Online Virus Checker | v.1.0.215.174 |
DB Version: | 2025-04-30 09:00:22 |
This is a generic detection name used to identify a potentially harmful or suspicious file or program that exhibits characteristics of a Trojan horse. It is malware that disguises itself as a legitimate or benign program but contains malicious code or functions.
Checked | 2025-04-30 06:37:14 |
MD5 | 929b953cc803a530e9c10ac5630807ee |
SHA1 | de4d35df2a670b828bf183d29d6acc69e1e29e41 |
SHA256 | 2fb96fa088b089d0d538056ac1318fb6ca4b8d80ab03425a69d86342ed767c36 |
SHA512 | fc1fdb23a5c4d3c0df1a735f48d19a77a9f3f13d7e2227a37eeeba93e9a35c53673b2e9a048b014d76b8105179f42945ac4466199056982f2e49e881975f2f44 |
Imphash | bf95d1fc1d10de18b32654b123ad5e1f |
File Size | 1134389 bytes |
Gridinsoft has the capability to identify and eliminate Spy.Win32.Gen.tr without requiring further user intervention.
ff28175091d03bdf4563f2b13ed85ac6 86d6ce179261f37abbe6dc92d3089c04 69d4f0e4d4ccd0f9 |
|
Image Base: | 0x00400000 |
Entry Point: | 0x004033e9 |
Compilation: | 2010-04-10 12:19:23 |
Checksum: | 0x00000000 (Actual: 0x001236ac) |
OS Version: | 5.0 |
PEiD: | PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive |
Sign: | The expected hash does not match the digest in SpcInfo |
Sections: | 5 |
Imports: | KERNEL32, USER32, GDI32, SHELL32, ADVAPI32, COMCTL32, ole32, VERSION, |
Exports: | 0 |
Resources: | 9 |
Name | Virtual Address | Virtual Size | Raw Size | MD5 | Entropy |
---|---|---|---|---|---|
.text | 0x00001000 | 0x00006240 | 0x00006400 | 1a752074fcd11165f6f148ea63ebe068 | 6.42 |
.rdata | 0x00008000 | 0x000018ca | 0x00001a00 | 7eb0899a4b6211f8bc545228417d92ad | 4.88 |
.data | 0x0000a000 | 0x0006667c | 0x00000200 | b0b1d7c362f8cc76541b7fce5014e602 | 1.36 |
.ndata | 0x00071000 | 0x00081000 | 0x00000000 | d41d8cd98f00b204e9800998ecf8427e | 0.00 |
.rsrc | 0x000f2000 | 0x00007020 | 0x00007200 | 4943173cde3b68dcc1ae3635d01e040a | 7.74 |