文件名 | portmaster-core_v1-6-10.exe |
文件类型 |
PE32+ executable (console) x86-64, for MS Windows
|
扫描器版本 | 1.0.220.174 |
数据库版本 | 2025-07-11 01:00:16 UTC |
我们的扫描器未检测到威胁
哈希类型 | 值 | 操作 |
---|---|---|
MD5 |
69a7bf7e01a7fa564590aa957b8fede1
|
|
SHA1 |
6150fdfde026ce4f7af4b9100487ccb4389f9d76
|
|
SHA256 |
f6be908e35ba68730e40f573c055f5908fe9920bbfeb80a3595924ceb07ef77f
|
|
SHA512 |
502bfb08e9ba1c5caec1061aa68337dfde82186c6dcb920d969bf1f891a5360da043bebaccb70f74326396779d655062603348501af51cc39b81b64031f924dc
|
|
ImpHash |
07361a3a7f515bf56ca93120b2aca73b
|
映像基址 | 0x00400000 |
入口点 | 0x00476b40 |
编译时间 | 1970-01-01 00:00:00 |
校验和 | 0x00000000 (实际: 0x021a5f0c) |
操作系统版本 | 6.1 |
PEiD 签名 |
PE32+ executable (console) x86-64, for MS Windows
|
数字签名 | No valid SignedData structure was found. |
导入 |
1 库
kernel32 |
导出 | 0 函数 |
资源 | 0 资源 |
节 | 15 节 |
名称 | 虚拟地址 | 虚拟大小 | 原始大小 | 熵 | 特征 | MD5 |
---|---|---|---|---|---|---|
.text |
0x00001000 |
11,456,559 bytes | 11,457,024 bytes | 6.16 (正常) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
195FF0571C9EE08BCDF4C71409143370 |
.rdata |
0x00aef000 |
11,674,152 bytes | 11,674,624 bytes | 5.75 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
DDA74F4AE2A372B6A0950B7A968A1EEA |
.data |
0x01612000 |
8,813,920 bytes | 519,168 bytes | 4.42 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
8EC339D97E6BFF451DD24D8B5A85B82F |
.pdata |
0x01e7a000 |
283,596 bytes | 283,648 bytes | 5.71 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
7D2703D2CFC6F350F26923455FB072CB |
.xdata |
0x01ec0000 |
180 bytes | 512 bytes | 1.78 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
3DA741B316B3C75F5DA70329CD3F2B9E |
/4 |
0x01ec1000 |
297 bytes | 512 bytes | 5.08 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
17F62672C8506464AE13ECCC2EB6CB94 |
/19 |
0x01ec2000 |
1,945,358 bytes | 1,945,600 bytes | 8.00 (打包/加密) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
ACA2491D05B092AB7993E6B3AF8CE2E6 |
/32 |
0x0209d000 |
431,462 bytes | 431,616 bytes | 7.94 (打包/加密) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
B2F86E0571FBD5033B9BF56ECB42E902 |
/46 |
0x02107000 |
42 bytes | 512 bytes | 0.74 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
56D08C10AA9E5C0C3680F67F8992B3D4 |
/65 |
0x02108000 |
3,413,234 bytes | 3,413,504 bytes | 8.00 (打包/加密) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
397A80D3883BE78EBB9B6721704AB0B1 |
/78 |
0x0244a000 |
2,441,765 bytes | 2,442,240 bytes | 8.00 (打包/加密) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
43FB2F86A61A86D141F9D55365B0CA96 |
/90 |
0x0269f000 |
581,784 bytes | 582,144 bytes | 7.81 (打包/加密) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
4EC62ABD404B42661B80527344186687 |
.idata |
0x0272e000 |
1,424 bytes | 1,536 bytes | 4.26 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
035D22589C83DE9A378D574B6A3211AA |
.reloc |
0x0272f000 |
212,228 bytes | 212,480 bytes | 5.44 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
A4B5D4CAB3AAAFC8427FEA1C333968C3 |
.symtab |
0x02763000 |
2,305,934 bytes | 2,306,048 bytes | 5.42 (正常) |
IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
A19E916903F8CDF7C567B622D80DD204 |
5 检测到高熵(≥7.5)的节 - 可能存在打包/加密
此文件未进行数字签名。
⚠ 此文件缺少数字签名或证书链无法验证。
执行来自未知来源的未签名文件时请谨慎。
No valid SignedData structure was found.
建议: 验证文件来源并确保它来自可信的发布者.
Gridinsoft Anti-Malware 拥有更强大的病毒扫描引擎。我们建议使用它来更准确地诊断受感染的系统。这个简短的指南将帮助您安装我们的旗舰产品以进行更准确的诊断:
下载反恶意软件此文件看起来是干净的,但定期的安全维护很重要