| File Name | weasel-0.17.4.5.c127fa7-installer.exe |
| File Type |
Win32 EXE
|
| Magic Bytes | PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive |
| SSDEEP Hash |
196608:ga401hLXExTQ84c/wrX2E3WWcO6fF6yY9ZL0cWG8nxU6rpY8OBu0Ces7N+nTIR:gKqxOcIv3WpN6y7ZPG8OBuT5Wi
|
| Scanner Version | 1.0.226.174 |
| Database Version | 2025-10-07 10:00:31 UTC |
Detected by 30 security engines - requires caution
| Hash Type | Value | Action |
|---|---|---|
| MD5 |
5afea8782f3a6e9752ed22c4670e14af
|
|
| SHA1 |
f89144c4b7357beb498f407705e5f460daca30b6
|
|
| SHA256 |
cc3c79d8ec4863937fe0f3d5043a7d53857d9272c4e23db9d69de82121dfc0a9
|
|
| SHA512 |
232ed8f2485b2b5f10bbb67db0877bfc8b3dac8ea7c908de803e13813f4b1072e4f1bfe0a77b873de4e79d1ab720ddbad3cd16f79288a71112fafcaa5b9d812c
|
|
| ImpHash |
9dda1a1d1f8a1d13ae0297b47046b26e
|
| Icon |
Hash: 77811977fe47baaaebd22c9c56bea934
Fuzzy: 3541add965d4e0592667b37af2b6bd81 dHash: 30d4d4d4d4f0d4cc |
| Image Base | 0x00400000 |
| Entry Point | 0x00403665 |
| Compilation Time | 2024-03-30 16:55:19 |
| Checksum | 0x00000000 (Actual: 0x00be7cfc) |
| OS Version | 4.0 |
| PEiD Signatures |
PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
|
| Digital Signature | No valid SignedData structure was found. |
| Imports |
7 libraries
ADVAPI32, SHELL32, ole32, COMCTL32, USER32, GDI32, KERNEL32 |
| Exports | 0 functions |
| Resources | 28 Resources |
| Sections | 5 Sections |
| Comments | Powered by RIME | 中州韻輸入法引擎 |
| CompanyName | 式恕堂 |
| FileDescription | 小狼毫輸入法 |
| FileVersion | 0.17.4 |
| LegalCopyright | Copyleft RIME Developers |
| ProductName | 小狼毫 |
| Translation | 0x0804 0x04b0 |
| Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
|---|---|---|---|---|---|---|
.text |
0x00001000 |
26,327 bytes | 26,624 bytes | 6.44 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
4E97E586F167BF2D2EDDCDBA22E25C0E |
.rdata |
0x00008000 |
4,952 bytes | 5,120 bytes | 5.10 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
BD82D08A08DA8783923A22B467699302 |
.data |
0x0000a000 |
129,912 bytes | 1,536 bytes | 4.12 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
E411B225AC3CD03A5DAD8143AE82958D |
.ndata |
0x0002a000 |
155,648 bytes | 0 bytes | 0.00 (Normal) |
IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
D41D8CD98F00B204E9800998ECF8427E |
.rsrc |
0x00050000 |
46,592 bytes | 46,592 bytes | 3.48 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
7F735941605DF10F9C4409E4CBFE43D2 |
| Resource Type | Count | Total Size | Percentage |
|---|---|---|---|
| RT_ICON | 7 | 38,645 bytes | |
| RT_DIALOG | 18 | 4,668 bytes | |
| RT_GROUP_ICON | 1 | 104 bytes | |
| RT_VERSION | 1 | 572 bytes | |
| RT_MANIFEST | 1 | 1,070 bytes |
| Product | 小狼毫 |
| Description | 小狼毫輸入法 |
| File Version | 0.17.4 |
| Copyright | Copyleft RIME Developers |
✓ This file has been digitally signed and the certificate chain has been verified
No valid SignedData structure was found.
Recommendation: Verify the file source and ensure it comes from a trusted publisher.
Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:
Download Anti-MalwareThis file appears clean, but regular security maintenance is important
Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware
Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!