Online Virus Checker | v.1.0.214.174 |
DB Version: | 2025-04-20 14:00:19 |
This is a generic detection name used to identify a potentially harmful or suspicious file or program that exhibits characteristics of a Trojan horse. It is malware that disguises itself as a legitimate or benign program but contains malicious code or functions.
File | Setup_n.exe |
Checked | 2025-04-20 11:16:40 |
MD5 | 47e4ee5c1fbacbcce9c15d9675a4a08d |
SHA1 | 0fb512786e48d81b4e86831c94e402cf7e46982f |
SHA256 | 849eb23964edd5f92c80e10657e68bd41202b0c15e20180c8fee735a4610012e |
SHA512 | 67df86b85001dbbfdf035cd4841d2d3e4e0b29f0d137cd44afaaaef00eed84c5fd29b0420c11e5cacaddc90042523cc116e088d235b630747146f490b207c726 |
Imphash | bf95d1fc1d10de18b32654b123ad5e1f |
File Size | 8156681 bytes |
Gridinsoft has the capability to identify and eliminate Spy.Win32.Gen.tr without requiring further user intervention.
afaf9fdf776296a8a24700b0fe2f7c4d e293edc0a03f16ab1b8c53a2cd0f185f dcc8d8c2f4d894c8 |
|
Image Base: | 0x00400000 |
Entry Point: | 0x004033e9 |
Compilation: | 2010-04-10 12:19:23 |
Checksum: | 0x00000000 (Actual: 0x007ce430) |
OS Version: | 5.0 |
PEiD: | PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive |
Sign: | The expected hash does not match the digest in SpcInfo |
Sections: | 5 |
Imports: | KERNEL32, USER32, GDI32, SHELL32, ADVAPI32, COMCTL32, ole32, VERSION, |
Exports: | 0 |
Resources: | 8 |
Name | Virtual Address | Virtual Size | Raw Size | MD5 | Entropy |
---|---|---|---|---|---|
.text | 0x00001000 | 0x00006240 | 0x00006400 | 1a752074fcd11165f6f148ea63ebe068 | 6.42 |
.rdata | 0x00008000 | 0x000018ca | 0x00001a00 | 7eb0899a4b6211f8bc545228417d92ad | 4.88 |
.data | 0x0000a000 | 0x0006667c | 0x00000200 | b0b1d7c362f8cc76541b7fce5014e602 | 1.36 |
.ndata | 0x00071000 | 0x00081000 | 0x00000000 | d41d8cd98f00b204e9800998ecf8427e | 0.00 |
.rsrc | 0x000f2000 | 0x00008350 | 0x00008400 | cb89bbb954f445d56221eb261eab7c0d | 6.60 |