| 文件名 | msedge_elf.dll |
| 文件类型 |
Win32 DLL
|
| 魔术字节 | PE32+ executable (DLL) (GUI) x86-64, for MS Windows |
| SSDEEP 哈希 |
49152:OIFC503ulIU0Y6kN862XXK1se+k7jrHQ/w22c3QXGDA4rlz9KSnGshnGoQ7oJ3x1:e5039XYnN862vTHMGDDlzhG+1ewHTl
|
| 扫描器版本 | 1.0.230.174 |
| 数据库版本 | 2025-12-05 05:00:22 UTC |
被 17 个安全引擎检测到 - 需要谨慎
| 哈希类型 | 值 | 操作 |
|---|---|---|
| MD5 |
9e16c6787c5b2a72cee36f8688864eff
|
|
| SHA1 |
4db778f72030d9d9492a17b914335333faf73533
|
|
| SHA256 |
19a01eb16578d7312288e9a116688c4db196d490c4011e4fe3b2fbce7b9a09b1
|
|
| SHA512 |
e6d614d103a50bc92ce69c17b0adbc504d0644d356bae66c9d540f3a46f38d60b75090414bed3486ffd9e99682117dbcccabf1231d2cf672bced13916072cf5f
|
|
| ImpHash |
11816731f87952ce23da086b67eb30cb
|
| 映像基址 | 0x29f980000 |
| 入口点 | 0x29f981350 |
| 编译时间 | 2025-12-04 14:12:39 |
| 校验和 | 0x009734ad (实际: 0x009734ad) |
| 操作系统版本 | 6.1 |
| PEiD 签名 |
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
| 数字签名 | Chain verification from CN=githab.com (serial:566610323084659626487404944236879836460611, sha1:9f352b3b7fd31c399f0f5cb0d85dd2ff8515059b) failed: Unable to build a validation path for the certificate "Common Name: githab.com" - no issuer matching "Common Name: R13" was found |
| 导入 |
2 库
KERNEL32, msvcrt |
| 导出 | 3 函数 |
| 资源 | 0 资源 |
| 节 | 19 节 |
| 名称 | 虚拟地址 | 虚拟大小 | 原始大小 | 熵 | 特征 | MD5 |
|---|---|---|---|---|---|---|
.text |
0x00001000 |
3,231,872 bytes | 3,232,256 bytes | 5.74 (正常) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_32BYTES
|
4E77772F801E789A9FE6AAD86F9C5704 |
.data |
0x00317000 |
80,320 bytes | 80,384 bytes | 4.09 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_32BYTES
|
832A22487BBB27589C364E93BC9DCA72 |
.rdata |
0x0032b000 |
4,418,432 bytes | 4,418,560 bytes | 6.36 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_32BYTES
|
A4636C23E6CB5FEA240D06EED54D1111 |
.pdata |
0x00762000 |
1,248 bytes | 1,536 bytes | 4.31 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_4BYTES
|
5E0D41E80C923CA565A4A891081E13FB |
.xdata |
0x00763000 |
1,100 bytes | 1,536 bytes | 3.55 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_4BYTES
|
9E839C6DD960C54155792CF3C8E13E0B |
.bss |
0x00764000 |
301,568 bytes | 0 bytes | 0.00 (正常) |
IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_32BYTES
|
D41D8CD98F00B204E9800998ECF8427E |
.edata |
0x007ae000 |
154 bytes | 512 bytes | 1.95 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_4BYTES
|
DAEEF74EF33C2C05AD0C14197099614E |
.idata |
0x007af000 |
2,840 bytes | 3,072 bytes | 4.28 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_4BYTES
|
35D131EEB0F5B1B3B6F6C5E89B645DE5 |
.CRT |
0x007b0000 |
88 bytes | 512 bytes | 0.26 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_8BYTES
|
1E73F0EA827E07BDB90F9BA9863899F5 |
.tls |
0x007b1000 |
16 bytes | 512 bytes | 0.00 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_8BYTES
|
BF619EAC0CDF3F68D496EA9344137E8B |
.reloc |
0x007b2000 |
128,524 bytes | 129,024 bytes | 5.43 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_4BYTES
|
E2ADD49414CA1535B30CAAD6D287A7DE |
/4 |
0x007d2000 |
1,680 bytes | 2,048 bytes | 1.67 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_16BYTES
|
40D46E14D99E227C6201BB5D07C76E6D |
/19 |
0x007d3000 |
75,228 bytes | 75,264 bytes | 6.04 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
F476570D6BCA2DD1C4726184338BFE83 |
/31 |
0x007e6000 |
13,123 bytes | 13,312 bytes | 4.74 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
755D329AC466809F1A51602200A46ADB |
/45 |
0x007ea000 |
31,400 bytes | 31,744 bytes | 5.43 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
9A7D61020956BA237C48A14597E1DF76 |
/57 |
0x007f2000 |
9,584 bytes | 9,728 bytes | 3.71 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_8BYTES
|
44243EDCFA595910087E69D9370AC527 |
/70 |
0x007f5000 |
2,048 bytes | 2,048 bytes | 4.85 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
F76F1E6DBE7E2015E0960FC75F89FCAB |
/81 |
0x007f6000 |
76,386 bytes | 76,800 bytes | 2.68 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
E821DCCD2A69937B98AAA8C658C54C25 |
/92 |
0x00809000 |
5,520 bytes | 5,632 bytes | 1.79 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
6D18C12AE3F9D0E44E36D617B97DC639 |
| 验证状态 | A certificate chain could not be built to a trusted root authority. |
06 81 1E 3A CD 82 27 23 2E E5 8A 61 EC D7 14 A9 B6 43✓ 此文件已进行数字签名,证书链已验证。
Chain verification from CN=githab.com (serial:566610323084659626487404944236879836460611, sha1:9f352b3b7fd31c399f0f5cb0d85dd2ff8515059b) failed: Unable to build a validation path for the certificate "Common Name: githab.com" - no issuer matching "Common Name: R13" was found
建议: 验证文件来源并确保它来自可信的发布者.
Gridinsoft Anti-Malware 拥有更强大的病毒扫描引擎。我们建议使用它来更准确地诊断受感染的系统。这个简短的指南将帮助您安装我们的旗舰产品以进行更准确的诊断:
下载反恶意软件此文件看起来是干净的,但定期的安全维护很重要
保持无恶意软件:使用 Gridinsoft 反恶意软件 保护您的 PC
Gridinsoft 反恶意软件正是如此——提供强大、用户友好的解决方案,让您安心,并不断更新以应对最新威胁。由网络安全专家设计,它提供实时保护和轻松删除恶意软件。这不仅仅是检测威胁;它是通过不间断的安全来增强您的数字生活。试一试,体验无忧浏览的感觉!