在线病毒检测器 | v.1.0.195.174 |
数据库版本: | 2024-11-04 15:00:31 |
“Patcher”通常指的是一种用于修改或“修补”其他软件的软件或工具,通常是为了绕过许可限制或启用未经授权的使用。这些工具通常与软件盗版和非法分发相关联。
File | ExegisDoxing.exe |
已检查 | 2024-11-04 13:46:02 |
MD5 | 6180e5d54c3a6fad156bee16a87e9470 |
SHA1 | dec1b8b5ef62039733d8b543a51880a621b425ec |
SHA256 | e30f6e8d7011399c6aeb105f75fcdcfa08028635a6788265b5a31d7bc898fb1b |
SHA512 | 2f372fb159f482c458fce1d0f5736b33be99e82655581788b0ec0be7ed994e78091289f58020ede0c8359da68266424984319cafb8e83b25236e303489c17a06 |
Imphash | 75e9596d74d063246ba6f3ac7c5369a0 |
File Size | 28470651 bytes |
Gridinsoft能够识别并消除Hack.Win32.Patcher.sa,无需进一步的用户干预。
19b2b3f9188433c72fdf3d5d7f995308 745dd3c3102faccb77b12219496a132a e62372713392e871 |
|
Image Base: | 0x00400000 |
Entry Point: | 0x00421d50 |
Compilation: | 2023-10-03 07:51:19 |
Checksum: | 0x00000000 (Actual: 0x01b2d52f) |
OS Version: | 5.1 |
PDB Path: | D:\Projects\WinRAR\sfx\build\sfxrar32\Release\sfxrar.pdb |
PEiD: | PE32 executable (GUI) Intel 80386, for MS Windows |
Sign: | No valid SignedData structure was found. |
Sections: | 6 |
Imports: | KERNEL32, OLEAUT32, gdiplus, |
Exports: | 0 |
Resources: | 21 |
名称 | 虚拟地址 | 虚拟大小 | 原始大小 | MD5 | 熵 |
---|---|---|---|---|---|
.text | 0x00001000 | 0x000345cc | 0x00034600 | b7a8b04ab2248443b05e8133fb3a9064 | 6.71 |
.rdata | 0x00036000 | 0x0000b410 | 0x0000b600 | a418919d63b67e937555eec95d3b6bcb | 5.22 |
.data | 0x00042000 | 0x00024758 | 0x00001200 | d8d5c95192b51ddad1857caa38e7daa9 | 4.08 |
.didat | 0x00067000 | 0x000001a4 | 0x00000200 | ee74a17c4eeb586c9811481b77498b43 | 3.52 |
.rsrc | 0x00068000 | 0x00038614 | 0x00038800 | 5cf90b39937d9a39789b3421157eb94e | 5.76 |
.reloc | 0x000a1000 | 0x0000255c | 0x00002600 | 699c6b2b1b2acad2d0f219d9328713af | 6.67 |