| 文件名 | CLIPStudioPaint.exe |
| 文件类型 |
Win32 EXE
|
| 魔术字节 | PE32+ executable (GUI) x86-64, for MS Windows |
| SSDEEP 哈希 |
786432:ijHjEKol/aVag+g3XUZu5lJ6781M5q4jX:MDE/8aTgTXbM5q4jX
|
| 扫描器版本 | 1.0.209.174 |
| 数据库版本 | 2025-02-23 09:00:29 UTC |
被 11 个安全引擎检测到 - 需要谨慎
| 哈希类型 | 值 | 操作 |
|---|---|---|
| MD5 |
e1c717cbef97475b3e5411299fccc0bd
|
|
| SHA1 |
907050e7df4b5e064097648b269669c05bcb6ae5
|
|
| SHA256 |
f5896480e58a6992eb94e1daecce4e4436b6efcf943adc71e08543765bff4ca9
|
|
| SHA512 |
f12898846ee28895e53bbf6fb9d62975bcd96c3d41db799f692d693391e29cf603d11e92331be21549f0f0ae1ac032de37a16598b1eb7dcd5f083d01a05f25ab
|
|
| ImpHash |
20480cbb59054161fec3685fca6411a5
|
| 图标 |
哈希: 863f61d6f2716c147763aa8c36936bf8
模糊: c023a2e141a89059191f38edc486950d dHash: c88e236d330ccec8 |
| 映像基址 | 0x140000000 |
| 入口点 | 0x146772fe0 |
| 编译时间 | 2024-07-24 08:58:41 |
| 校验和 | 0x04f91c44 (实际: 0x0223ed89) |
| 操作系统版本 | 6.0 |
| PEiD 签名 |
PE32+ executable (GUI) x86-64, for MS Windows
|
| 数字签名 | No valid SignedData structure was found. |
| 导入 | 66 库 |
| 导出 | 2 函数 |
| 资源 | 86 资源 |
| 节 | 10 节 |
| CompanyName | CELSYS,Inc. |
| FileDescription | CLIP STUDIO PAINT |
| FileVersion | 3.1.0.0 |
| InternalName | CLIP STUDIO PAINT |
| LegalCopyright | (C) CELSYS,Inc. All Rights Reserved. |
| OriginalFilename | CLIPStudioPaint.exe |
| ProductName | CLIP STUDIO PAINT |
| ProductVersion | 3.1.0 |
| Translation | 0x0409 0x04b0 |
| 名称 | 虚拟地址 | 虚拟大小 | 原始大小 | 熵 | 特征 | MD5 |
|---|---|---|---|---|---|---|
|
0x00001000 |
62,578,688 bytes | 20,178,944 bytes | 8.00 (打包/加密) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
1A82DC8488F6278E9123B201B580D414 |
|
0x03baf000 |
12,726,272 bytes | 4,784,640 bytes | 8.00 (打包/加密) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
AB24263F52BC6F6BC1D05FA1EF1F934C |
|
0x047d2000 |
4,644,864 bytes | 209,920 bytes | 8.00 (打包/加密) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
EA5D8BCB27F34D216323EDBCEE785D09 |
|
0x04c40000 |
1,978,368 bytes | 0 bytes | 0.00 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
D41D8CD98F00B204E9800998ECF8427E |
|
0x04e23000 |
12,288 bytes | 3,072 bytes | 7.82 (打包/加密) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
D715ECA6FBF90880A21D49696ABC4B38 |
|
0x04e26000 |
3,633,152 bytes | 0 bytes | 0.00 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
D41D8CD98F00B204E9800998ECF8427E |
|
0x0519d000 |
434,176 bytes | 43,520 bytes | 7.99 (打包/加密) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
A8D60BE206E53E1487BDB3EB2B7F992B |
.rsrc |
0x05207000 |
3,633,152 bytes | 3,632,640 bytes | 4.87 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
67FE09374418D645A99F420B17126ABF |
|
0x0557e000 |
13,479,936 bytes | 1,624,064 bytes | 8.00 (打包/加密) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
1ADC4101B1F15FF5AB6579DA6F8410A6 |
|
0x06259000 |
5,369,856 bytes | 5,369,344 bytes | 7.79 (打包/加密) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
E13C27533E347195F44F23AF8526EAD6 |
7 检测到高熵(≥7.5)的节 - 可能存在打包/加密
| 资源类型 | 数量 | 总大小 | 百分比 |
|---|---|---|---|
| RT_ICON | 72 | 3,625,122 字节 | |
| RT_GROUP_ICON | 12 | 1,080 字节 | |
| RT_VERSION | 1 | 776 字节 | |
| RT_MANIFEST | 1 | 1,021 字节 |
| 产品 | CLIP STUDIO PAINT |
| 描述 | CLIP STUDIO PAINT |
| 文件版本 | 3.1.0.0 |
| 原始名称 | CLIPStudioPaint.exe |
| 内部名称 | CLIP STUDIO PAINT |
| 版权 | (C) CELSYS,Inc. All Rights Reserved. |
4C 92 18 96 8B 96 0B C3 97 05 82 A5 FA 03 50 A6 4A 08 28 7D2C ED 5C 2C 5D B4 B7 06 CF DF 0F 49 77 45 62 80 4F DC 00 C778 03 18 42 45 70 8A 41 CF 6F 01 B8 EE B4 A9 5477 BD 0E 05 B7 59 0B B6 1D 47 61 53 1E 3F 75 ED08 38 7A 7D 1C 01 4C 74 D7 FA 1A DE01 19 75 74 71 C9 92 D7 44 DF A5 96 EB B9 70 1501 EC 1C 92 40 DE FD 2E 40 5D 7C 47 7445 E6 BB 03 83 33 C3 85 65 48 E6 FF 45 51✓ 此文件已进行数字签名,证书链已验证。
No valid SignedData structure was found.
建议: 验证文件来源并确保它来自可信的发布者.
Gridinsoft Anti-Malware 拥有更强大的病毒扫描引擎。我们建议使用它来更准确地诊断受感染的系统。这个简短的指南将帮助您安装我们的旗舰产品以进行更准确的诊断:
下载反恶意软件此文件看起来是干净的,但定期的安全维护很重要