| File Name | GetTOTheFlag.exe |
| File Type |
PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
|
| Scanner Version | 1.0.231.174 |
| Database Version | 2025-12-26 11:00:42 UTC |
No threats detected by our scanner
| Hash Type | Value | Action |
|---|---|---|
| MD5 |
2f89b05de99dc116e85586f93065c75b
|
|
| SHA1 |
031f53b99a96006a44367492d93a02aabd25a15e
|
|
| SHA256 |
ead30938ba4331bfaaa794cc48794400b0e1e854f8c8dc52e195ff27c6ac05dd
|
|
| SHA512 |
937a5515bece24795ff6831d19ec6f8258fd85d4b505f50e1b747591534d25e241dcd4ed770b7955ec9555fe21e04fd55a634354518aa08011ddc2fe2832bd45
|
|
| ImpHash |
3f91aceea750f765ef2ba5d9988e6a00
|
| Icon |
Hash: a40392ce62bb88fd12c63ed05d1c8730
Fuzzy: 7f54b4a1f4da210b652d3928a9dafe4e dHash: 00e4d2e4e4c9667c |
| Image Base | 0x00400000 |
| Entry Point | 0x004036fc |
| Compilation Time | 2022-03-30 10:24:34 |
| Checksum | 0x00000000 (Actual: 0x01219403) |
| OS Version | 5.1 |
| PEiD Signatures |
PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
|
| Digital Signature | No valid SignedData structure was found. |
| Imports |
7 libraries
ADVAPI32, SHELL32, ole32, COMCTL32, USER32, GDI32, KERNEL32 |
| Exports | 0 functions |
| Resources | 20 Resources |
| Sections | 5 Sections |
| CompanyName | |
| FileDescription | Installer for |
| FileVersion | 1.0.0.0 |
| LegalCopyright | |
| ProductName | GetTOTheFlagAFTON |
| ProductVersion | 1.0.0.0 |
| Translation | 0x0409 0x04b0 |
| Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
|---|---|---|---|---|---|---|
.text |
0x00001000 |
28,722 bytes | 29,184 bytes | 6.41 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
3668D67C78869A28F70344E1D8E85519 |
.rdata |
0x00009000 |
6,562 bytes | 6,656 bytes | 5.04 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
84ED2873BB9AE54D09EF52F1FAEBFE9E |
.data |
0x0000b000 |
174,848 bytes | 512 bytes | 2.04 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
D11EE5D02BCD95455113CDEBFC4A87A5 |
.ndata |
0x00036000 |
90,112 bytes | 0 bytes | 0.00 (Normal) |
IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
D41D8CD98F00B204E9800998ECF8427E |
.rsrc |
0x0004c000 |
201,216 bytes | 201,216 bytes | 5.84 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
C36CE5CF30EE2FAADB49EE87F37CA308 |
| Resource Type | Count | Total Size | Percentage |
|---|---|---|---|
| RT_BITMAP | 1 | 1,638 bytes | |
| RT_ICON | 9 | 194,717 bytes | |
| RT_DIALOG | 7 | 1,970 bytes | |
| RT_GROUP_ICON | 1 | 132 bytes | |
| RT_VERSION | 1 | 536 bytes | |
| RT_MANIFEST | 1 | 1,081 bytes |
| Product | GetTOTheFlagAFTON |
| Description | Installer for |
| File Version | 1.0.0.0 |
✓ This file has been digitally signed and the certificate chain has been verified
No valid SignedData structure was found.
Recommendation: Verify the file source and ensure it comes from a trusted publisher.
Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:
Download Anti-MalwareThis file appears clean, but regular security maintenance is important
Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware
Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!