Online Virus Checker | v.1.0.216.174 |
DB Version: | 2025-05-10 08:00:20 |
The "Heur" stands for "heuristic," which means we use a set of rules, algorithms, or behavioral analysis to detect potential threats that may not have a specific, known signature. It's a proactive approach to identifying suspicious behavior or code patterns that could indicate the presence of a Trojan or other malware. The file's behavior or characteristics triggered the heuristic analysis as potentially malicious. However, it doesn't necessarily confirm that the file is indeed a Trojan. It could be a false positive, where a legitimate program exhibits behavior that resembles malicious activity.
File | OnlineFix64.dll |
Checked | 2025-05-10 05:41:48 |
MD5 | 1dc3a9fd539541dfd04ba19b0e65a1bb |
SHA1 | 2a0ab8d86a16546ee040d866dc8e7acc9888a12c |
SHA256 | 316eba6541ee72195e949c04597a37309869f683b96561f558c231d796974b10 |
SHA512 | 0110d961a7d4ac14f075fdabb1c5366c73c76397b3b3f34df72991dd2cf14ced18a0293d49f48b2bb1eaac5206945aa4e7acac48fcd0c7380cc13a14558cfe50 |
Imphash | 10c1b70987e42d05f256c6e82924ec7e |
File Size | 11846144 bytes |
Gridinsoft has the capability to identify and eliminate Trojan.Heur!.022120A2 without requiring further user intervention.
CompanyName | Online-Fix.Me |
FileDescription | Online-Fix Steamclient |
FileVersion | 1.3.3.1 |
LegalCopyright | Copyright (C) 2021-2025, 0xdeadc0de |
ProductVersion | 1.3.3.1 |
Translation | 0x0007 0x04b0 |
Image Base: | 0x180000000 |
Entry Point: | 0x180f4e95b |
Compilation: | 2025-03-05 20:05:03 |
Checksum: | 0x00000000 (Actual: 0x00b54570) |
OS Version: | 6.0 |
PEiD: | PE32+ executable (DLL) (GUI) x86-64, for MS Windows |
Sign: | No valid SignedData structure was found. |
Sections: | 9 |
Imports: | KERNEL32, USER32, SHELL32, WS2_32, WLDAP32, ADVAPI32, |
Exports: | 44 |
Resources: | 1 |
Name | Virtual Address | Virtual Size | Raw Size | MD5 | Entropy |
---|---|---|---|---|---|
.text | 0x00001000 | 0x001c1550 | 0x00000000 | d41d8cd98f00b204e9800998ecf8427e | 0.00 |
.rdata | 0x001c3000 | 0x0009c4c8 | 0x00000000 | d41d8cd98f00b204e9800998ecf8427e | 0.00 |
.data | 0x00260000 | 0x0004e930 | 0x00000000 | d41d8cd98f00b204e9800998ecf8427e | 0.00 |
.pdata | 0x002af000 | 0x000166ec | 0x00000000 | d41d8cd98f00b204e9800998ecf8427e | 0.00 |
.of0 | 0x002c6000 | 0x005dae53 | 0x00000000 | d41d8cd98f00b204e9800998ecf8427e | 0.00 |
.of1 | 0x008a1000 | 0x00000098 | 0x00000200 | bcfc4566da36b533de81595a7dbe9428 | 0.34 |
.of2 | 0x008a2000 | 0x00b4b5a4 | 0x00b4b600 | be34571461e2a7e29db650ae73cf94a8 | 7.79 |
.rsrc | 0x013ee000 | 0x00000298 | 0x00000400 | 1ec9f168a00269e24815bfb907ef9bbd | 2.33 |
.reloc | 0x013ef000 | 0x00000128 | 0x00000200 | bf71dacc66f7f05d4be3db5a1c9d30d9 | 2.71 |