Gridinsoft Logo
File Icon

FileTime文件时间属性修改器v2.0.exe Malware Generic Analysis

Technical Analysis

File Name FileTime文件时间属性修改器v2.0.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed
Scanner Version 1.0.214.174
Database Version 2025-04-16 20:00:17 UTC

Malware.Win32.Generic.cld

Malware family: Generic

This detection name identifies suspicious files displaying Trojan-like behavior patterns. It represents malware that masquerades as benign programs while executing unauthorized activities on the infected system.
N/A
Detection Rate
124,416
File Size (bytes)
2025-04-16
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
9bf1ed4650c345641e6c7b1893f955b5
SHA1
d50e1a5016b0cbde29bc11329d5d4bab4e8545fd
SHA256
ff157b3382bb36346d3a8e3bda7791f6edf2b140b56919fe7d010da01148a514
SHA512
b82647b368c1b275f26257b64fe3dc567b092635f818043083690e2c45b6f8fc7fb84c8f0cb53a435f2b074436d092ec3ad277f9c503f435cc3717858de66809
ImpHash
df2d26ef3e967faa4bc20aa3a6e9690b

PE Analysis

Basic Information

Icon
Hash: 58ffd978b14f221c523610429a296df6
Fuzzy: b78e378f7c8093c5f94bd2f61d8b7ccf
dHash: f0e8d4d469b2dc78
Image Base 0x00400000
Entry Point 0x00432c90
Compilation Time 2010-03-03 10:48:32
Checksum 0x00000000 (Actual: 0x00020ebc)
OS Version 5.1
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed
Digital Signature No valid SignedData structure was found.
Imports 9 libraries
KERNEL32, ADVAPI32, COMCTL32, GDI32, ole32, SHELL32, SHLWAPI, USER32, UxTheme
Exports 0 functions
Resources 18 Resources
Sections 3 Sections

Version Information

CompanyName 操作系统使用的一部分文件,或在使用时无法使用的文件。
FileDescription FileTime v2.0 汉化:愚无尽
FileVersion 2.0.3680.7000
InternalName FileTime v2.0 汉化:愚无尽
LegalCopyright FileTime
OriginalFilename FileTime.exe
ProductName FileTime v2.0 汉化:愚无尽
ProductVersion 2.0
Translation 0x0804 0x04b0
CompanyName Marek Sienczak
FileDescription FileTime
FileVersion 2.0.3680.7000
InternalName FileTime
LegalCopyright Copyright (C) 2000-2010 Marek Sienczak
OriginalFilename FileTime.exe
ProductName FileTime
ProductVersion 2.0
Translation 0x0415 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
UPX0 0x00001000 167,936 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
UPX1 0x0002a000 36,864 bytes 36,864 bytes 7.88 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 1C4256070B15F63D90B0761615E18BB1
.rsrc 0x00033000 90,112 bytes 86,528 bytes 5.19 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 4B9A4FF1C44EB9FEAF39E3195D9C1C26
Entropy Analysis Alert

1 section(s) with high entropy (≥7.5) detected - possible packing/encryption

Resource Analysis

Total Resources: 18 (93,358 bytes)
Resource Type Count Total Size Percentage
RT_ICON 4 82,656 bytes
88.5%
RT_DIALOG 4 5,700 bytes
6.1%
RT_STRING 6 2,724 bytes
2.9%
RT_GROUP_ICON 1 62 bytes
0.1%
RT_VERSION 2 1,508 bytes
1.6%
RT_MANIFEST 1 708 bytes
0.8%

Certificate Chain Analysis

No Digital Signatures

This file is not digitally signed.

Security Implications:
  • Cannot verify the publisher's identity
  • Increased security risk when running this file
  • May trigger security warnings on some systems

⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources

Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Malware.Win32.Generic.cld Removal

Gridinsoft has the capability to identify and eliminate Malware.Win32.Generic.cld without requiring further user intervention.

Download Anti-Malware

Removal Instructions

Follow these steps to completely remove the threat from your system

  1. Start by downloading Gridinsoft Anti-Malware to your computer.
  2. Double-click on the gsam-en-install.exe file and follow the on-screen instructions to install the program.
  3. Once the installation of Gridinsoft Anti-Malware is complete, the program will open on the Scan screen.
  4. Click on the "Standard Scan" button to begin scanning your computer for threats.
  5. After the scanning process is finished, click on "Clean Now" to remove any detected threats.
  6. If prompted, restart your system to complete the removal process and ensure all threats are eliminated.
Important: Before You Start
Disconnect from the internet to prevent the malware from spreading or downloading additional threats. Run the scan in Safe Mode for better detection and removal of persistent threats.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware