文件名 | paintdotnet.exe |
文件类型 |
PE32+ executable (GUI) x86-64, for MS Windows
|
扫描器版本 | 1.0.219.174 |
数据库版本 | 2025-06-24 09:00:17 UTC |
我们的扫描器未检测到威胁
哈希类型 | 值 | 操作 |
---|---|---|
MD5 |
cb0a349045ce162a8b850fa9b78c34e2
|
|
SHA1 |
9051e48f6fe78590a4a6bff005270e10e161272d
|
|
SHA256 |
dabdd06dec590903906070a74637bfd3f78f3c2a97ae2d093ee6590a9455dc9b
|
|
SHA512 |
93ee2090f8c24787135427daaae8b95e6da6361f16858a1a532b5ccf6906ed2001673c05d23c7c0b0bca39d1c563df00fc4c0a5610cfea03c0f54649b79df8f0
|
|
ImpHash |
55ae5ee9d40c5cde5ca5252684becf39
|
图标 |
哈希: a6c789397e7768fa949b53ea5abd6227
模糊: dd06bc24e865b59d4f20be6c652e27cf dHash: e2e1e3f3dbc9d9e2 |
映像基址 | 0x140000000 |
入口点 | 0x140001c18 |
编译时间 | 2025-05-19 22:53:12 |
校验和 | 0x000211e1 (实际: 0x000211e1) |
操作系统版本 | 6.3 |
PEiD 签名 |
PE32+ executable (GUI) x86-64, for MS Windows
|
PDB 路径 | D:\src\pdn\src_vPrev\PaintDotNet.exe\win-x64\bin\Release\paintdotnet.pdb |
数字签名 | OK |
导入 | 12 库 |
导出 | 1 函数 |
资源 | 11 资源 |
节 | 6 节 |
CompanyName | dotPDN LLC |
FileDescription | Paint.NET |
FileVersion | 5.108.9270.41195 |
InternalName | paintdotnet |
LegalCopyright | Copyright © 2025 dotPDN LLC, Rick Brewster, and contributors. All Rights Reserved. |
LegalTrademarks | Paint.NET is a registered trademark of dotPDN LLC |
OriginalFilename | paintdotnet.exe |
ProductName | Paint.NET |
ProductVersion | 5.108.9270.41195 |
Translation | 0x0409 0x04b0 |
名称 | 虚拟地址 | 虚拟大小 | 原始大小 | 熵 | 特征 | MD5 |
---|---|---|---|---|---|---|
.text |
0x00001000 |
6,514 bytes | 6,656 bytes | 6.12 (正常) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
21FBD4C6DB5F5AC5ACF4FBA88E62222F |
.rdata |
0x00003000 |
5,508 bytes | 5,632 bytes | 4.26 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
C2803422C8D3A6F886B5B474046979CA |
.data |
0x00005000 |
1,664 bytes | 512 bytes | 0.56 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
1986F28CC87279FDBFEF7F8FE7C09BE5 |
.pdata |
0x00006000 |
492 bytes | 512 bytes | 3.72 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
CDE4889BBBB7BF447AB8F98369810F4D |
.rsrc |
0x00007000 |
81,168 bytes | 81,408 bytes | 7.58 (打包/加密) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
72C37FC12CCE2775C33B185F2163A5D9 |
.reloc |
0x0001b000 |
52 bytes | 512 bytes | 0.77 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
B943973E155EB8C30048ED8FC2415F01 |
1 检测到高熵(≥7.5)的节 - 可能存在打包/加密
资源类型 | 数量 | 总大小 | 百分比 |
---|---|---|---|
RT_ICON | 8 | 77,476 字节 | |
RT_GROUP_ICON | 1 | 118 字节 | |
RT_VERSION | 1 | 1,000 字节 | |
RT_MANIFEST | 1 | 1,927 字节 |
产品 | Paint.NET |
描述 | Paint.NET |
文件版本 | 5.108.9270.41195 |
原始名称 | paintdotnet.exe |
签名日期 | 10:54 PM 05/19/2025 (36 天前) |
验证状态 | Signed |
签名者 | DOTPDN LLC; Microsoft ID Verified CS EOC CA 02; Microsoft ID Verified Code Signing PCA 2021; Microsoft Identity Verification Root Certificate Authority 2020 |
副签名者 | Microsoft Public RSA Time Stamping Authority; Microsoft Public RSA Timestamping CA 2020; Microsoft Identity Verification Root Certificate Authority 2020 |
内部名称 | paintdotnet |
版权 | Copyright © 2025 dotPDN LLC, Rick Brewster, and contributors. All Rights Reserved. |
54 98 D2 D1 D4 5B 19 95 48 13 79 C8 11 C0 87 99
33 00 02 EF F0 3F 0D CD FE 88 80 7F 81 00 00 00 02 EF F0
33 00 00 00 05 FB 7A 5C 32 13 61 DF 5D 00 00 00 00 00 05
33 00 00 00 07 87 A3 34 A3 7B A5 8E 1C 00 00 00 00 00 07
33 00 00 00 05 E5 CF 0F FF 66 2E C9 87 00 00 00 00 00 05
33 00 00 00 4A FD B8 55 C7 62 AA C9 89 00 00 00 00 00 4A
✓ 此文件已进行数字签名,证书链已验证。
OK
Gridinsoft Anti-Malware 拥有更强大的病毒扫描引擎。我们建议使用它来更准确地诊断受感染的系统。这个简短的指南将帮助您安装我们的旗舰产品以进行更准确的诊断:
下载反恶意软件此文件看起来是干净的,但定期的安全维护很重要