Gridinsoft Logo
File Icon

The TARISMiniLoader_official.wg.intl.exe File Analysis

Technical Analysis

File Name TARISMiniLoader_official.wg.intl.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
Scanner Version 1.0.185.174
Database Version 2024-08-17 02:00:12 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
11,386,232
File Size (bytes)
2024-08-17
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
1f1b1dc52e850b393dbc409490a56034
SHA1
4c18ac0b8ed9da80aeea380b1e12a7879b50dc90
SHA256
7e3a6b914dc1f307b4183e9ea01d97deac47507db7880162d321ad6dcde040dc
SHA512
fd73f28e9d21d390da1674223a09faba9f0a062b505babda6794f0d2a3e9a949716d3b864a83469da9456b655c35739557d8bafe76917c97ee3cdc2559d31fa1
ImpHash
9b5ef063ac31ccf7d26131466e9e89e5

PE Analysis

Basic Information

Icon
Hash: 5c95a5807c3d32ff34b66e44cb39da3d
Fuzzy: c3533e54b3412085a629d3147d142f05
dHash: e66f3f7a7f693f1e
Image Base 0x00400000
Entry Point 0x00403ac9
Compilation Time 2023-07-02 02:11:15
Checksum 0x00aead12 (Actual: 0x00aead12)
OS Version 4.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
Digital Signature OK
Imports 7 libraries
ADVAPI32, SHELL32, ole32, COMCTL32, USER32, GDI32, KERNEL32
Exports 0 functions
Resources 10 Resources
Sections 5 Sections

Version Information

Comments
CompanyName PROXIMA BETA PTE. LIMITED
FileDescription
FileVersion 0.0.6.228
LegalCopyright
LegalTrademarks
ProductName TARISMiniloader
ProductVersion 0.0.6.228
Translation 0x0804 0x03a8

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 28,348 bytes 28,672 bytes 6.43 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 4B5D37CC8F06FEEC9731AAAADA9AA7EA
.rdata 0x00008000 5,036 bytes 5,120 bytes 5.17 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 526127C1D4048941AF8134336FCEA354
.data 0x0000a000 140,568 bytes 6,144 bytes 3.60 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE AE7A7571AB68E36E3D1D81D2D8114E88
.ndata 0x0002d000 77,824 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
.rsrc 0x00040000 358,112 bytes 358,400 bytes 6.31 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 52332236ABF0F8866417D7C224179BCD

Resource Analysis

Total Resources: 10 (357,482 bytes)
Resource Type Count Total Size Percentage
RT_ICON 6 355,472 bytes
99.4%
RT_DIALOG 1 218 bytes
0.1%
RT_GROUP_ICON 1 90 bytes
0%
RT_VERSION 1 632 bytes
0.2%
RT_MANIFEST 1 1,070 bytes
0.3%

Certificate Chain Analysis

Certificate Information
Product TARISMiniloader
File Version 0.0.6.228
Signing Date 11:57 AM 04/11/2024 (486 days ago)
Verification Status Signed
Signers PROXIMA BETA PTE. LIMITED; DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1; DigiCert Trusted Root G4; DigiCert
Counter Signers DigiCert Timestamp 2023; DigiCert Trusted G4 RSA4096 SHA256 TimeStamping CA; DigiCert Trusted Root G4; DigiCert
Certificate Chain Summary
DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1 #1 Primary
Validity Period: 2021-04-29 00:00:00 → 2036-04-28 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 08 AD 40 B2 60 D2 9C 4C 9F 5E CD A9 BD 93 AE D9
PROXIMA BETA PTE. LIMITED #2 Chain
Validity Period: 2022-01-04 00:00:00 → 2025-01-02 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 08 B4 00 98 9A 7B 9F 0D 6E 71 BE 74 94 B3 32 E1
DigiCert Timestamp 2023 #3 Chain
Validity Period: 2023-07-14 00:00:00 → 2034-10-13 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 05 44 AF F3 94 9D 08 39 A6 BF DB 3F 5F E5 61 16
DigiCert Trusted G4 RSA4096 SHA256 TimeStamping CA #4 Chain
Validity Period: 2022-03-23 00:00:00 → 2037-03-22 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 07 36 37 B7 24 54 7C D8 47 AC FD 28 66 2A 5E 5B
DigiCert Trusted Root G4 #5 Chain
Validity Period: 2022-08-01 00:00:00 → 2031-11-09 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 0E 9B 18 8E F9 D0 2D E7 EF DB 50 E2 08 40 18 5A

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware