Edison Declipper Windows.exe Hack Gen Analysis

Hack Gen
Updated on 2024-04-27 (10 days ago)
Checked by Online Virus Scanner
Online Virus Checkerv.1.0.173.174
DB Version:2024-04-27 18:00:20

Hack.Win32.Gen.bot

This is a generic detection name used to identify a potentially harmful or suspicious file or program that exhibits characteristics of a Trojan horse. It is malware that disguises itself as a legitimate or benign program but contains malicious code or functions.

FileEdison Declipper Windows.exe
Checked2024-04-27 18:46:42
MD52a83f5e440bf23fa2ec7079a1886d2a8
SHA17766395c8e8898ee077009f0f54810ae1f6975ec
SHA25631b98041f97160a13b3f123370bb6f3bbf0566b4b5a6ab82672bf8542d5399ed
SHA5129593d622c1482a8205b6f26e139f18af28de7abda04e9cec6fbb9891f0ed0a0450dca5bee33027461daf3be937bd3fe1a27b77d85ab6e548fa145b54118af79b
Imphashb4070734502a100c8f90bbd445995533
File Size61839288 bytes

Hack.Win32.Gen.bot Removal

Hack.Win32.Gen.bot Removal

Gridinsoft has the capability to identify and eliminate Hack.Win32.Gen.bot without requiring further user intervention.

  • Start by downloading Gridinsoft Anti-Malware to your computer.
  • Double-click on the gsam-en-install.exe file and follow the on-screen instructions to install the program.
  • Once the installation of Gridinsoft Anti-Malware is complete, the program will open on the Scan screen.
  • Click on the "Standard Scan" button.
  • After the scanning process is finished, click on "Clean Now" to remove any detected threats.
  • If prompted, restart your system to complete the removal process.

File Version Information

CompanyNameKpoJIuK
FileVersion1.0.0.0
LegalCopyrightKpoJIuK
ProductVersion1.0.0.0
ProgramIDSFX
FileDescriptionSFX
ProductNameSFX
Translation0x0409 0x04e4

Portable Executable Info

f9f690aaed83f26549b0e968839b3c0d
848c149cfdc64b0e180e5337cd28398d
33cce8e8eac4c833
Image Base:0x00400000
Entry Point:0x0041f040
Compilation:2021-11-15 10:52:16
Checksum:0x00062343 (Actual: 0x03afb0a4)
OS Version:5.1
PDB Path:D:\Projects\WinRAR\sfx\build\sfxrar32\Release\sfxrar.pdb
PEiD:PE32 executable (GUI) Intel 80386, for MS Windows
Sign:The PE file does not contain a certificate table.
Sections:6
Imports: KERNEL32, gdiplus,
Exports: 0
Resources:34

Sections

Name Virtual Address Virtual Size Raw Size MD5 Entropy
.text 0x00001000 0x0003111a 0x00031200 2ef752cc8d7c0c0fd2521aa49cdaf8a0 6.71
.rdata 0x00033000 0x0000ab02 0x0000ac00 c2876557c8fef4cdcd234dd458ed0af0 5.23
.data 0x0003e000 0x000246d8 0x00001000 75541cf85918701d5647e45a2a38b714 4.35
.didat 0x00063000 0x0000018c 0x00000200 c549f80f3ea0d4a2c6dad11ca7706f8f 3.30
.rsrc 0x00064000 0x0001381e 0x00013a00 89ec9c2821036664e87ed7347c0227c9 5.95
.reloc 0x00078000 0x00002298 0x00002400 d0fe4c440a17242fed8ff8c8ab458356 6.58

Leave a comment*

Share your thoughts or insights about this file. Do you align with our conclusion?

*Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Please Wait...

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware