gui.exe

  • File Path: C:\Program Files\Blender Foundation\Blender 2.90\2.90\python\lib\site-packages\setuptools\gui.exe

Hashes

Type Hash
MD5 E8FC8D036498673C1FB9EC71777CC049
SHA1 890E4790C6BDC98C5DF5289A74A2E8982076863D
SHA256 5D87A88349EF1B7E0B3469336C90F1D30349710AC5B17D44B889D0C22FA99722
SHA384 7D99D6B1E2CC7263DF901435B2E67C5384E39E98C8739B7B13D61AFCF6E14A8EB33F99711B73651C735225B2C9134151
SHA512 725C0F467B60841D8AF3BDCE779700A4DDD445AE805B2203B6B4D8E10DD02DC872C34E53922942D1367840C2ADCA1E439178E1408861A46709B55B4874A812C3
SSDEEP 1536:pg/6/tM8NXDjPX0QWlfGMckTQxuW4XpKV:ak3U8kTQpf
IMP BA2C974ED567C90FE365844AF978F320
PESHA1 27C7301A46B4CD0350A37631FEADF9A0AB72ACB0
PE256 011CFF0342F3AA600692D062FD5D624BB1EF5D5671637F89E22F2E7578C24694

Runtime Data

Usage (stderr):

Cannot open C:\Program Files\Blender Foundation\Blender 2.90\2.90\python\lib\site-packages\setuptools\gui-script.pyw

Loaded Modules:

Path
C:\Program Files\Blender Foundation\Blender 2.90\2.90\python\lib\site-packages\setuptools\gui.exe
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\System32\wow64.dll
C:\Windows\System32\wow64cpu.dll
C:\Windows\System32\wow64win.dll

Signature

  • Status: Signature verified.
  • Serial: 0FC2CFDD6D5AD878EA6A7AFB6D7A5CD2
  • Thumbprint: 18A976606F95649BB479D1934F21F2AC37D642A8
  • Issuer: CN=SSL.com Code Signing Intermediate CA RSA R1, O=SSL Corp, L=Houston, S=Texas, C=US
  • Subject: CN=Stichting Blender Foundation, O=Stichting Blender Foundation, L=Amsterdam, S=Noord-Holland, C=NL

File Metadata

  • Original Filename:
  • Product Name:
  • Company Name:
  • File Version:
  • Product Version:
  • Language:
  • Legal Copyright:
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/71
  • VirusTotal Link: https://www.virustotal.com/gui/file/5d87a88349ef1b7e0b3469336c90f1d30349710ac5b17d44b889d0c22fa99722/detection/

File Similarity (ssdeep match)

File Score
C:\Program Files (x86)\Python310-32\Lib\site-packages\setuptools\gui.exe 83
C:\Program Files (x86)\Python310-32\Lib\site-packages\setuptools\gui-32.exe 83
C:\program files (x86)\Python38-32\Lib\site-packages\setuptools\gui.exe 83
C:\program files (x86)\Python38-32\Lib\site-packages\setuptools\gui-32.exe 83
C:\Program Files\Blender Foundation\Blender 2.83\2.83\python\lib\site-packages\setuptools\gui.exe 91
C:\program files\Blender Foundation\Blender 2.83\2.83\python\lib\site-packages\setuptools\gui.exe 96
C:\Program Files\Blender Foundation\Blender 2.83\2.83\python\lib\site-packages\setuptools\gui-32.exe 93
C:\program files\Blender Foundation\Blender 2.83\2.83\python\lib\site-packages\setuptools\gui-32.exe 93
C:\Program Files\Blender Foundation\Blender 2.90\2.90\python\lib\site-packages\setuptools\gui-32.exe 91
C:\program files\GIMP 2\lib\python2.7\site-packages\setuptools\gui.exe 83
C:\Program Files\Python310\Lib\site-packages\setuptools\gui.exe 83
C:\Program Files\Python310\Lib\site-packages\setuptools\gui-32.exe 83
C:\Program Files\Python38\Lib\site-packages\setuptools\gui.exe 83
C:\Program Files\Python38\Lib\site-packages\setuptools\gui-32.exe 83

Possible Misuse

The following table contains possible examples of gui.exe being misused. While gui.exe is not inherently malicious, its legitimate functionality can be abused for malicious purposes.

Source Source File Example License
signature-base gen_cn_hacktools.yar description = “Chinese Hacktool Set - file hscan-gui.exe” CC BY-NC 4.0

MIT License. Copyright (c) 2020-2021 Strontic.