025-04-03 21:00:36 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
29,165,568
File Size (bytes)
2025-04-03
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
80c1531123332c2de7e93f797e33513d
SHA1
7666f483ebe919724834b4247c49e26929be8ca4
SHA256
f97b18c1650c1400c121f65daa63de112e01aedbe68d89e410b84f9e0a336b5f
SHA512
df1339a06301e289e92f2cf3610bf9378403557de4f244cb46d9a1db4b165bce52be96f0659e56233fe476f0dae69f6a79ae5fb07a29131b94fe27182548fc64
ImpHash
9cbefe68f395e67356e2a5d8d1b285c0

PE Analysis

Basic Information

Image Base 0x00400000
Entry Point 0x00465460
Compilation Time 1970-01-01 00:00:00
Checksum 0x00000000 (Actual: 0x01bd9698)
OS Version 6.1
PEiD Signatures PE32+ executable (console) x86-64 (stripped to external PDB), for MS Windows
Digital Signature No valid SignedData structure was found.
Imports 1 libraries
kernel32
Exports 0 functions
Resources 1 Resources
Sections 14 Sections

Version Information

ProductVersion 1.0.6
Translation 0x0409 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 4,790,634 bytes 4,790,784 bytes 6.11 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ F645E7499E087C69694CC806D9C1AB3B
.rdata 0x00493000 19,197,352 bytes 19,197,440 bytes 6.10 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 481FFB099C00792F33BB2E462A4F922D
.data 0x016e2000 1,262,320 bytes 828,416 bytes 5.15 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 8EC8A154D7A91DE78D3349FD6A843840
/4 0x01817000 295 bytes 512 bytes 5.10 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES 43DC7A0AE5A7067502907DB800396667
/19 0x01818000 757,301 bytes 757,760 bytes 8.00 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES 7AAED12494A8517DBC6CB43C8676E0D8
/32 0x018d1000 166,095 bytes 166,400 bytes 7.94 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES 353AF7934CD275D3514088A2A31412F2
/46 0x018fa000 42 bytes 512 bytes 0.74 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES 56D08C10AA9E5C0C3680F67F8992B3D4
/65 0x018fb000 1,369,007 bytes 1,369,088 bytes 8.00 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES D358F6C39A20BAF39808A5F39225AC42
/78 0x01a4a000 969,488 bytes 969,728 bytes 8.00 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES AB601800A34BD940CDB14B9CC2B5AF9B
/90 0x01b37000 248,366 bytes 248,832 bytes 7.81 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES 41C2A3ACD2D86C95D79A0F30BED45A75
.idata 0x01b74000 1,148 bytes 1,536 bytes 3.69 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 833D9143550B0F404238AD25500546AE
.reloc 0x01b75000 78,756 bytes 78,848 bytes 5.45 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ A69AC2A59F2B20BB0B0F17394AEC8996
.symtab 0x01b89000 753,173 bytes 753,664 bytes 5.47 (Normal) IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 813349C37A3115E873300E587DC58E89
.rsrc 0x01c41000 360 bytes 512 bytes 2.07 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 65AE0EBD84B8A717F92605E2687C1FF6
Entropy Analysis Alert

5 section(s) with high entropy (≥7.5) detected - possible packing/encryption

Resource Analysis

Total Resources: 1 (268 bytes)
Resource Type Count Total Size Percentage
RT_VERSION 1 268 bytes
100%

Certificate Chain Analysis

No Digital Signatures

This file is not digitally signed.

Security Implications:
  • Cannot verify the publisher's identity
  • Increased security risk when running this file
  • May trigger security warnings on some systems

⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources

Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware