文件名 | foobar2000-x64_v2.24.3.exe |
文件类型 |
PE32+ executable (GUI) x86-64, for MS Windows, Nullsoft Installer self-extracting archive
|
扫描器版本 | 1.0.214.174 |
数据库版本 | 2025-04-19 10:00:23 UTC |
我们的扫描器未检测到威胁
哈希类型 | 值 | 操作 |
---|---|---|
MD5 |
cb5074bb43ca0a6d5c4c017dc65fb76d
|
|
SHA1 |
5a568347b8b0fa2f8ca3db4d0b15eb61dd78c847
|
|
SHA256 |
2159301ca75b221fb9b9532871db106cb4b245a158e28f5c58368840b6876ef4
|
|
SHA512 |
748847e1ccc38492a7d26da803959721edf4d5f76c80f50d3c7e1647055e1fc4a4e426e77a4031867d5aadb0843b5a11ccf94761e147f7643240b3799463e295
|
|
ImpHash |
14ab321ef07fa16b0e509b28abe4ec68
|
图标 |
哈希: c1f53ed5d48be6804829f8c305f7c086
模糊: c33276cbafc2cb2b2b526d78aa99aa32 dHash: 78e87ee6dcbcbcac |
映像基址 | 0x140000000 |
入口点 | 0x14000425c |
编译时间 | 2024-04-01 07:50:18 |
校验和 | 0x0068c26e (实际: 0x0068c26e) |
操作系统版本 | 6.0 |
PEiD 签名 |
PE32+ executable (GUI) x86-64, for MS Windows, Nullsoft Installer self-extracting archive
|
数字签名 | OK |
导入 |
7 库
ADVAPI32, SHELL32, ole32, COMCTL32, USER32, GDI32, KERNEL32 |
导出 | 0 函数 |
资源 | 16 资源 |
节 | 6 节 |
CompanyName | foobar2000.org |
FileDescription | foobar2000 Installer |
FileVersion | 2.24.3 |
LegalCopyright | © Peter Pawlowski. All rights reserved. |
OriginalFilename | foobar2000-x64_v2.24.3.exe |
ProductName | foobar2000 |
ProductVersion | 2.24.3 |
Translation | 0x0409 0x04e4 |
名称 | 虚拟地址 | 虚拟大小 | 原始大小 | 熵 | 特征 | MD5 |
---|---|---|---|---|---|---|
.text |
0x00001000 |
33,423 bytes | 33,792 bytes | 6.33 (正常) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
03DB2CCAB9F4003F9224953F3C9400B4 |
.rdata |
0x0000a000 |
8,276 bytes | 8,704 bytes | 4.49 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
C8C40E452159A85F56695AFEC5E57ED2 |
.data |
0x0000d000 |
396,224 bytes | 512 bytes | 1.83 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
9C2A42883168FEF66D8F96EBC49AFFE5 |
.pdata |
0x0006e000 |
864 bytes | 1,024 bytes | 3.63 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
37F150470A7B4EBEC68B46E156E51961 |
.ndata |
0x0006f000 |
1,458,176 bytes | 0 bytes | 0.00 (正常) |
IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
D41D8CD98F00B204E9800998ECF8427E |
.rsrc |
0x001d3000 |
80,112 bytes | 80,384 bytes | 7.35 (压缩) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
5A73DCAE253DACDAB874BA0DDA91BF88 |
1 检测到较高熵(≥6.5)的节 - 可能存在压缩
资源类型 | 数量 | 总大小 | 百分比 |
---|---|---|---|
RT_BITMAP | 1 | 2,600 字节 | |
RT_ICON | 7 | 72,955 字节 | |
RT_DIALOG | 5 | 1,522 字节 | |
RT_GROUP_ICON | 1 | 104 字节 | |
RT_VERSION | 1 | 736 字节 | |
RT_MANIFEST | 1 | 1,249 字节 |
产品 | foobar2000 |
描述 | foobar2000 Installer |
文件版本 | 2.24.3 |
原始名称 | foobar2000-x64_v2.24.3.exe |
签名日期 | 12:28 PM 03/07/2025 (92 天前) |
验证状态 | Signed |
签名者 | Illustrate Ltd; Microsoft ID Verified CS AOC CA 02; Microsoft ID Verified Code Signing PCA 2021; Microsoft Identity Verification Root Certificate Authority 2020 |
副签名者 | Microsoft Public RSA Time Stamping Authority; Microsoft Public RSA Timestamping CA 2020; Microsoft Identity Verification Root Certificate Authority 2020 |
版权 | © Peter Pawlowski. All rights reserved. |
54 98 D2 D1 D4 5B 19 95 48 13 79 C8 11 C0 87 99
33 00 02 F0 02 19 1D CD 75 91 75 E4 10 00 00 00 02 F0 02
33 00 00 00 04 96 50 4B D2 DB EE CB 88 00 00 00 00 00 04
33 00 00 00 07 87 A3 34 A3 7B A5 8E 1C 00 00 00 00 00 07
33 00 00 00 05 E5 CF 0F FF 66 2E C9 87 00 00 00 00 00 05
33 00 00 00 40 1E 65 FF 86 39 60 EF 73 00 00 00 00 00 40
✓ 此文件已进行数字签名,证书链已验证。
OK
Gridinsoft Anti-Malware 拥有更强大的病毒扫描引擎。我们建议使用它来更准确地诊断受感染的系统。这个简短的指南将帮助您安装我们的旗舰产品以进行更准确的诊断:
下载反恶意软件此文件看起来是干净的,但定期的安全维护很重要