文件名 | vc_redist.x644.exe |
文件类型 |
PE32 executable (GUI) Intel 80386, for MS Windows
|
扫描器版本 | 1.0.216.174 |
数据库版本 | 2025-05-11 22:00:21 UTC |
我们的扫描器未检测到威胁
哈希类型 | 值 | 操作 |
---|---|---|
MD5 |
27b141aacc2777a82bb3fa9f6e5e5c1c
|
|
SHA1 |
3155cb0f146b927fcc30647c1a904cd162548c8c
|
|
SHA256 |
5eea714e1f22f1875c1cb7b1738b0c0b1f02aec5ecb95f0fdb1c5171c6cd93a3
|
|
SHA512 |
7789eabb6dd4a159bb899d2e6d6df70addb3df239bda6f9ead8c1d2a2ac2062fce3a495814b48a3c2bec12f13800ad0703e2c61c35158b0912011b914f098011
|
|
ImpHash |
8e2588a9cf43886de3449dfff03137b6
|
图标 |
哈希: 88f05ea6c8d8a4845731c6d1991fa68b
模糊: c98f96d6ffe5af8d4eb0870c1dc20826 dHash: b2e1b496a6cada72 |
映像基址 | 0x00400000 |
入口点 | 0x00428494 |
编译时间 | 2015-02-13 19:42:32 |
校验和 | 0x00de94d5 (实际: 0x00de94d5) |
操作系统版本 | 5.1 |
PEiD 签名 |
PE32 executable (GUI) Intel 80386, for MS Windows
|
PDB 路径 | E:\delivery\Dev\wix37\build\ship\x86\burn.pdb |
数字签名 | OK |
导入 | 15 库 |
导出 | 0 函数 |
资源 | 5 资源 |
节 | 7 节 |
CompanyName | Microsoft Corporation |
FileDescription | Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 |
FileVersion | 14.0.23026.0 |
InternalName | setup |
LegalCopyright | Copyright (c) Microsoft Corporation. All rights reserved. |
OriginalFilename | VC_redist.x64.exe |
ProductName | Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 |
ProductVersion | 14.0.23026.0 |
Translation | 0x0409 0x04e4 |
名称 | 虚拟地址 | 虚拟大小 | 原始大小 | 熵 | 特征 | MD5 |
---|---|---|---|---|---|---|
.text |
0x00001000 |
234,372 bytes | 234,496 bytes | 6.51 (压缩) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
87444991B62230453DFFC59650EC4BB2 |
.rdata |
0x0003b000 |
106,732 bytes | 107,008 bytes | 4.96 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
E8ECF40B3D947B5A606DC3C4633E676D |
.data |
0x00056000 |
12,480 bytes | 4,096 bytes | 2.79 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
696B40F7AB364D52E7F4BA97BD16FA79 |
.wixburn |
0x0005a000 |
56 bytes | 512 bytes | 0.73 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
DB6C53AF7C1A1ABE600526E3676B3E3A |
.tls |
0x0005b000 |
9 bytes | 512 bytes | 0.00 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
BF619EAC0CDF3F68D496EA9344137E8B |
.rsrc |
0x0005c000 |
14,608 bytes | 14,848 bytes | 5.51 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
8A0CE489F0A2A7A9FADE65AB3E4767B5 |
.reloc |
0x00060000 |
17,538 bytes | 17,920 bytes | 5.66 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
207AE0C7A67526E3C74F798305A44881 |
1 检测到较高熵(≥6.5)的节 - 可能存在压缩
资源类型 | 数量 | 总大小 | 百分比 |
---|---|---|---|
RT_ICON | 1 | 2,216 字节 | |
RT_MESSAGETABLE | 1 | 9,652 字节 | |
RT_GROUP_ICON | 1 | 20 字节 | |
RT_VERSION | 1 | 1,012 字节 | |
RT_MANIFEST | 1 | 1,332 字节 |
产品 | Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 |
描述 | Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 |
文件版本 | 14.0.23026.0 |
原始名称 | VC_redist.x64.exe |
签名日期 | 07:02 AM 06/26/2015 (3634 天前) |
验证状态 | Signed |
签名者 | Microsoft Corporation; Microsoft Code Signing PCA; Microsoft Root Certificate Authority |
副签名者 | Microsoft Time-Stamp Service; Microsoft Time-Stamp PCA; Microsoft Root Certificate Authority |
内部名称 | setup |
版权 | Copyright (c) Microsoft Corporation. All rights reserved. |
33 00 00 00 71 B3 2E 8A 6B 82 AA 1F 4E 00 00 00 00 00 71
33 00 00 01 0A 2C 79 AE D7 79 7B A6 AC 00 01 00 00 01 0A
61 33 26 1A 00 00 00 00 00 31
61 16 68 34 00 00 00 00 00 1C
33 00 00 00 38 8D 23 6D 16 27 A3 26 E0 00 00 00 00 00 38
61 0E 90 D2 00 00 00 00 00 03
61 09 81 2A 00 00 00 00 00 02
33 00 00 00 53 CA 02 2B F0 74 70 56 6C 00 00 00 00 00 53
33 00 00 00 6F 65 2D 58 6D 07 11 46 28 00 00 00 00 00 6F
33 00 00 00 54 4E 86 AB 83 93 72 D6 E9 00 00 00 00 00 54
✓ 此文件已进行数字签名,证书链已验证。
OK
Gridinsoft Anti-Malware 拥有更强大的病毒扫描引擎。我们建议使用它来更准确地诊断受感染的系统。这个简短的指南将帮助您安装我们的旗舰产品以进行更准确的诊断:
下载反恶意软件此文件看起来是干净的,但定期的安全维护很重要