文件名 | catsxp.exe |
文件类型 |
PE32 executable (GUI) Intel 80386, for MS Windows
|
扫描器版本 | 1.0.195.174 |
数据库版本 | 2024-11-07 19:00:34 UTC |
我们的扫描器未检测到威胁
哈希类型 | 值 | 操作 |
---|---|---|
MD5 |
517e46d4ff62113e3f3d2270585c52f8
|
|
SHA1 |
f673dbb44aebd44c6da8bd5e8f33588c093e8a18
|
|
SHA256 |
cb6b7bb3475fced10293cc40d6a0594e92446dd9acdbb2b3c1e4bdb0be0f1144
|
|
SHA512 |
2a6c70ebd8999b073a8ef36d58078c3f70b786a390ae2c0165c34e4e0af58076669d79a045c54dcacf2dd851ed5d0a09f62a2c366b7b31416034e481f0439edc
|
|
ImpHash |
e5347051a3d87183d9293a0819222920
|
图标 |
哈希: ed7a2579e6b5332959d1221ff3e473c5
模糊: 3ad24afccf7f9ddc49316aa3e84458b9 dHash: e0c0a3c69c9ae4f0 |
映像基址 | 0x00400000 |
入口点 | 0x0054e210 |
编译时间 | 2024-09-02 23:24:56 |
校验和 | 0x0023ce29 (实际: 0x0023ce29) |
操作系统版本 | 5.1 |
PEiD 签名 |
PE32 executable (GUI) Intel 80386, for MS Windows
|
PDB 路径 | chrome.exe.pdb |
数字签名 | Chain verification from [email protected], CN=Catsxp Browser, OU=IT Dept, O=CatsxpSoftware Inc, L=PT, ST=FJ, C=CN (serial:1, sha1:53655405dc0157b7135fd510c73dc645c98a3c84) failed: Unable to build a validation path for the certificate "Email Address: [email protected], Common Name: Catsxp Browser, Organizational Unit: IT Dept, Organization: CatsxpSoftware Inc, Locality: PT, State/Province: FJ, Country: CN" - no issuer matching "Email Address: [email protected], Common Name: CatsxpSoftware Inc, Organizational Unit: IT Dept, Organization: CatsxpSoftware Inc, Locality: PT, State/Province: FJ, Country: CN" was found |
导入 |
4 库
chrome_elf, KERNEL32, VERSION, ntdll |
导出 | 3 函数 |
资源 | 134 资源 |
节 | 7 节 |
CompanyName | Catsxp Software, Inc. |
FileDescription | Catsxp Browser |
FileVersion | 131.4.11.1 |
InternalName | catsxp_exe |
LegalCopyright | Copyright 2016 The Catsxp Authors. All rights reserved. |
OriginalFilename | catsxp.exe |
ProductName | Catsxp Browser |
ProductVersion | 131.4.11.1 |
CompanyShortName | Catsxp Software |
ProductShortName | Catsxp |
LastChange | 0000000000000000000000000000000000000000-0000000000000000000000000000000000000000 |
Official Build | 1 |
Translation | 0x0409 0x04b0 |
名称 | 虚拟地址 | 虚拟大小 | 原始大小 | 熵 | 特征 | MD5 |
---|---|---|---|---|---|---|
.text |
0x00001000 |
1,536,477 bytes | 1,536,512 bytes | 6.65 (压缩) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
80FE362F655DF98F8216432EE918C241 |
.rdata |
0x00179000 |
162,516 bytes | 162,816 bytes | 5.62 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
769D76CFD77DB8D8EC4BB937A6F74CA1 |
.data |
0x001a1000 |
91,884 bytes | 13,824 bytes | 3.48 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
2CDCD94CE8490FA06938E11044E87B65 |
.tls |
0x001b8000 |
345 bytes | 512 bytes | 0.34 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
251A78F78A0F92C95523CFB8E81AC809 |
CPADinfo |
0x001b9000 |
40 bytes | 512 bytes | 0.12 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
842689AF09E7BF563672A4B43F1A2286 |
.rsrc |
0x001ba000 |
516,184 bytes | 516,608 bytes | 6.21 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
9BC5D9C4C284449F1E15FAC43FE29CF3 |
.reloc |
0x00239000 |
55,992 bytes | 56,320 bytes | 6.73 (压缩) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
7A0D220A7731C567DFBCF52DCB0E1DE0 |
2 检测到较高熵(≥6.5)的节 - 可能存在压缩
资源类型 | 数量 | 总大小 | 百分比 |
---|---|---|---|
RT_CURSOR | 23 | 56,516 字节 | |
RT_ICON | 74 | 448,511 字节 | |
RT_GROUP_CURSOR | 21 | 448 字节 | |
RT_GROUP_ICON | 14 | 1,120 字节 | |
RT_VERSION | 1 | 1,176 字节 | |
RT_MANIFEST | 1 | 1,126 字节 |
此文件未进行数字签名。
⚠ 此文件缺少数字签名或证书链无法验证。
执行来自未知来源的未签名文件时请谨慎。
Chain verification from [email protected], CN=Catsxp Browser, OU=IT Dept, O=CatsxpSoftware Inc, L=PT, ST=FJ, C=CN (serial:1, sha1:53655405dc0157b7135fd510c73dc645c98a3c84) failed: Unable to build a validation path for the certificate "Email Address: [email protected], Common Name: Catsxp Browser, Organizational Unit: IT Dept, Organization: CatsxpSoftware Inc, Locality: PT, State/Province: FJ, Country: CN" - no issuer matching "Email Address: [email protected], Common Name: CatsxpSoftware Inc, Organizational Unit: IT Dept, Organization: CatsxpSoftware Inc, Locality: PT, State/Province: FJ, Country: CN" was found
建议: 验证文件来源并确保它来自可信的发布者.
Gridinsoft Anti-Malware 拥有更强大的病毒扫描引擎。我们建议使用它来更准确地诊断受感染的系统。这个简短的指南将帮助您安装我们的旗舰产品以进行更准确的诊断:
下载反恶意软件此文件看起来是干净的,但定期的安全维护很重要