File Name | setup-tk-2.1.35.exe |
File Type |
PE32 executable (GUI) Intel 80386, for MS Windows
|
Scanner Version | 1.0.222.174 |
Database Version | 2025-07-29 17:00:15 UTC |
Malware family: Generic
Hash Type | Value | Action |
---|---|---|
MD5 |
1c8c4c7ffae35557e4ff44bd1254e995
|
|
SHA1 |
a0f08a3a08e84cbf57f16a6099c08ac4ce8dc1fd
|
|
SHA256 |
3bf24c1b4a74207e6be9de207f81b9c9d16f31262d68a56f023ea5778abdf639
|
|
SHA512 |
83a102cbc97b7b5a671f0e5907fb839c2567273879512934e6b0a9d9eb3a97bb5579d06f904982b97c52e0286cb996916a8282d0314a4ec3e9b9bc39d5195dbf
|
|
ImpHash |
48aa5c8931746a9655524f67b25a47ef
|
Icon |
Hash: 4b600e48756aab907e84d1a9465dbede
Fuzzy: 03374103c75d427bb78fbfbc221360a9 dHash: 71e8ccc48caec2d2 |
Image Base | 0x00400000 |
Entry Point | 0x004113bc |
Compilation Time | 2014-07-09 07:58:13 |
Checksum | 0x04ae028f (Actual: 0x04ae028f) |
OS Version | 5.0 |
PEiD Signatures |
PE32 executable (GUI) Intel 80386, for MS Windows
|
Digital Signature | OK |
Imports |
5 libraries
oleaut32, advapi32, user32, kernel32, comctl32 |
Exports | 0 functions |
Resources | 20 Resources |
Sections | 8 Sections |
Comments | This installation was built with Inno Setup. |
CompanyName | Gridinsoft LLC |
FileDescription | Trojan Killer Portable Setup |
FileVersion | 2.1.35.1782 |
LegalCopyright | В© Gridinsoft LLC, 2008 |
ProductName | GridinSoft® Trojan Killer Portable |
ProductVersion | 2.1.35 |
Translation | 0x0000 0x04b0 |
Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
---|---|---|---|---|---|---|
.text |
0x00001000 |
61,740 bytes | 61,952 bytes | 6.39 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
3A126E478661F20816F9D9285615F98E |
.itext |
0x00011000 |
2,884 bytes | 3,072 bytes | 5.73 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
BA48B9B17B3DD8B92DA3BD93F20DDB34 |
.data |
0x00012000 |
3,208 bytes | 3,584 bytes | 2.25 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
D7FD5F4B562D7961758F3D6A8C834FD0 |
.bss |
0x00013000 |
22,196 bytes | 0 bytes | 0.00 (Normal) |
IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
D41D8CD98F00B204E9800998ECF8427E |
.idata |
0x00019000 |
3,536 bytes | 3,584 bytes | 4.97 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
93D91A2B90E60BD758FC0C4908856AE1 |
.tls |
0x0001a000 |
8 bytes | 0 bytes | 0.00 (Normal) |
IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
D41D8CD98F00B204E9800998ECF8427E |
.rdata |
0x0001b000 |
24 bytes | 512 bytes | 0.20 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
3DFFC444CCC131C9DCEE18DB49EE6403 |
.rsrc |
0x0001c000 |
174,552 bytes | 174,592 bytes | 5.85 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
97B940D0F414A0A1B50FA609142C76FB |
Resource Type | Count | Total Size | Percentage |
---|---|---|---|
RT_ICON | 7 | 133,893 bytes | |
RT_STRING | 6 | 2,668 bytes | |
RT_RCDATA | 4 | 33,908 bytes | |
RT_GROUP_ICON | 1 | 104 bytes | |
RT_VERSION | 1 | 1,268 bytes | |
RT_MANIFEST | 1 | 1,512 bytes |
This file is not digitally signed.
⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources
OK
Gridinsoft has the capability to identify and eliminate Malware.Win32.Generic.cld without requiring further user intervention.
Download Anti-MalwareFollow these steps to completely remove the threat from your system