在线病毒检测器 | v.1.0.194.174 |
数据库版本: | 2024-10-28 04:00:25 |
这是一个通用检测名称,用于识别具有特洛伊木马特征的潜在有害或可疑文件或程序。这是一种伪装成合法或良性程序但包含恶意代码或功能的恶意软件。
File | Auslogics.Disk.Defrag.Ultimate-4.13.0.2- diakov- 6 detection vt.exe |
已检查 | 2024-10-28 02:48:08 |
MD5 | d0ec0371329282f16dd7d0e030ea05f5 |
SHA1 | 21cc140e05dc7f8932ecf0b7e0075c89495b19b3 |
SHA256 | c771cbca7685a1250bc77e4944d6802f3e2cef5c2fa2845c3af3c5b32730c646 |
SHA512 | 271de208e64252ff20d74f8d7e0a38e8ce7bf439a28fac528925a68469f86808b2798026114fcbc74df116a2a5b5e383208b3e92bf6016595ecc73879ca342f9 |
Imphash | a5ccbfcd83fd3dfbde6360afc0b9086f |
File Size | 16730554 bytes |
Gridinsoft能够识别并消除Adware.Win32.Gen.bot,无需进一步的用户干预。
CompanyName | diakov.net |
FileDescription | Auslogics Disk Defrag Ultimate 4.13.0.2 |
FileVersion | 4.13.0.2 |
Translation | 0x0419 0x04e3 |
7ceed7b04fcf55cbff62313134895f42 7d991d961366c2c8e28b965b9e3ff02e c4a0b682c0c8fc38 |
|
Image Base: | 0x00400000 |
Entry Point: | 0x0040395d |
Compilation: | 2019-06-26 07:47:16 |
Checksum: | 0x00000000 (Actual: 0x00ff641e) |
OS Version: | 5.0 |
PEiD: | PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive |
Sign: | No valid SignedData structure was found. |
Sections: | 5 |
Imports: | KERNEL32, USER32, GDI32, SHELL32, ADVAPI32, COMCTL32, ole32, |
Exports: | 0 |
Resources: | 17 |
名称 | 虚拟地址 | 虚拟大小 | 原始大小 | MD5 | 熵 |
---|---|---|---|---|---|
.text | 0x00001000 | 0x00006d8d | 0x00006e00 | 328b29fe9c45ad2f92a7d68d126b6a4c | 6.53 |
.rdata | 0x00008000 | 0x0000188a | 0x00001a00 | 703cd9173dd02ab823c07c3508344789 | 4.86 |
.data | 0x0000a000 | 0x0002fe3c | 0x00000200 | ca2d2fa5bd40c088f104d1ccf862ce81 | 1.63 |
.ndata | 0x0003a000 | 0x0002f000 | 0x00000000 | d41d8cd98f00b204e9800998ecf8427e | 0.00 |
.rsrc | 0x00069000 | 0x0000f2e8 | 0x0000f400 | 72de0159fa7369da92397783531064ca | 1.72 |