File Name | ncc-devices.exe |
File Type |
PE32+ executable (console) x86-64 (stripped to external PDB), for MS Windows
|
Scanner Version | 1.0.212.174 |
Database Version | 2025-04-03 21:00:36 UTC |
No threats detected by our scanner
Hash Type | Value | Action |
---|---|---|
MD5 |
80c1531123332c2de7e93f797e33513d
|
|
SHA1 |
7666f483ebe919724834b4247c49e26929be8ca4
|
|
SHA256 |
f97b18c1650c1400c121f65daa63de112e01aedbe68d89e410b84f9e0a336b5f
|
|
SHA512 |
df1339a06301e289e92f2cf3610bf9378403557de4f244cb46d9a1db4b165bce52be96f0659e56233fe476f0dae69f6a79ae5fb07a29131b94fe27182548fc64
|
|
ImpHash |
9cbefe68f395e67356e2a5d8d1b285c0
|
Image Base | 0x00400000 |
Entry Point | 0x00465460 |
Compilation Time | 1970-01-01 00:00:00 |
Checksum | 0x00000000 (Actual: 0x01bd9698) |
OS Version | 6.1 |
PEiD Signatures |
PE32+ executable (console) x86-64 (stripped to external PDB), for MS Windows
|
Digital Signature | No valid SignedData structure was found. |
Imports |
1 libraries
kernel32 |
Exports | 0 functions |
Resources | 1 Resources |
Sections | 14 Sections |
ProductVersion | 1.0.6 |
Translation | 0x0409 0x04b0 |
Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
---|---|---|---|---|---|---|
.text |
0x00001000 |
4,790,634 bytes | 4,790,784 bytes | 6.11 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
F645E7499E087C69694CC806D9C1AB3B |
.rdata |
0x00493000 |
19,197,352 bytes | 19,197,440 bytes | 6.10 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
481FFB099C00792F33BB2E462A4F922D |
.data |
0x016e2000 |
1,262,320 bytes | 828,416 bytes | 5.15 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
8EC8A154D7A91DE78D3349FD6A843840 |
/4 |
0x01817000 |
295 bytes | 512 bytes | 5.10 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
43DC7A0AE5A7067502907DB800396667 |
/19 |
0x01818000 |
757,301 bytes | 757,760 bytes | 8.00 (Packed/Encrypted) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
7AAED12494A8517DBC6CB43C8676E0D8 |
/32 |
0x018d1000 |
166,095 bytes | 166,400 bytes | 7.94 (Packed/Encrypted) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
353AF7934CD275D3514088A2A31412F2 |
/46 |
0x018fa000 |
42 bytes | 512 bytes | 0.74 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
56D08C10AA9E5C0C3680F67F8992B3D4 |
/65 |
0x018fb000 |
1,369,007 bytes | 1,369,088 bytes | 8.00 (Packed/Encrypted) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
D358F6C39A20BAF39808A5F39225AC42 |
/78 |
0x01a4a000 |
969,488 bytes | 969,728 bytes | 8.00 (Packed/Encrypted) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
AB601800A34BD940CDB14B9CC2B5AF9B |
/90 |
0x01b37000 |
248,366 bytes | 248,832 bytes | 7.81 (Packed/Encrypted) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
41C2A3ACD2D86C95D79A0F30BED45A75 |
.idata |
0x01b74000 |
1,148 bytes | 1,536 bytes | 3.69 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
833D9143550B0F404238AD25500546AE |
.reloc |
0x01b75000 |
78,756 bytes | 78,848 bytes | 5.45 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
A69AC2A59F2B20BB0B0F17394AEC8996 |
.symtab |
0x01b89000 |
753,173 bytes | 753,664 bytes | 5.47 (Normal) |
IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
813349C37A3115E873300E587DC58E89 |
.rsrc |
0x01c41000 |
360 bytes | 512 bytes | 2.07 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
65AE0EBD84B8A717F92605E2687C1FF6 |
5 section(s) with high entropy (≥7.5) detected - possible packing/encryption
Resource Type | Count | Total Size | Percentage |
---|---|---|---|
RT_VERSION | 1 | 268 bytes |
This file is not digitally signed.
⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources
No valid SignedData structure was found.
Recommendation: Verify the file source and ensure it comes from a trusted publisher.
Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:
Download Anti-MalwareThis file appears clean, but regular security maintenance is important