Gridinsoft Logo
File Icon

The memreduct.exe (Mem Reduct) File Analysis

Technical Analysis

File Name memreduct.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.221.174
Database Version 2025-07-23 21:00:30 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
268,800
File Size (bytes)
2025-07-23
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
53dbce8fc742e57f5df5df970fbefded
SHA1
8a35b4fe43328d0342c20e286e6bd8052ddad096
SHA256
ff8b8b50d5a418e4479bcb2d8f31d95a3ef4f91293dbbc136af2a1f82da8f361
SHA512
fdfff7a95c36f8fab64462b1dad6a064d4807b395ed6ce80890010fbb2c60a7300356e26a0b95bb4cff335c0946d7042cefcfb4c6e76281f45283a22b2ebd532
ImpHash
b04c3bf7455af50f8f3bb617e2474340

PE Analysis

Basic Information

Icon
Hash: 65241865df877d22936e4547f726f56b
Fuzzy: f4c4f708440ab622b6a55eaf383e6666
dHash: 0059656567530049
Image Base 0x00400000
Entry Point 0x00410780
Compilation Time 2019-02-10 05:44:40
Checksum 0x00045324 (Actual: 0x00045324)
OS Version 5.1
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
Digital Signature No valid SignedData structure was found.
Imports 14 libraries
Exports 0 functions
Resources 19 Resources
Sections 5 Sections

Version Information

Comments https://www.henrypp.org
CompanyName Henry++
FileDescription Mem Reduct
FileVersion 3.3.5
InternalName memreduct
LegalCopyright (c) 2011-2019 Henry++. All Rights Reversed.
OriginalFilename memreduct.exe
ProductName Mem Reduct
ProductVersion 3.3.5
Translation 0x0409 0x04e4

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 162,716 bytes 162,816 bytes 6.64 (Compressed) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 31BD88E8634D722A0C61A7ED9A3757E5
.rdata 0x00029000 44,426 bytes 44,544 bytes 5.15 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ C1FD615095EA1697EBE3D6BDF327F06C
.data 0x00034000 11,932 bytes 2,560 bytes 2.51 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE FAD369C0D94B2E232D4C9219CE030EEE
.rsrc 0x00037000 47,936 bytes 48,128 bytes 3.31 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 029857EA5299F827AB942E95FE45B602
.reloc 0x00043000 9,332 bytes 9,728 bytes 6.61 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ AC5EA5F166D96AE04775B2C5020ADC5C
Entropy Analysis Alert

2 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 19 (46,764 bytes)
Resource Type Count Total Size Percentage
RT_ICON 1 38,056 bytes
81.4%
RT_MENU 2 302 bytes
0.6%
RT_DIALOG 6 2,612 bytes
5.6%
RT_STRING 6 3,532 bytes
7.6%
RT_ACCELERATOR 1 24 bytes
0.1%
RT_GROUP_ICON 1 20 bytes
0%
RT_VERSION 1 796 bytes
1.7%
RT_MANIFEST 1 1,422 bytes
3%

Certificate Chain Analysis

Certificate Information
Product Mem Reduct
Description Mem Reduct
File Version 3.3.5
Original Name memreduct.exe
Internal Name memreduct
Copyright (c) 2011-2019 Henry++. All Rights Reversed.

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware