File Name | ASIO4ALL_2_16.exe |
File Type |
PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
|
Scanner Version | 1.0.215.174 |
Database Version | 2025-04-23 19:00:19 UTC |
Malware family: Gen
Hash Type | Value | Action |
---|---|---|
MD5 |
fc6fbdde5191d47852fdf527de7c50dd
|
|
SHA1 |
63f3a587259bc2ab98cebf4b517928d8ed579da0
|
|
SHA256 |
c6b2f621a53584c581a9f5ce288d6d88562a062e2859de787c5e5d9453b75c50
|
|
SHA512 |
a49863ea88294dffa26cf67105c896298854f2b4af1e145b96212cc135b2cfa65b3a17ec312ea58c4dc93392785f5692673ba123a42354ed19b5ae1c585938f5
|
|
ImpHash |
6e7f9a29f2c85394521a08b9f31f6275
|
Icon |
Hash: fc732de15777b06443cd271c959c02fe
Fuzzy: 405cf05cf980f7f9233209da74bf1571 dHash: bc58a6a32b882824 |
Image Base | 0x00400000 |
Entry Point | 0x004034c5 |
Compilation Time | 2020-08-01 02:45:20 |
Checksum | 0x00066de1 (Actual: 0x00066de1) |
OS Version | 4.0 |
PEiD Signatures |
PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
|
Digital Signature | OK |
Imports |
7 libraries
ADVAPI32, SHELL32, ole32, COMCTL32, USER32, GDI32, KERNEL32 |
Exports | 0 functions |
Resources | 28 Resources |
Sections | 5 Sections |
Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
---|---|---|---|---|---|---|
.text |
0x00001000 |
26,515 bytes | 26,624 bytes | 6.50 (Compressed) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
C25464D6F87775EF687D2492F92DDF9A |
.rdata |
0x00008000 |
5,284 bytes | 5,632 bytes | 5.01 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
E36C6AD0568CD039E0C7810069438D6D |
.data |
0x0000a000 |
176,152 bytes | 1,536 bytes | 4.16 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
33B1D611A00420C98FA82231FEAA907B |
.ndata |
0x00036000 |
77,824 bytes | 0 bytes | 0.00 (Normal) |
IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
D41D8CD98F00B204E9800998ECF8427E |
.rsrc |
0x00049000 |
34,088 bytes | 34,304 bytes | 4.10 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
602AE9E32CE76B9F575D6152BBA3CB1A |
1 section(s) with elevated entropy (≥6.5) - possible compression
Resource Type | Count | Total Size | Percentage |
---|---|---|---|
RT_BITMAP | 1 | 1,638 bytes | |
RT_ICON | 4 | 23,968 bytes | |
RT_DIALOG | 21 | 5,816 bytes | |
RT_GROUP_ICON | 1 | 62 bytes | |
RT_MANIFEST | 1 | 1,072 bytes |
This file is not digitally signed.
⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources
OK
Gridinsoft has the capability to identify and eliminate Trojan.Win32.Gen.cl without requiring further user intervention.
Download Anti-MalwareFollow these steps to completely remove the threat from your system