Nom du fichier | linstalIer_x64_4.3.3.6560.exe |
Type de fichier |
Win32 EXE
|
Octets magiques | PE32+ executable (GUI) x86-64, for MS Windows |
Hachage SSDEEP |
393216:qHtTu8oJCRAX2dz1jINxLGCI274XQ5xvfzBA:q1u8oJCRy2darLpxvO
|
Version du scanner | 1.0.158.174 |
Version de la base de données | 2024-02-04 15:00:41 UTC |
Détecté par 6 moteurs de sécurité - prudence requise
Type de hachage | Valeur | Action |
---|---|---|
MD5 |
b0eca13dda4a8d7e2003450a711cc0ff
|
|
SHA1 |
d5a598f10a342757eadffe9cdf4d737537f25dc7
|
|
SHA256 |
2e02d06045d69817ff92684b7a5f066fa765d30382fdd3b09b1559ba7b9602d9
|
|
SHA512 |
7389ca84a5766c70be75c7142c90b59bbf4adb0b31ddbd675f416020d41f5c12548f69ebf36c411145828a3eea907c3711b9d7c30d39a72d6e39bdce6c5e1588
|
|
ImpHash |
5929190c8765f5bc37b052ab5c6c53e7
|
Icône |
Hachage: 4547c2d9b014c3a4768f0a16bda717e4
Flou: f56b8c1016a6927e6a8c747b117b81fe dHash: 92e0b492a6cadaf2 |
Base d'image | 0x140000000 |
Point d'entrée | 0x1400014c0 |
Heure de compilation | 1970-01-01 00:00:00 |
Somme de contrôle | 0x045c6f18 (Réel: 0x045c6f18) |
Version OS | 6.1 |
Signatures PEiD |
PE32+ executable (GUI) x86-64, for MS Windows
|
Signature numérique | The PE file does not contain a certificate table. |
Importations |
2 bibliothèques
KERNEL32, msvcrt |
Exportations | 1 fonctions |
Ressources | 48 Ressources |
Sections | 21 Sections |
CompanyName | Black Ice Software LLC |
FileDescription | Black Ice PDF Printer Driver installer |
FileVersion | 17.11 |
InternalName | Setup |
LegalCopyright | Copyright © 2022 Black Ice Software LLC. All Rights Reserved. |
OriginalFilename | InstallShield Setup.exe |
ProductName | PDF Printer Driver |
ProductVersion | 17.11 |
Internal Build Number | 147420 |
ISInternalVersion | 21.0.338 |
ISInternalDescription | InstallScript Setup Launcher Unicode |
Translation | 0x0409 0x04b0 |
Nom | Adresse virtuelle | Taille virtuelle | Taille brute | Entropie | Caractéristiques | MD5 |
---|---|---|---|---|---|---|
.text |
0x00001000 |
12,266,304 bytes | 12,266,496 bytes | 6.18 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_32BYTES
|
EE361632507D0F92D587B82B5DF306A2 |
.data |
0x00bb4000 |
6,174,256 bytes | 6,174,720 bytes | 6.64 (Compressé) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_32BYTES
|
EA2E88A4701E7176F93981526A934BE9 |
.rdata |
0x01198000 |
19,895,312 bytes | 19,895,808 bytes | 4.95 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_32BYTES
|
5861BA01B1E364F370DD1799428499E2 |
.pdata |
0x02492000 |
330,948 bytes | 331,264 bytes | 5.91 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_4BYTES
|
68CFB469CFE7A17C2B999C10385FED89 |
.xdata |
0x024e3000 |
3,140 bytes | 3,584 bytes | 3.98 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_4BYTES
|
AFEA7A96D57A9E00021E2F45043780C9 |
.bss |
0x024e4000 |
447,360 bytes | 0 bytes | 0.00 (Normal) |
IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_32BYTES
|
D41D8CD98F00B204E9800998ECF8427E |
.edata |
0x02552000 |
78 bytes | 512 bytes | 0.93 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_4BYTES
|
CB5F5AB74DE4BE854E755E75FDA0A3DD |
.idata |
0x02553000 |
5,072 bytes | 5,120 bytes | 4.79 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_4BYTES
|
10645A8E1F3CD11E540C93B03B583FA2 |
.CRT |
0x02555000 |
112 bytes | 512 bytes | 0.47 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_8BYTES
|
54D6CB1A0D033C6CCE1E3C4524EA5CA5 |
.tls |
0x02556000 |
16 bytes | 512 bytes | 0.00 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_8BYTES
|
BF619EAC0CDF3F68D496EA9344137E8B |
.rsrc |
0x02557000 |
374,686 bytes | 374,784 bytes | 6.79 (Compressé) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_4BYTES
|
E8C573DB8E71B2C549940BA54C9237E5 |
.reloc |
0x025b3000 |
362,932 bytes | 363,008 bytes | 5.44 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_4BYTES
|
A82F0290418D53790694D794F27C604E |
/4 |
0x0260c000 |
2,160 bytes | 2,560 bytes | 1.84 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_16BYTES
|
00EED5FAD8A7B997DA594C94A0E66432 |
/19 |
0x0260d000 |
11,246,120 bytes | 11,246,592 bytes | 6.14 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
F60B788A2966480002203CCAF27FE55D |
/31 |
0x030c7000 |
15,147 bytes | 15,360 bytes | 4.77 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
CE123E7FA950C8F4FCD04C9D67F79160 |
/45 |
0x030cb000 |
3,601,919 bytes | 3,601,920 bytes | 5.92 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
B70D30D1BD385BDBF4CC14FDF7F05A22 |
/57 |
0x0343b000 |
1,782,480 bytes | 1,782,784 bytes | 4.05 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_8BYTES
|
92DE03308E84B31AF5E3AFB6C60D4DC7 |
/70 |
0x035ef000 |
2,555 bytes | 2,560 bytes | 4.94 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
F040BD6B2F044F01BBEA4B25F78003EE |
/81 |
0x035f0000 |
10,616,719 bytes | 10,616,832 bytes | 3.01 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
EC2195E06BB1EA3468E3E365DD32F443 |
/92 |
0x04010000 |
2,775,008 bytes | 2,775,040 bytes | 2.42 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
AB081099DFC7EB1432E403E481D03B0C |
/106 |
0x042b6000 |
24 bytes | 512 bytes | 0.44 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_1BYTES
|
87B999FB861257D2CE3244B153DFDDD2 |
2 section(s) avec entropie élevée (≥6.5) - compression possible
Type de ressource | Nombre | Taille totale | Pourcentage |
---|---|---|---|
GIF | 1 | 13,215 octets | |
PNG | 2 | 27,062 octets | |
RT_BITMAP | 6 | 208,296 octets | |
RT_ICON | 13 | 111,808 octets | |
RT_DIALOG | 23 | 9,914 octets | |
RT_GROUP_ICON | 1 | 188 octets | |
RT_VERSION | 1 | 1,136 octets | |
RT_MANIFEST | 1 | 490 octets |
Produit | PDF Printer Driver |
Description | Black Ice PDF Printer Driver installer |
Version du fichier | 17.11 |
Nom original | InstallShield Setup.exe |
Nom interne | Setup |
Copyright | Copyright © 2022 Black Ice Software LLC. All Rights Reserved. |
✓ Ce fichier a été signé numériquement et la chaîne de certificats a été vérifiée.
The PE file does not contain a certificate table.
Recommandation: Vérifiez la source du fichier et assurez-vous qu'il provient d'un éditeur de confiance.
Gridinsoft Anti-Malware dispose d'un moteur d'analyse de virus beaucoup plus puissant. Nous vous recommandons de l'utiliser pour un diagnostic plus précis des systèmes infectés. Ce bref guide vous aidera à installer notre produit phare pour des diagnostics plus précis :
Télécharger Anti-MalwareCe fichier semble propre, mais la maintenance régulière de la sécurité est importante
Débarrassez votre PC de tout type de malwares
GridinSoft Anti-Malware vous aidera à protéger votre ordinateur contre les logiciels espions, les chevaux de Troie, les portes dérobées, les rootkits. Il nettoie votre système des modules publicitaires agaçants et d'autres éléments malveillants développés par des pirates.