文件名 | setup.exe |
文件类型 |
PE32+ executable (GUI) x86-64, for MS Windows
|
扫描器版本 | 1.0.212.174 |
数据库版本 | 2025-04-08 18:01:03 UTC |
我们的扫描器未检测到威胁
哈希类型 | 值 | 操作 |
---|---|---|
MD5 |
92c34025207f2aa9ffd194f475103f68
|
|
SHA1 |
c9ed9845fb7fe04312de0a1ed65bf62804324308
|
|
SHA256 |
b19d79cdccfb4d48bc8f33ec2422acdf17ade17dd9ba23ea28c23706244e2184
|
|
SHA512 |
1312b1fd70a30d9008e3c080eba74210c9b81e8a9bd2c841363f216e003cbb9d4e6a94b26a28dc370b522683472bb5e6ce6ad711a572a3c49b27c11fc36a58d7
|
|
ImpHash |
8df305cbfddc966a7b6ab459d5570a2d
|
图标 |
哈希: 5f94b95007880b3f19d43ffec7d49425
模糊: f3f5c220b4667001ff0764453ac23c10 dHash: e0c8cec6c6c6c8e0 |
映像基址 | 0x140000000 |
入口点 | 0x140001978 |
编译时间 | 2015-07-30 12:26:14 |
校验和 | 0x0004cd22 (实际: 0x0004cd22) |
操作系统版本 | 5.2 |
PEiD 签名 |
PE32+ executable (GUI) x86-64, for MS Windows
|
PDB 路径 | P:\Target\x64\ship\setupexe\x-none\setup.pdb tup.pdb 0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000 |
数字签名 | OK |
导入 |
1 库
KERNEL32 |
导出 | 0 函数 |
资源 | 26 资源 |
节 | 6 节 |
CompanyName | Microsoft Corporation |
FileDescription | Microsoft Setup Bootstrapper |
FileVersion | 16.0.4266.1001 |
InternalName | setup.exe |
LegalTrademarks1 | Microsoft® is a registered trademark of Microsoft Corporation. |
LegalTrademarks2 | Windows® is a registered trademark of Microsoft Corporation. |
OriginalFilename | setup.exe |
ProductName | Microsoft Setup Bootstrapper |
ProductVersion | 16.0.4266.1001 |
MOSEVersion | BETA |
Translation | 0x0000 0x04e4 |
名称 | 虚拟地址 | 虚拟大小 | 原始大小 | 熵 | 特征 | MD5 |
---|---|---|---|---|---|---|
.text |
0x00001000 |
44,368 bytes | 44,544 bytes | 6.37 (正常) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
95378F9050E29667EC77DC8501840A33 |
.rdata |
0x0000c000 |
33,328 bytes | 33,792 bytes | 4.70 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
D091F374547629222B4D4850BFF6DF2E |
.data |
0x00015000 |
6,872 bytes | 2,560 bytes | 1.91 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
89882E73208C6756B911FD37D0DC6F98 |
.pdata |
0x00017000 |
3,348 bytes | 3,584 bytes | 4.61 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
57A91F08F0FA4DFC3A35B700C706E9E6 |
.rsrc |
0x00018000 |
168,024 bytes | 168,448 bytes | 2.06 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
B3E3A8C63C3135A175014CDA298D594F |
.reloc |
0x00042000 |
1,352 bytes | 1,536 bytes | 5.13 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
677E680201F08E6B7254EF23E1584C73 |
资源类型 | 数量 | 总大小 | 百分比 |
---|---|---|---|
RT_ICON | 23 | 163,678 字节 | |
RT_GROUP_ICON | 1 | 328 字节 | |
RT_VERSION | 1 | 1,108 字节 | |
RT_MANIFEST | 1 | 1,509 字节 |
产品 | Microsoft Setup Bootstrapper |
描述 | Microsoft Setup Bootstrapper |
文件版本 | 16.0.4266.1001 |
原始名称 | setup.exe |
签名日期 | 02:03 PM 07/31/2015 (3599 天前) |
验证状态 | Signed |
签名者 | Microsoft Corporation; Microsoft Code Signing PCA; Microsoft Root Certificate Authority |
副签名者 | Microsoft Time-Stamp Service; Microsoft Time-Stamp PCA; Microsoft Root Certificate Authority |
内部名称 | setup.exe |
33 00 00 00 71 B3 2E 8A 6B 82 AA 1F 4E 00 00 00 00 00 71
33 00 00 01 0A 2C 79 AE D7 79 7B A6 AC 00 01 00 00 01 0A
61 33 26 1A 00 00 00 00 00 31
61 16 68 34 00 00 00 00 00 1C
✓ 此文件已进行数字签名,证书链已验证。
OK
Gridinsoft Anti-Malware 拥有更强大的病毒扫描引擎。我们建议使用它来更准确地诊断受感染的系统。这个简短的指南将帮助您安装我们的旗舰产品以进行更准确的诊断:
下载反恶意软件此文件看起来是干净的,但定期的安全维护很重要