文件名 | SDXHelper.exe |
文件类型 |
PE32+ executable (GUI) x86-64, for MS Windows
|
扫描器版本 | 1.0.194.174 |
数据库版本 | 2024-10-27 18:00:27 UTC |
我们的扫描器未检测到威胁
哈希类型 | 值 | 操作 |
---|---|---|
MD5 |
2c171f9e72e2de7f58e88c336b5b6d69
|
|
SHA1 |
cbfd09335a868223bf07d9f13511d3c21bdb1558
|
|
SHA256 |
387092704ce4b7d61a96a7e52b4261dba3a4ad29532cb1864a6fb6b4dfe915a3
|
|
SHA512 |
3e245ad9b80d7409da8e97a354ca099aceb19a4b7218995375660ec51077988612bdcd27235a5407490fa6bdfcaef92cc51d3970072bf0bd998fe0569295c70b
|
|
ImpHash |
7d182624d26c4e7b5bad24c548a57a2e
|
映像基址 | 0x140000000 |
入口点 | 0x140013ab0 |
编译时间 | 2023-05-03 00:27:13 |
校验和 | 0x0002e5c0 (实际: 0x0002e5c0) |
操作系统版本 | 6.1 |
PEiD 签名 |
PE32+ executable (GUI) x86-64, for MS Windows
|
PDB 路径 | D:\dbs\el\ma3\Target\x64\ship\postc2r\x-none\sdxhelper.pdb lper.pdb 0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000 |
数字签名 | OK |
导入 | 12 库 |
导出 | 0 函数 |
资源 | 2 资源 |
节 | 8 节 |
CompanyName | Microsoft Corporation |
FileDescription | Microsoft Office SDX Helper |
FileVersion | 16.0.16327.20264 |
InternalName | SDXHELPER |
LegalTrademarks1 | Microsoft® is a registered trademark of Microsoft Corporation. |
LegalTrademarks2 | Windows® is a registered trademark of Microsoft Corporation. |
OriginalFilename | SDXHELPER.EXE |
ProductName | Microsoft Office |
ProductVersion | 16.0.16327.20264 |
Translation | 0x0000 0x04e4 |
名称 | 虚拟地址 | 虚拟大小 | 原始大小 | 熵 | 特征 | MD5 |
---|---|---|---|---|---|---|
.text |
0x00001000 |
84,299 bytes | 84,480 bytes | 6.26 (正常) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
E240217D5A6CFF6FFE68109BD9CCA23D |
.rdata |
0x00016000 |
34,814 bytes | 34,816 bytes | 4.47 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
F05ADA14055F0951E6E69B0D8CD64DEA |
.data |
0x0001f000 |
8,768 bytes | 6,656 bytes | 4.05 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
E6CF00C2779DF7002D532DA4FED18092 |
.pdata |
0x00022000 |
4,656 bytes | 5,120 bytes | 4.67 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
5E748DC67F2B3334AF814D5900557785 |
.didat |
0x00024000 |
1,120 bytes | 1,536 bytes | 2.63 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
D0173E493C92238BD8E0A1246789DF98 |
.c2r |
0x00025000 |
316 bytes | 512 bytes | 2.11 (正常) |
IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
191FB9F219321213BB690821240E6832 |
.rsrc |
0x00026000 |
1,824 bytes | 2,048 bytes | 4.72 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
30BFB686D94F50E066233258CEAC5E73 |
.reloc |
0x00027000 |
1,512 bytes | 1,536 bytes | 5.29 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
D59462D01999CF7334D22117F5489B42 |
资源类型 | 数量 | 总大小 | 百分比 |
---|---|---|---|
RT_VERSION | 1 | 1,052 字节 | |
RT_MANIFEST | 1 | 610 字节 |
产品 | Microsoft Office |
描述 | Microsoft Office SDX Helper |
文件版本 | 16.0.16327.20264 |
原始名称 | SDXHELPER.EXE |
签名日期 | 12:27 PM 05/04/2023 (766 天前) |
验证状态 | Signed |
签名者 | Microsoft Corporation; Microsoft Code Signing PCA 2010; Microsoft Root Certificate Authority 2010 |
副签名者 | Microsoft Time-Stamp Service; Microsoft Time-Stamp PCA 2010; Microsoft Root Certificate Authority 2010 |
内部名称 | SDXHELPER |
33 00 00 04 FE 59 CA B7 E6 2A A5 22 C1 00 00 00 00 04 FE
61 0C 52 4C 00 00 00 00 00 03
33 00 00 01 CA 4F C2 B3 ED 03 0D 18 6C 00 01 00 00 01 CA
33 00 00 00 15 C5 E7 6B 9E 02 9B 49 99 00 00 00 00 00 15
33 00 00 03 3C 2B 0A 49 D9 D2 91 7E AC 00 00 00 00 03 3C
61 0E 90 D2 00 00 00 00 00 03
✓ 此文件已进行数字签名,证书链已验证。
OK
Gridinsoft Anti-Malware 拥有更强大的病毒扫描引擎。我们建议使用它来更准确地诊断受感染的系统。这个简短的指南将帮助您安装我们的旗舰产品以进行更准确的诊断:
下载反恶意软件此文件看起来是干净的,但定期的安全维护很重要