在线病毒检测器 | v.1.0.183.174 |
数据库版本: | 2024-07-25 13:00:13 |
特洛伊木马Agent是一种恶意软件,伪装成合法的文件或程序,以在受感染的计算机上执行各种有害操作,如数据窃取或网络犯罪分子的远程控制。
File | Win8_10.exe |
已检查 | 2024-07-25 10:07:51 |
MD5 | ff8b45a4fd69637063009e1e6d64547f |
SHA1 | ec56696ee264b68cb9f9498b36b4ffd1813aed78 |
SHA256 | 6d6aeb5557ed14e2093340479d63298b90a0279d8971927148670f02e366a14c |
SHA512 | 016a2b4780b83a50569b88a13e9222d4e790d78839a5d45a516b02cc7d4d12318bb966692f8bb61d22e23b57c9f7b8096096037a3109cef73e1377cfe300e06c |
Imphash | 17d0d1093dd04a075d52197db08a5d93 |
File Size | 1224704 bytes |
Gridinsoft能够识别并消除Trojan.Win32.Agent.dg,无需进一步的用户干预。
Comments | |
CompanyName | EFD Software |
FileDescription | HD Tune Pro |
FileVersion | 5, 6, 0, 0 |
InternalName | HD Tune Pro |
LegalCopyright | Copyright (C) 2015 |
LegalTrademarks | |
OriginalFilename | HDTunePro.EXE |
PrivateBuild | |
ProductName | HD Tune Pro |
ProductVersion | 5, 6, 0, 0 |
SpecialBuild | |
Translation | 0x0004 0x03a8 |
cc962da361675519a1b6bcdd3b0c2961 cc6faed4e16626bfec51f04e2f145a54 34e2d0f0f270b052 |
|
Image Base: | 0x00400000 |
Entry Point: | 0x00401000 |
Compilation: | 2017-08-04 17:20:41 |
Checksum: | 0x00000000 (Actual: 0x0013712a) |
OS Version: | 4.0 |
PEiD: | PE32 executable (GUI) Intel 80386, for MS Windows |
Sign: | The PE file does not contain a certificate table. |
Sections: | 5 |
Imports: | kernel32, powrprof, pdh, psapi, version, shfolder, user32, gdi32, comdlg32, winspool, advapi32, shell32, comctl32, oledlg, ole32, olepro32, oleaut32, |
Exports: | 0 |
Resources: | 127 |
名称 | 虚拟地址 | 虚拟大小 | 原始大小 | MD5 | 熵 |
---|---|---|---|---|---|
0x00001000 | 0x0009e000 | 0x00043200 | c95e665ac241005240c6da46c42841ef | 8.00 | |
0x0009f000 | 0x0001c000 | 0x00008e00 | 8c81f815ee7e84b90c8011a078d4c4d6 | 7.99 | |
0x000bb000 | 0x00010000 | 0x00003e00 | f98e0d28a1954be94d734717a8c6c93b | 7.99 | |
.rsrc | 0x000cb000 | 0x00088000 | 0x00005c00 | 93300f47365f09992e60268158e6fff3 | 7.07 |
.adata | 0x00228000 | 0x00001000 | 0x00000000 | d41d8cd98f00b204e9800998ecf8427e | 0.00 |