| File Name | setup.exe |
| File Type |
PE32+ executable (GUI) x86-64, for MS Windows
|
| Scanner Version | 1.0.230.174 |
| Database Version | 2025-12-10 20:00:27 UTC |
Malware family: Patcher
| Hash Type | Value | Action |
|---|---|---|
| MD5 |
f42a201044931eee29a309600b72d456
|
|
| SHA1 |
a38c49acdb7c3e0775f2d6dc8b8ea8bd7f32f732
|
|
| SHA256 |
55e5131f01e0b4db477326c27139ab59c61f33cceb5de503e874197d23d37ad0
|
|
| SHA512 |
53114bf6f50d276b9cf20c67b7044321e64937af327ab67b87f97f10297996a2a4189b8a9c7215b42a4d01a8bbee211680ed111a9d8f12ced136dd774217b858
|
|
| ImpHash |
6d9c27ca5008bc63e9fbc102659734db
|
| Icon |
Hash: 95842ccf043229c8168d691fe160a4cd
Fuzzy: e3499db9b20bf43daacca194728d3e7c dHash: 13699696aa8ad021 |
| Image Base | 0x140000000 |
| Entry Point | 0x14001f550 |
| Compilation Time | 2018-05-21 01:49:53 |
| Checksum | 0x00049681 (Actual: 0x00108959) |
| OS Version | 5.2 |
| PEiD Signatures |
PE32+ executable (GUI) x86-64, for MS Windows
|
| Digital Signature | No valid SignedData structure was found. |
| Imports |
9 libraries
COMCTL32, SHELL32, GDI32, ADVAPI32, USER32, ole32, OLEAUT32, KERNEL32, msvcrt |
| Exports | 0 functions |
| Resources | 9 Resources |
| Sections | 6 Sections |
| CompanyName | Adobe Systems Incorporated |
| FileDescription | Adobe Setup |
| FileVersion | 6.0.0.0 |
| InternalName | PostInstall |
| LegalCopyright | © 1990-2022 Adobe Systems Inc |
| OriginalFilename | setup.exe |
| PrivateBuild | November 9, 2022 |
| ProductName | Setup |
| ProductVersion | 6.0.0.0 |
| Translation | 0x0000 0x04b0 |
| Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
|---|---|---|---|---|---|---|
.text |
0x00001000 |
126,844 bytes | 126,976 bytes | 6.42 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
939F570A6A9F3BE33F4AAF1CCB8BA68D |
.rdata |
0x00020000 |
25,618 bytes | 26,112 bytes | 5.17 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
03402CB8D4049593F4C995D5A1CBDBB1 |
.data |
0x00027000 |
20,856 bytes | 3,072 bytes | 2.81 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
B27F02267C6CBAE5248297A8E29950E9 |
.pdata |
0x0002d000 |
7,140 bytes | 7,168 bytes | 5.24 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
E36CFDFC9C197049DA6D906FF996C311 |
.rsrc |
0x0002f000 |
90,007 bytes | 90,112 bytes | 2.63 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
F7DFB81E748E21F9CAB7B13EDE05EE58 |
.reloc |
0x00045000 |
2,184 bytes | 2,560 bytes | 3.63 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
AF96955A1F323A95719E9E9027E3B906 |
| Resource Type | Count | Total Size | Percentage |
|---|---|---|---|
| RT_ICON | 6 | 87,796 bytes | |
| RT_GROUP_ICON | 1 | 90 bytes | |
| RT_VERSION | 1 | 796 bytes | |
| RT_MANIFEST | 1 | 779 bytes |
This file is not digitally signed.
⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources
No valid SignedData structure was found.
Recommendation: Verify the file source and ensure it comes from a trusted publisher.
Gridinsoft has the capability to identify and eliminate Malware.Win64.Patcher.cc without requiring further user intervention.
Download Anti-MalwareFollow these steps to completely remove the threat from your system
Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware
Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!