| File Name | 2.exe |
| File Type |
PE32+ executable (GUI) x86-64, for MS Windows
|
| Scanner Version | 1.0.228.174 |
| Database Version | 2025-10-30 02:00:30 UTC |
Malware family: Generic
| Hash Type | Value | Action |
|---|---|---|
| MD5 |
b601bafa4296e0b0f1f9c047018421a4
|
|
| SHA1 |
4bb5a2d95b8365d332873448308c58472782552f
|
|
| SHA256 |
967f130e9e6f824758eb488c440945872317a0d9ecc751c96fa53f7c06f36926
|
|
| SHA512 |
7e8fb83a0d4033c0bd2d098cb671c7b542df606b7b47575f6d7cd8e96047eb9fd847fb9d4aa7218daa1f9d4cb22fe4b2855152e1f94f6000fe0d23c8731ef6f4
|
|
| ImpHash |
6f2e4e6a08ae9996c55fcc4c026b12e8
|
| Image Base | 0x140000000 |
| Entry Point | 0x140115bf0 |
| Compilation Time | 2025-05-16 13:33:37 |
| Checksum | 0x00000000 (Actual: 0x0008f5b5) |
| OS Version | 6.0 |
| PEiD Signatures |
PE32+ executable (GUI) x86-64, for MS Windows
|
| Digital Signature | No valid SignedData structure was found. |
| Imports | 21 libraries |
| Exports | 0 functions |
| Resources | 4 Resources |
| Sections | 3 Sections |
| Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
|---|---|---|---|---|---|---|
UPX0 |
0x00001000 |
577,536 bytes | 0 bytes | 0.00 (Normal) |
IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
D41D8CD98F00B204E9800998ECF8427E |
UPX1 |
0x0008e000 |
557,056 bytes | 557,056 bytes | 7.89 (Packed/Encrypted) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
FB393811184E59E26664EF4E6DB0EEF4 |
.rsrc |
0x00116000 |
4,096 bytes | 2,560 bytes | 4.12 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
2662524A567F64E686F00195E0372779 |
1 section(s) with high entropy (≥7.5) detected - possible packing/encryption
| Resource Type | Count | Total Size | Percentage |
|---|---|---|---|
| DLL_HJACK | 1 | 91,903 bytes | |
| DLL_X86 | 1 | 180,496 bytes | |
| SYS | 1 | 68,232 bytes | |
| RT_MANIFEST | 1 | 381 bytes |
This file is not digitally signed.
⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources
No valid SignedData structure was found.
Recommendation: Verify the file source and ensure it comes from a trusted publisher.
Gridinsoft has the capability to identify and eliminate Malware.Win64.Generic.cld without requiring further user intervention.
Download Anti-MalwareFollow these steps to completely remove the threat from your system
Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware
Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!