在线病毒检测器 | v.1.0.185.174 |
数据库版本: | 2024-08-31 20:00:40 |
“Patcher”通常指的是一种用于修改或“修补”其他软件的软件或工具,通常是为了绕过许可限制或启用未经授权的使用。这些工具通常与软件盗版和非法分发相关联。
File | lpro2023420-zmco.exe |
已检查 | 2024-08-31 17:42:20 |
MD5 | aa5a673b72987a8c064bce9e87a61e46 |
SHA1 | 1dea3a7dd9233daadc1de8b580c0d05b6b946ed4 |
SHA256 | 9f7c8c719ed6f26e9bec9d45e0d5aa1e6381c7a6939309b025d4e1264ac0f4b5 |
SHA512 | e7a09189e9da84a2567f3341ef8948daff1e7d8a0f1a98aeb29705f10bd63543e35528942869682463f3c678f8fabbb9993555a9177b84ff21542f12fd904d5b |
Imphash | f998c3a833cca013c7d8886746579fb5 |
File Size | 12955648 bytes |
Gridinsoft能够识别并消除Hack.Win32.Patcher.cl,无需进一步的用户干预。
790085edb50eeff302202bce64fd72da 13ffa692814b8b2839341948a9a9213e 80e0709a5e5a5910 |
|
Image Base: | 0x00400000 |
Entry Point: | 0x00401000 |
Compilation: | 2011-02-22 19:44:08 |
Checksum: | 0x00000000 (Actual: 0x00c5bce2) |
OS Version: | 4.0 |
PEiD: | PE32 executable (GUI) Intel 80386, for MS Windows |
Sign: | The PE file does not contain a certificate table. |
Sections: | 6 |
Imports: | kernel32, user32, shell32, gdi32, advapi32, comdlg32, oleaut32, |
Exports: | 0 |
Resources: | 43 |
名称 | 虚拟地址 | 虚拟大小 | 原始大小 | MD5 | 熵 |
---|---|---|---|---|---|
0x00001000 | 0x00009000 | 0x00003400 | 69ca88e251d1ca79a1757c58f5e2a198 | 7.99 | |
0x0000a000 | 0x00001000 | 0x00000e00 | 734ab9a82dcd486035a75c63fdbddfd8 | 7.95 | |
0x0000b000 | 0x00014000 | 0x00000400 | c7d0d6740073a606d2949e84cb1b44b3 | 7.81 | |
.rsrc | 0x0001f000 | 0x00ce7000 | 0x00c08400 | c922b412d394995fa75bc306497fc285 | 8.00 |
.data | 0x00d06000 | 0x0004f000 | 0x0004e200 | f1aef093dfa878394e64e72d038d584f | 7.75 |
.adata | 0x00d55000 | 0x00001000 | 0x00000000 | d41d8cd98f00b204e9800998ecf8427e | 0.00 |