This is a generic detection name used to identify a potentially harmful or suspicious file or program that exhibits characteristics of a Trojan horse. It is malware that disguises itself as a legitimate or benign program but contains malicious code or functions.

File:MicrosoftOffice Installer 2013_2022 x32-64.exe
Checked:2023-12-04 14:08:46
File Size:97558443 bytes Removal

Portable Executable Info

Image Base:0x140000000
Entry Point:0x140008bb8
Compilation:2023-08-08 09:29:26
Checksum:0x00000000 (Actual: 0x05d0ffb7)
OS Version:5.2
PEiD:PE32+ executable (GUI) x86-64, for MS Windows
Sign:The PE file does not contain a certificate table.
Imports: USER32, KERNEL32, ADVAPI32, WS2_32,
Exports: 0


Name Virtual Address Virtual Size Raw Size MD5 Entropy
.text 0x00001000 0x00022190 0x00022200 d5314133eb3b19b7968055cd99cc6970 6.48
.rdata 0x00024000 0x00010f26 0x00011000 e73dd442fea9d2a792ac963b8e1dd14b 5.73
.data 0x00035000 0x0000b228 0x00000e00 3fe2f0bb86381870d6f2ebcc1e8316bc 1.61
.pdata 0x00041000 0x00001cd4 0x00001e00 fe0d7efd9fa04f4e77aa34af5dc9642f 5.22
_RDATA 0x00043000 0x000000fc 0x00000200 e9129f0c1a098cdddc530cf27e9266ad 2.00
.rsrc 0x00044000 0x0002c1b4 0x0002c200 5b02d4d03f040893bfd23128da64705a 4.92
.reloc 0x00071000 0x00000744 0x00000800 504705e001c4269538f93a75b20cd9f6 5.24

