a480b5d9302aebe9d3ac447b774537ed267250a31d46efbfa45cec0f0441e33d

Summary

Architecture IMAGE_FILE_MACHINE_AMD64
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date 2026-Sep-02 08:40:32
Comments
CompanyName
FileDescription BitConvert
FileVersion 3.10.2.101
InternalName BitConvert.exe
LegalCopyright BitConvert Copyright © 2025-2026
LegalTrademarks
OriginalFilename BitConvert.exe
ProductName BitConvert
ProductVersion 3.10.2.101
Assembly Version 3.10.2.101

Plugin Output

Suspicious Strings found in the binary may indicate undesirable behavior: Contains references to internet browsers:
  • firefox.exe
Contains another PE executable:
  • This program cannot be run in DOS mode.
Contains domain names:
  • acutedotcomb.cn
  • api.convertfil.com
  • behance.net
  • breveacutecomb.cn
  • brevegravecomb.cn
  • brevetildecomb.cn
  • cacerts.digicert.com
  • circumflexacutecomb.cn
  • circumflexgravecomb.cn
  • circumflexhookcomb.cn
  • circumflextildecomb.cn
  • commaaccentright.cn
  • commaaccentrotate.cn
  • convertfil.com
  • crl.globalsign.com
  • crl3.digicert.com
  • digicert.com
  • github.com
  • globalsign.com
  • http://cacerts.digicert.com
  • http://cacerts.digicert.com/DigiCertAssuredIDRootCA.crt0E
  • http://cacerts.digicert.com/DigiCertTrustedG4TimeStampingRSA4096SHA2562025CA1.crt0_
  • http://cacerts.digicert.com/DigiCertTrustedRootG4.crt0C
  • http://crl.globalsign.com
  • http://crl.globalsign.com/codesigningrootr45.crl0U
  • http://crl.globalsign.com/gsgccr45evcodesignca2020.crl0
  • http://crl.globalsign.com/root-r3.crl0G
  • http://crl3.digicert.com
  • http://crl3.digicert.com/DigiCertAssuredIDRootCA.crl0
  • http://crl3.digicert.com/DigiCertTrustedG4TimeStampingRSA4096SHA2562025CA1.crl0
  • http://crl3.digicert.com/DigiCertTrustedRootG4.crl0
  • http://ocsp.digicert.com0
  • http://ocsp.digicert.com0A
  • http://ocsp.digicert.com0C
  • http://ocsp.globalsign.com
  • http://ocsp.globalsign.com/codesigningrootr450F
  • http://ocsp.globalsign.com/gsgccr45evcodesignca20200U
  • http://ocsp.globalsign.com/rootr30
  • http://schemas.microsoft.com
  • http://schemas.microsoft.com/expression/blend/2008
  • http://schemas.microsoft.com/winfx/2006/xaml
  • http://schemas.microsoft.com/winfx/2006/xaml/presentation
  • http://schemas.openxmlformats.org
  • http://schemas.openxmlformats.org/markup-compatibility/2006
  • http://secure.globalsign.com
  • http://secure.globalsign.com/cacert/codesigningrootr45.crt0A
  • http://secure.globalsign.com/cacert/gsgccr45evcodesignca2020.crt0?
  • http://secure.globalsign.com/cacert/root-r3.crt06
  • http://typodermicfonts.comCoolveticaRegular
  • https://api.convertfil.com
  • https://api.convertfil.com/BitEvents
  • https://api.convertfil.com/Logging
  • https://api.convertfil.com/serverLog
  • https://convertfil.com
  • https://github.com
  • https://hanken.coAlfredo
  • https://openfontlicense.orgThis
  • https://openfontlicense.orghttps
  • https://rsms.me
  • https://scripts.sil.org
  • https://scripts.sil.org/OFLThis
  • https://scripts.sil.org/OFLhttps
  • https://www.behance.net
  • https://www.behance.net/pradilhttps
  • https://www.convertfil.com
  • https://www.convertfil.com/goodbye
  • https://www.globalsign.com
  • https://www.globalsign.com/repository/0
  • macrondieresiscomb.cn
  • microsoft.com
  • ocsp.globalsign.com
  • openxmlformats.org
  • schemas.microsoft.com
  • schemas.openxmlformats.org
  • scripts.sil.org
  • secure.globalsign.com
  • tildecross.cn
  • tonos.top
  • uni02E5.cn
  • uni02E6.cn
  • uni02E7.cn
  • uni02E8.cn
  • uni02E9.cn
  • www.behance.net
  • www.convertfil.com
  • www.globalsign.com
Info Cryptographic algorithms detected in the binary: Uses constants related to SHA256
Suspicious The PE is possibly packed. The PE only has 0 import(s).
Info The PE is digitally signed. Signer: VAQUITA LTD
Issuer: GlobalSign GCC R45 EV CodeSigning CA 2020
Safe VirusTotal score: 0/71 (Scanned on 2026-09-29 06:15:43) All the AVs think this file is safe.

Hashes

MD5 c4d64a6eeb127e8983b90cfbfd1ca541 🔍
SHA1 ed7c06e8decf180f93613dd68ad648ed64e17f84 🔍
SHA256 a480b5d9302aebe9d3ac447b774537ed267250a31d46efbfa45cec0f0441e33d 🔍
SHA3 568cc74632019294c31c1fd391c528cf57df8a0c2fa780ceb2b38f2527e74eac 🔍
SSDeep 98304:cGQtL2itpHaZFk1o6iYhrPqs6UF0vXRxfVZGLCT4LdEKxzYoo:jQdpHTes6UKvhxNZGLDPxzYoo 🔍
Imports Hash d41d8cd98f00b204e9800998ecf8427e 🔍

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0x80

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_AMD64
NumberofSections 2
TimeDateStamp 2026-Sep-02 08:40:32
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xf0
Characteristics IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE

Image Optional Header

Magic PE32+
LinkerVersion 48.0
SizeOfCode 0x419000
SizeOfInitializedData 0x4200
SizeOfUninitializedData 0
AddressOfEntryPoint 0x0000000000000000 (Section: ?)
BaseOfCode 0x2000
ImageBase 0x140000000
SectionAlignment 0x2000
FileAlignment 0x200
OperatingSystemVersion 4.0
ImageVersion 0.0
SubsystemVersion 6.0
Win32VersionValue 0
SizeOfImage 0x422000
SizeOfHeaders 0x200
Checksum 0x426b7f
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NO_SEH
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x400000
SizeofStackCommit 0x4000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x2000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 9037e43daa97b43216696cb942c4e1d6 🔍
SHA1 875a843c7fa4e6e0ea6faf797f294d380a6bbf41 🔍
SHA256 dd5faeaef56d192bd9c49db0eda3e44328689248ccc985af9f3180cad630a39a 🔍
SHA3 bfe7d0b79794956017fd61d3b299f295e52e61958f30b6e6654e7ecf59d68876 🔍
VirtualSize 0x418ec0
VirtualAddress 0x2000
SizeOfRawData 0x419000
PointerToRawData 0x200
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 7.56356

.rsrc

MD5 15b5e2cdf5f632daf12fff9a9ef37582 🔍
SHA1 73fd7867537cd7628b3690af59c5f63dc7ca3185 🔍
SHA256 2c3d0d7dc5c18ab9fbd1e3d46d31cbf2c0c8222beffb99f4708b92abefcaa834 🔍
SHA3 f7a116703e6f546986d759da1f4ecd7b9cee6ca62a5cf57879f480314036f50d 🔍
VirtualSize 0x40d8
VirtualAddress 0x41c000
SizeOfRawData 0x4200
PointerToRawData 0x419200
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 3.70147

Imports

Delayed Imports

1

Type RT_ICON
Language UNKNOWN
Codepage UNKNOWN
Size 0x468
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.79982
MD5 2d69fb7480ba8b4e094f69cdd05e7fa7 🔍
SHA1 1bec4d2eff7d40cf4d8916a0bf78e0cebf5ee0be 🔍
SHA256 ed3007a4de4a1422b19d013ee0caa749f513f8ac9d060aa03e364ad134514f1c 🔍
SHA3 81b61fdb90e9ea3c7ea05c7688f6353d0b6ce94f1b97b5cb81fb6921bbddfe4e 🔍

2

Type RT_ICON
Language UNKNOWN
Codepage UNKNOWN
Size 0x1128
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.47048
MD5 3273dcbfffeea6372ca03d838e00fe0b 🔍
SHA1 607caab39e0ba0ef68db428d0b67808a7eb299aa 🔍
SHA256 185f0f3f64603ddd6167e030ed9d7f81bbf63c60341f1c8a096bdb525dd9b278 🔍
SHA3 afb912bb2cca6664e52b72607ce7fb5efc1f58ed8ed1da49ffa0cc004bd4a7ce 🔍

3

Type RT_ICON
Language UNKNOWN
Codepage UNKNOWN
Size 0x2668
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.43618
MD5 78b2d3ac3856746050ab3c284dbe0d4f 🔍
SHA1 dd8958b34dd45af8dd0a257c3bc0f2178a97643a 🔍
SHA256 5ae9a423d216f7dd39627d11ce26344636da88ec46f3015a25f009e28f84635f 🔍
SHA3 192a544532474c3d1904755deaecf86926adf960d49f04f5c2335dc281c378ce 🔍

32512

Type RT_GROUP_ICON
Language UNKNOWN
Codepage UNKNOWN
Size 0x30
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.59109
Detected Filetype Icon file
MD5 d468c6e465a00667e7997b228a8ff58d 🔍
SHA1 27c6510982ac7aca691984dfd0ebfd21af94aa0d 🔍
SHA256 ed242829e96a18e32d14fa2a5184ce45749f48a22286b2db27e03725e3694b69 🔍
SHA3 4009c860eaa47ff7a3268169b6be8728f89b5f1f487ebc07a8879ea561f9069f 🔍

1 (#2)

Type RT_VERSION
Language UNKNOWN
Codepage UNKNOWN
Size 0x362
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.33501
MD5 118107eb6366642c7aa2e0ae8e6b9b80 🔍
SHA1 e8e1df2af1cfa99d5b0ed3034fd2fddda3b33cad 🔍
SHA256 56a5ff624aac2c0f231f6e1d36a7be708f7a2b4ffafba09ad35e87479a2181a9 🔍
SHA3 cbe5d8a681c8bfde5c4518a573040a9fed05740eabc351a8f95c967bcac10ebe 🔍

Version Info

Signature 0xfeef04bd
StructVersion 0x10000
FileVersion 3.10.2.101
ProductVersion 3.10.2.101
FileFlags (EMPTY)
FileOs VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
FileType VFT_APP
Language UNKNOWN
Comments
CompanyName
FileDescription BitConvert
FileVersion (#2) 3.10.2.101
InternalName BitConvert.exe
LegalCopyright BitConvert Copyright © 2025-2026
LegalTrademarks
OriginalFilename BitConvert.exe
ProductName BitConvert
ProductVersion (#2) 3.10.2.101
Assembly Version 3.10.2.101
Resource LangID UNKNOWN

TLS Callbacks

Load Configuration

RICH Header

Errors

Leave a comment

No comments yet.