File Name | FPilot.exe |
File Type |
PE32+ executable (GUI) x86-64, for MS Windows
|
Scanner Version | 1.0.210.174 |
Database Version | 2025-03-14 21:01:14 UTC |
Malware family: Gen
Hash Type | Value | Action |
---|---|---|
MD5 |
8c4dbebe326da4d66d52708ac5d8b82f
|
|
SHA1 |
3e0de4c535d214b56e0dc60cebe22b1c6f19ab36
|
|
SHA256 |
2799c417fb8911fb2b1e7d68248bb8adadf827754b74de5903a622c6993a138a
|
|
SHA512 |
23d284301a2febd4edc0d91ce2cfcbacabb114bb27bed4387fa3db08c1d5d971434f35c1f1b7390ef6deb6a5355c9fc27401d34ef55158de688587b99b64dacd
|
|
ImpHash |
449449409d17417db1eb393556a36ba5
|
Icon |
Hash: 10a129eae470f3db05d2f4eafc08421c
Fuzzy: d83c0ab35d8d5b0fdad274511bc80ee4 dHash: 96ccc4d4d4cccc96 |
Image Base | 0x140000000 |
Entry Point | 0x14015f440 |
Compilation Time | 2025-02-12 13:30:53 |
Checksum | 0x001ce4e8 (Actual: 0x001ce4e8) |
OS Version | 6.0 |
PEiD Signatures |
PE32+ executable (GUI) x86-64, for MS Windows
|
PDB Path | C:\Users\Vjekoslav\Projects\Voidstar Bits\Disk Voyager\Bin\FPilot.pdb |
Digital Signature | OK |
Imports | 12 libraries |
Exports | 0 functions |
Resources | 10 Resources |
Sections | 5 Sections |
CompanyName | Voidstar |
FileDescription | File Pilot |
FileVersion | 0.2.8.0 |
LegalCopyright | Voidstar |
OriginalFilename | FPilot.exe |
ProductName | File Pilot |
ProductVersion | 0.2.8.0 |
Translation | 0x0409 0x04b0 |
Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
---|---|---|---|---|---|---|
.text |
0x00001000 |
1,556,952 bytes | 1,556,992 bytes | 6.22 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
0A563B6DD605A5EE0DB1EEFBA1E24E6B |
.rdata |
0x0017e000 |
138,564 bytes | 138,752 bytes | 5.82 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
208AB5AEDF99A8AA2950D94A912A94AA |
.data |
0x001a0000 |
6,904 bytes | 5,632 bytes | 3.23 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
FDD203FA90FBC63262D2C34DCEE097C3 |
.pdata |
0x001a2000 |
28,416 bytes | 28,672 bytes | 6.11 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
825C5768404B1555E4088B4CDD1DEEE1 |
.rsrc |
0x001a9000 |
146,688 bytes | 146,944 bytes | 3.81 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
D832ACF20A8D1243A8B9232B57659BA2 |
Resource Type | Count | Total Size | Percentage |
---|---|---|---|
RT_ICON | 6 | 104,886 bytes | |
RT_RCDATA | 1 | 39,616 bytes | |
RT_GROUP_ICON | 1 | 90 bytes | |
RT_VERSION | 1 | 612 bytes | |
RT_MANIFEST | 1 | 864 bytes |
This file is not digitally signed.
⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources
OK
Gridinsoft has the capability to identify and eliminate Spy.Win64.Gen.tr without requiring further user intervention.
Download Anti-MalwareFollow these steps to completely remove the threat from your system
Hernan
Mar 12, 2025
Can you please re-check this result? It's the only scanner in Virustotal that detects malware in this file. This is the official site of the program: https://filepilot.tech/