Gridinsoft Logo
File Icon

The Global Unlocker Setup Wizard (5.1.8.95).exe (Global-Software-Setup) File Analysis

Technical Analysis

File Name Global Unlocker Setup Wizard (5.1.8.95).exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.254.174
Database Version 2026-09-11 19:00:22 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
17,224,456
File Size (bytes)
2026-09-11
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
f37bededb42c5f3f4065b322ba3c33bb
SHA1
eec3351cce565e7b7ef1627650a023ea113a5b34
SHA256
5263b5dc1e369ce1d099c9ba68c21a2142a27f8b294ecd339de00770e3694062
SHA512
c93c92b10d941657e68fac0d52520df2aac96e7fcec65a497d8dd1b90f46c38af9d47c2788347e32d93c10ebf06ce02243cbe8e761c3ff3ddedf589e770c7680
ImpHash
c34086c23002ce491ff8d1daaa7db355

PE Analysis

Basic Information

Icon
Hash: 6fa41596887ce55576eb07165e1d7a90
Fuzzy: e4bfbdf7c19285157cae7fac2239c8fe
dHash: f0f0ea6969a2d060
Image Base 0x00400000
Entry Point 0x0075900c
Compilation Time 2026-03-23 22:57:13
Checksum 0x0106e3a1 (Actual: 0x0106edb3)
OS Version 6.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
Digital Signature Chain verification from CN=Global Unlocker Team (serial:28254919937727119858272030552473851431, sha1:c33f4659253f0752feda0d51dcf27f9f574704c5) failed: The X.509 certificate provided is self-signed - "Common Name: Global Unlocker Team"
Imports 13 libraries
Exports 2 functions
Resources 132 Resources
Sections 10 Sections

Version Information

CompanyName Global Team
FileDescription Global-Software-Setup
FileVersion 5.0.7.40
ProgramID GlobalUSetup
ProductName Global-Software-Setup
ProductVersion 5.1.8
Translation 0x0409 0x04e4

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 3,487,724 bytes 3,487,744 bytes 6.48 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 2FF366D4438AAF16F888DBA63A1A7020
.itext 0x00355000 16,528 bytes 16,896 bytes 5.90 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 909CCF206BA503C27D1D0A06B15938DE
.data 0x0035a000 59,072 bytes 59,392 bytes 5.68 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE CD6E9ECBF1D5C0145DDF23AEB04F697A
.bss 0x00369000 30,424 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
.idata 0x00371000 14,740 bytes 14,848 bytes 5.20 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE C82F4DE537116D2F25D9080E453FAFCE
.didata 0x00375000 3,106 bytes 3,584 bytes 3.98 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE A45F3EFC512BBF67B637B0744DE51A5A
.edata 0x00376000 120 bytes 512 bytes 1.44 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ A812A30F1D3991DBA9A370AD68C01072
.tls 0x00377000 80 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
.rdata 0x00378000 93 bytes 512 bytes 1.38 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 84767E9D564E5E3153E92B7DAA8A986A
.rsrc 0x00379000 13,632,294 bytes 13,632,512 bytes 8.00 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 8DEF11091339622161E47B43FA3DCBD3
Entropy Analysis Alert

1 section(s) with high entropy (≥7.5) detected - possible packing/encryption

Resource Analysis

Total Resources: 132 (13,624,099 bytes)
Resource Type Count Total Size Percentage
RT_CURSOR 15 7,180 bytes
0.1%
RT_BITMAP 14 6,312 bytes
0%
RT_ICON 5 99,592 bytes
0.7%
RT_DIALOG 2 164 bytes
0%
RT_STRING 34 25,798 bytes
0.2%
RT_RCDATA 48 13,482,295 bytes
99%
RT_GROUP_CURSOR 11 276 bytes
0%
RT_GROUP_ICON 1 76 bytes
0%
RT_VERSION 1 592 bytes
0%
RT_MANIFEST 1 1,814 bytes
0%

Certificate Chain Analysis

Certificate Information
Product Global-Software-Setup
Description Global-Software-Setup
File Version 5.0.7.40
Signing Date 05:59 PM 08/18/2026 (24 days ago)
Verification Status A certificate chain processed, but terminated in a root certificate which is not trusted by the trust provider.
Signers Global Unlocker Team
Certificate Chain Summary
Global Unlocker Team #1 Primary
Validity Period: 2025-08-06 22:48:37 → 2030-08-06 22:58:37
Signature Algorithm: sha256RSA
Serial Number: 15 41 B3 1B 81 1D DF A2 4B F7 B2 CB 40 C9 D6 27
DigiCert SHA256 RSA4096 Timestamp Responder 2025 1 #2 Chain
Validity Period: 2025-06-04 00:00:00 → 2036-09-03 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 0A 80 EF 18 4B 8D F1 05 82 D1 C4 76 A7 95 74 68
DigiCert Trusted G4 TimeStamping RSA4096 SHA256 2025 CA1 #3 Chain
Validity Period: 2025-05-07 00:00:00 → 2038-01-14 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 0D C7 AC 57 05 FF 21 99 2E 40 43 22 0C 3A 49 86
DigiCert Trusted Root G4 #4 Chain
Validity Period: 2022-08-01 00:00:00 → 2031-11-09 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 0E 9B 18 8E F9 D0 2D E7 EF DB 50 E2 08 40 18 5A

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

Chain verification from CN=Global Unlocker Team (serial:28254919937727119858272030552473851431, sha1:c33f4659253f0752feda0d51dcf27f9f574704c5) failed: The X.509 certificate provided is self-signed - "Common Name: Global Unlocker Team"

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. 1
    Weekly Quick Scans: Set a reminder to run a scan every Sunday. Most infections are caught within the first week, so regular checks give you peace of mind.
  2. 2
    Update Everything: Those annoying update popups exist for a reason — they patch security holes. Windows, browsers, Adobe, Java — keep them all current.
  3. 3
    Download Smart: Stick to official websites and app stores. If a "free" version of paid software sounds too good to be true, it probably comes with unwanted extras.
  4. 4
    Think Before You Click: Malware loves email attachments and "urgent" links. Even if an email looks like it's from your bank or a friend, verify suspicious requests through a different channel.
Proactive Protection
This file looks clean right now, but that doesn't mean you should let your guard down. New malware appears daily, and even legit files can be compromised after download. When in doubt, verify the source and check for a digital signature.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.

Gridinsoft Portal
Signed in via Gridinsoft Portal · View profile
Your Score for

Gridinsoft Anti-Malware

Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware

Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!

Gridinsoft Anti-Malware