文件名 | LegionLib_Release.dll |
文件类型 |
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
扫描器版本 | 1.0.218.174 |
数据库版本 | 2025-06-19 04:00:46 UTC |
我们的扫描器未检测到威胁
哈希类型 | 值 | 操作 |
---|---|---|
MD5 |
67fbd05a478d9f5613654f618f279d51
|
|
SHA1 |
1dd3c8c9e22315ad1373c08982fa503c2fbe3c7e
|
|
SHA256 |
e313abd242b5d01ea1f46b5423891766b060d122b60ab2ff8e04b76539d9fc27
|
|
SHA512 |
593b3ac23aea298e8a10f91a5033298db9fb067b0179b5cf11554501c7d2e84a46668fdbb05aaea3d057a7f6534a7121147987c806a07f531068976dde870089
|
|
ImpHash |
61a2b2eebf0792586363f29dc5469b22
|
图标 |
哈希: 2ac4cdfb8adff3851901bc11e0a7e97d
模糊: b7f49b32f5cc739e6aaf257506e414de dHash: 0d38f0dc9cc97196 |
映像基址 | 0x180000000 |
入口点 | 0x180544450 |
编译时间 | 1970-01-01 00:00:00 |
校验和 | 0x00000000 (实际: 0x0053b452) |
操作系统版本 | 6.0 |
PEiD 签名 |
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
数字签名 | No valid SignedData structure was found. |
导入 | 32 库 |
导出 | 2446 函数 |
资源 | 10 资源 |
节 | 9 节 |
CompanyName | Chaos Software |
LegalCopyright | (c) Chaos Software |
FileVersion | 13.0.547352 |
ProductVersion | 13.0.547352 |
Translation | 0x0409 0x04b0 |
名称 | 虚拟地址 | 虚拟大小 | 原始大小 | 熵 | 特征 | MD5 |
---|---|---|---|---|---|---|
.text |
0x00001000 |
2,961,408 bytes | 2,958,848 bytes | 6.49 (正常) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
E5BE2860AB95611115A2A1EB2DBA1E7A |
.rdata |
0x002d4000 |
1,851,392 bytes | 1,850,880 bytes | 6.38 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
73A87266F1AF06F68046B0E051A21B6B |
.data |
0x00498000 |
348,160 bytes | 314,880 bytes | 5.25 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
AC1B36D8E0E3B22367E925EAF3E8FBA2 |
.pdata |
0x004ed000 |
143,360 bytes | 142,336 bytes | 6.36 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
F97EFB5E58E7B42B4DB054DFBDD64687 |
.tls |
0x00510000 |
4,096 bytes | 1,024 bytes | 0.01 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
99118B81D715C056188E2BDD8A2CE08C |
_RDATA |
0x00511000 |
69,632 bytes | 69,632 bytes | 5.36 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
211089D7D672E1712B48C26D0BDC0A1B |
.rsrc |
0x00522000 |
118,784 bytes | 115,200 bytes | 3.82 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
0231B2F699652F869D890BB7F921F106 |
.reloc |
0x0053f000 |
19,248 bytes | 19,456 bytes | 5.45 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
89AC805E756459FF658513B734455F37 |
|
0x00544000 |
1,536 bytes | 1,536 bytes | 4.02 (正常) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
66CEA9E4F094A7C961D115814C4C38B6 |
资源类型 | 数量 | 总大小 | 百分比 |
---|---|---|---|
RT_ICON | 7 | 111,767 字节 | |
RT_GROUP_ICON | 1 | 104 字节 | |
RT_VERSION | 1 | 476 字节 | |
RT_MANIFEST | 1 | 1,763 字节 |
文件版本 | 13.0.547352 |
版权 | (c) Chaos Software |
✓ 此文件已进行数字签名,证书链已验证。
No valid SignedData structure was found.
建议: 验证文件来源并确保它来自可信的发布者.
Gridinsoft Anti-Malware 拥有更强大的病毒扫描引擎。我们建议使用它来更准确地诊断受感染的系统。这个简短的指南将帮助您安装我们的旗舰产品以进行更准确的诊断:
下载反恶意软件此文件看起来是干净的,但定期的安全维护很重要