文件名 | uzem.exe |
文件类型 |
PE32 executable (console) Intel 80386, for MS Windows
|
扫描器版本 | 1.0.214.174 |
数据库版本 | 2025-04-20 21:00:22 UTC |
我们的扫描器未检测到威胁
哈希类型 | 值 | 操作 |
---|---|---|
MD5 |
68cfaef775511bab192b1c3310d3e79e
|
|
SHA1 |
f37c88a5d8a80db452bc7f1efc411f0b9a189bc4
|
|
SHA256 |
23497a454e0a280544b394606fcf11396002708d5f2eb4377264e3e1dbe89bfd
|
|
SHA512 |
141925ece00ecd3d9e040114ee656c9173c45275083d96de3b75902ccb1f96d60bd7ff9f138f3b44472957c831a5f4a8cf326093f811ba1cde32e470ad75d7c6
|
|
ImpHash |
f4c57b04522444cab058507440136eee
|
映像基址 | 0x00400000 |
入口点 | 0x0040126c |
编译时间 | 2016-03-04 04:59:37 |
校验和 | 0x0018785b (实际: 0x0018785b) |
操作系统版本 | 4.0 |
PEiD 签名 |
PE32 executable (console) Intel 80386, for MS Windows
|
数字签名 | No valid SignedData structure was found. |
导入 |
4 库
KERNEL32, msvcrt, SDL2, WS2_32 |
导出 | 0 函数 |
资源 | 0 资源 |
节 | 18 节 |
名称 | 虚拟地址 | 虚拟大小 | 原始大小 | 熵 | 特征 | MD5 |
---|---|---|---|---|---|---|
.text |
0x00001000 |
507,680 bytes | 507,904 bytes | 6.26 (正常) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_16BYTES
|
97A12AEA0DDE699E1D9B7FFAE4EAFD40 |
.data |
0x0007d000 |
25,820 bytes | 26,112 bytes | 0.15 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_32BYTES
|
808C6FF873485ABF280582C4A63E5866 |
.rdata |
0x00084000 |
45,196 bytes | 45,568 bytes | 5.36 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_32BYTES
|
0A4D47FCAEE7BD54CB40B3F7FA94F2DE |
/4 |
0x00090000 |
140,872 bytes | 141,312 bytes | 4.62 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_4BYTES
|
95448143778289F6FE98C6F9E5BF2826 |
.bss |
0x000b3000 |
1,296,640 bytes | 0 bytes | 0.00 (正常) |
IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_32BYTES
|
D41D8CD98F00B204E9800998ECF8427E |
.idata |
0x001f0000 |
4,928 bytes | 5,120 bytes | 5.09 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_4BYTES
|
01F64EC3D09E46062C43B7A35D6E1AA3 |
.CRT |
0x001f2000 |
24 bytes | 512 bytes | 0.12 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_4BYTES
|
65A4A98ED339F0930CF73272B143FD25 |
.tls |
0x001f3000 |
32 bytes | 512 bytes | 0.23 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_4BYTES
|
F7242702C117FB70CBF727EE3C797377 |
/14 |
0x001f4000 |
1,280 bytes | 1,536 bytes | 2.22 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
53BFD6A3E261E57DCB90BB81EF1B18D4 |
/29 |
0x001f5000 |
2,637 bytes | 3,072 bytes | 4.29 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
5FE2EB75C570672FB92D3A3B6A6E7B56 |
/45 |
0x001f6000 |
3,491 bytes | 3,584 bytes | 4.84 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
98E3C5B57739B994ADE1C2173DDF0C62 |
/61 |
0x001f7000 |
51,236 bytes | 51,712 bytes | 5.75 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
A9184EE689FC747C38EC5E4E77E26535 |
/73 |
0x00204000 |
12,329 bytes | 12,800 bytes | 4.39 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
E0BD4F63AE4EE3067F2C894B05226EE3 |
/87 |
0x00208000 |
15,249 bytes | 15,360 bytes | 6.05 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
D48C98C220F6111D3B37838748C7D772 |
/99 |
0x0020c000 |
6,412 bytes | 6,656 bytes | 4.78 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_4BYTES
|
8C10605BD476577A67E0FACB32AE541F |
/112 |
0x0020e000 |
655 bytes | 1,024 bytes | 3.68 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
270F0958A1DCE2984B933DEB65D168B3 |
/123 |
0x0020f000 |
63,227 bytes | 63,488 bytes | 4.25 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
0D383048C5E83D8D442B7B75FBF2858F |
/134 |
0x0021f000 |
2,056 bytes | 2,560 bytes | 2.62 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
21954CD65998BC34964C480E984900C9 |
此文件未进行数字签名。
⚠ 此文件缺少数字签名或证书链无法验证。
执行来自未知来源的未签名文件时请谨慎。
No valid SignedData structure was found.
建议: 验证文件来源并确保它来自可信的发布者.
Gridinsoft Anti-Malware 拥有更强大的病毒扫描引擎。我们建议使用它来更准确地诊断受感染的系统。这个简短的指南将帮助您安装我们的旗舰产品以进行更准确的诊断:
下载反恶意软件此文件看起来是干净的,但定期的安全维护很重要