Gridinsoft Logo
File Icon

The OriginRO Launcher.exe (Client Updater/Launcher) File Analysis

Technical Analysis

File Name OriginRO Launcher.exe
File Type
PE32+ executable (GUI) x86-64, for MS Windows
Scanner Version 1.0.214.174
Database Version 2025-04-19 20:00:20 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
2,315,776
File Size (bytes)
2025-04-19
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
40bda4a908ae284f61b7ff91c6484ca2
SHA1
2d3a3b4ea3849bdbde967ffff3cbe9b8c15b55d9
SHA256
446e30e3832f5fd3d1827c56110e3f388397b8c7151e1a2cd6770eaf670f1c8b
SHA512
518205926933d80ac7b7a86dab5713dff86bc11a06a7c40562acb6741f7037de00f1fe54393ee9a0bda770fa7f94f704af982a16a8adf3dcac05c4166ec545f6
ImpHash
062020e92ff7d50f02e79a03274e6fdd

PE Analysis

Basic Information

Icon
Hash: 5b66d44703484d0600238524b7eed7e8
Fuzzy: 2a3020fc77dd7ecb21e010710ed14e90
dHash: 70d49692b296d070
Image Base 0x140000000
Entry Point 0x140043744
Compilation Time 2025-01-08 00:15:24
Checksum 0x002358d7 (Actual: 0x002358d7)
OS Version 5.2
PEiD Signatures PE32+ executable (GUI) x86-64, for MS Windows
Digital Signature No valid SignedData structure was found.
Imports 10 libraries
KERNEL32, USER32, GDI32, COMCTL32, SHELL32, ADVAPI32, ole32, WININET, WINMM, OLEAUT32
Exports 0 functions
Resources 76 Resources
Sections 7 Sections

Version Information

CompanyName Ai4rei/AN
FileDescription Client Updater/Launcher
FileVersion 2.18.1.484
InternalName Skal
LegalCopyright Copyright © 2012-2025 Ai4rei/AN
OriginalFilename elurair.exe
ProductName Elurair
ProductVersion 2.18.1.484
Translation 0x0000 0x0000

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 324,206 bytes 324,608 bytes 6.42 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 43F05073FF81F0C2A674800B6824BD32
.rdata 0x00051000 83,440 bytes 83,456 bytes 5.81 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 117AE2C112395F78CDC86675177F9BDB
.data 0x00066000 28,912 bytes 10,240 bytes 3.42 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D3522EC700B6F275825E450D78425E98
.pdata 0x0006e000 22,224 bytes 22,528 bytes 5.66 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 0310BF8EE797FCA4B865220A78B7EF1F
text 0x00074000 2,333 bytes 2,560 bytes 5.13 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE 848390623061DD90D9AF02B91E254A9D
.rsrc 0x00075000 1,866,272 bytes 1,866,752 bytes 7.91 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 889A7B80AC05F9D5A490844360D3AFE2
.reloc 0x0023d000 4,532 bytes 4,608 bytes 3.71 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 4EE3E4F8D4C5791ED034E18DF0D0176C
Entropy Analysis Alert

1 section(s) with high entropy (≥7.5) detected - possible packing/encryption

Resource Analysis

Total Resources: 76 (1,863,205 bytes)
Resource Type Count Total Size Percentage
PNG 13 1,544,894 bytes
82.9%
RT_ICON 9 277,557 bytes
14.9%
RT_STRING 50 37,608 bytes
2%
RT_RCDATA 1 928 bytes
0%
RT_GROUP_ICON 1 132 bytes
0%
RT_VERSION 1 732 bytes
0%
RT_MANIFEST 1 1,354 bytes
0.1%

Certificate Chain Analysis

Certificate Information
Product Elurair
Description Client Updater/Launcher
File Version 2.18.1.484
Original Name elurair.exe
Internal Name Skal
Copyright Copyright © 2012-2025 Ai4rei/AN

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware