| File Name | Prestige-Injector.exe |
| File Type |
PE32+ executable (GUI) x86-64, for MS Windows
|
| Scanner Version | 1.0.231.174 |
| Database Version | 2026-01-01 03:00:33 UTC |
Malware family: Generic
| Hash Type | Value | Action |
|---|---|---|
| MD5 |
d203ead9237ef2547310613b6e6963b3
|
|
| SHA1 |
c83c76eb6be90032d2cfc317570e40fcc2faffd0
|
|
| SHA256 |
e88dc150d4e79efd2186355036b9548ac29a8063d04c7a83457e1b0a9c398d29
|
|
| SHA512 |
0da372d07eeee6928e7a60cede35e479526ecb95184972e0acd509895731200afef121d2210f7e683cbc0b5f9ca0bc11bebef843a86e2d2855483d4f1ab9463c
|
|
| ImpHash |
b634eed43465867b8c1a26de4d2faa17
|
| Image Base | 0x140000000 |
| Entry Point | 0x14006e990 |
| Compilation Time | 2025-11-11 19:12:09 |
| Checksum | 0x00000000 (Actual: 0x000dadd2) |
| OS Version | 6.0 |
| PEiD Signatures |
PE32+ executable (GUI) x86-64, for MS Windows
|
| Digital Signature | No valid SignedData structure was found. |
| Imports |
7 libraries
WS2_32, WLDAP32, CRYPT32, Normaliz, KERNEL32, ADVAPI32, bcrypt |
| Exports | 0 functions |
| Resources | 1 Resources |
| Sections | 8 Sections |
| Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
|---|---|---|---|---|---|---|
.text |
0x00001000 |
656,400 bytes | 656,896 bytes | 6.43 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
89D1C0F442D19D179B0B368F15DBF9AA |
.rdata |
0x000a2000 |
168,418 bytes | 168,448 bytes | 5.44 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
408B7E3CC9AFE23FA43CB6272B21F41C |
.data |
0x000cc000 |
13,852 bytes | 7,680 bytes | 3.16 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
63D2BA733350861E2EFC67F4DE649D08 |
.pdata |
0x000d0000 |
32,556 bytes | 32,768 bytes | 5.91 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
3D1B36BAA38FF6091BE9F58D3E3A557A |
_RDATA |
0x000d8000 |
500 bytes | 512 bytes | 4.24 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
84320424F5A262135A0526646CC35EA6 |
.fptable |
0x000d9000 |
256 bytes | 512 bytes | 0.00 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
BF619EAC0CDF3F68D496EA9344137E8B |
.rsrc |
0x000da000 |
488 bytes | 512 bytes | 4.76 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
8AA5BA62951437DA331CF05B9C705234 |
.reloc |
0x000db000 |
4,632 bytes | 5,120 bytes | 5.24 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
5CBB108D14412E3D44B4CC3750518C59 |
| Resource Type | Count | Total Size | Percentage |
|---|---|---|---|
| RT_MANIFEST | 1 | 388 bytes |
This file is not digitally signed.
⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources
No valid SignedData structure was found.
Recommendation: Verify the file source and ensure it comes from a trusted publisher.
Gridinsoft has the capability to identify and eliminate Malware.Win64.Generic.cld without requiring further user intervention.
Download Anti-MalwareFollow these steps to completely remove the threat from your system
Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware
Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!