Online Virus Checker | v.1.0.214.174 |
DB Version: | 2025-04-16 19:00:17 |
Keylogger is designed to secretly record keystrokes on a computer or mobile device, capturing everything a user types, including sensitive information like passwords and credit card numbers. It can be used by cybercriminals to steal personal and confidential data without the user's knowledge or consent.
File | Client-built_protected.exe |
Checked | 2025-04-16 17:03:41 |
MD5 | f6f7c6ff6c7a9f80d86671f980f7ccf6 |
SHA1 | 8172b4360b319d8d13aa420bc97b6d5bd8b03ff0 |
SHA256 | 92a4a8494eab5704f31ae50c73d17ae577eb312d866342fc67dc52b8e3fae0bf |
SHA512 | f296341123468149788f30bb7a34a2a08286369f96003ef8c32528e2d5b845aad809d858f6825cbf96ffc77b8ae1e9fd8917036faa90c1b68ca9d537198d4855 |
Imphash | 4328f7206db519cd4e82283211d98e83 |
File Size | 9206272 bytes |
Gridinsoft has the capability to identify and eliminate Spy.Win32.Keylogger.dd!n without requiring further user intervention.
Translation | 0x0000 0x04b0 |
Comments | |
CompanyName | |
FileDescription | Quasar Client |
FileVersion | 1.4.1 |
InternalName | Client.exe |
LegalCopyright | Copyright © MaxXor 2023 |
LegalTrademarks | |
OriginalFilename | Client.exe |
ProductName | Quasar |
ProductVersion | 1.4.1 |
Assembly Version | 1.4.1.0 |
Image Base: | 0x00400000 |
Entry Point: | 0x00912e96 |
Compilation: | 2023-03-12 16:16:39 |
Checksum: | 0x008c8469 (Actual: 0x008c8469) |
OS Version: | 4.0 |
PEiD: | PE32 executable (GUI) Intel 80386, for MS Windows |
Sign: | No valid SignedData structure was found. |
Sections: | 5 |
Imports: | kernel32, mscoree, |
Exports: | 0 |
Resources: | 2 |
Name | Virtual Address | Virtual Size | Raw Size | MD5 | Entropy |
---|---|---|---|---|---|
.text | 0x00002000 | 0x0031e000 | 0x0031c600 | fe769d33782ec2f5d4c08d75b86a2b11 | 6.08 |
.rsrc | 0x00320000 | 0x00000a93 | 0x00000c00 | cdeae95ac72e9e58017d2bcc89d2fbea | 4.65 |
.reloc | 0x00322000 | 0x0000000c | 0x00000200 | 280f4c1faf592077116209d063074f64 | 0.10 |
.idata | 0x00324000 | 0x00002000 | 0x00000200 | ba1efbec90af71a01f003e00eff52977 | 1.14 |
.themida | 0x00326000 | 0x005aa000 | 0x005aa000 | 5d16fae206047f42b93808a821033af7 | 6.32 |