Online Virus Checker | v.1.0.194.174 |
DB Version: | 2024-10-23 00:00:26 |
This is a generic detection name used to identify a potentially harmful or suspicious file or program that exhibits characteristics of a Trojan horse. It is malware that disguises itself as a legitimate or benign program but contains malicious code or functions.
File | fist.exe |
Checked | 2024-10-22 21:10:13 |
MD5 | 55f5afd856e908bfffc46fbd1f6d4517 |
SHA1 | 3890673480f9d3e63dbe05c96dac200f5fd2e2d5 |
SHA256 | 77284df21c347e67e04425f678b5d0913bacd2c9726d332f7a1859edd9ff29f2 |
SHA512 | 92974fea6db3d7fbe611946a673b9a9b9cdfc8ee0ef73754a50b9c2ede1436cf30b8ccda06159f7ccbf5106575e4d48977c2240c7ed796f9a225a196f9a3c45f |
Imphash | 97a2f47bcfbce5c4236060add27e1931 |
File Size | 16896 bytes |
Gridinsoft has the capability to identify and eliminate Malware.Win32.Generic.cld without requiring further user intervention.
Image Base: | 0x00400000 |
Entry Point: | 0x00401000 |
Compilation: | 2017-02-21 23:54:21 |
Checksum: | 0x00000000 (Actual: 0x00010d1d) |
OS Version: | 4.0 |
PEiD: | PE32 executable (console) Intel 80386, for MS Windows |
Sign: | No valid SignedData structure was found. |
Sections: | 4 |
Imports: | MSVCRT, KERNEL32, USER32, |
Exports: | 0 |
Resources: | 0 |
Name | Virtual Address | Virtual Size | Raw Size | MD5 | Entropy |
---|---|---|---|---|---|
.code | 0x00001000 | 0x000013ac | 0x00001400 | 958e0d4aa785c6703ff19d38d0c00dbf | 5.58 |
.text | 0x00003000 | 0x000019fc | 0x00001a00 | ff386ac782fc6ae0da5d4ca115035735 | 6.30 |
.rdata | 0x00005000 | 0x00000410 | 0x00000600 | 8468d8d6ff960a9b71ad14c8b884de94 | 6.09 |
.data | 0x00006000 | 0x000008e4 | 0x00000a00 | bd98cc6b3c7e16bf905d69784e36cfce | 3.87 |
It's a generic patcher I wrote. It can change bytes in files, since it's a patcher, that's the main function of a patcher. Does not drop anything itself.