The Roshade Setup 3 3 1 exe (setup) File Malware Analysis
Gridinsoft Logo
File Icon

The Roshade.Setup.3.3.1.exe (setup) File Analysis

Technical Analysis

File Name Roshade.Setup.3.3.1.exe
File Type
PE32+ executable (GUI) x86-64, for MS Windows
Scanner Version 1.0.220.174
Database Version 2025-07-09 04:00:31 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
6,004,480
File Size (bytes)
2025-07-09
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
fe51cdac1d70cc17a57cae25c164bf47
SHA1
814144cb9df1c25942321ff04bb9b64ba55fc5fc
SHA256
83fd3eb8248b4a41ab7bcbbe193d93e57bc0034d20259c6e21dc6a427cfe0dcd
SHA512
87c02c489ecc68a186df7e5d2c5dda3d7ff594fd4fb19a2dacd8556ff91b9a7494889a466a28e930cbe02a57247f8042c1d6e84c91c064c4acb40f8afbcc8075
ImpHash
e25baff7652e2959c86cc6a590ce8f80

PE Analysis

Basic Information

Icon
Hash: 11f0961c5ef33909d6ad383e0f4055c7
Fuzzy: 3b5d3c7d207e37dceeedd301e35e2e58
dHash: e880a8a8d0a08022
Image Base 0x140000000
Entry Point 0x140c70170
Compilation Time 2023-04-22 10:23:43
Checksum 0x005c72f2 (Actual: 0x005c72f2)
OS Version 6.0
PEiD Signatures PE32+ executable (GUI) x86-64, for MS Windows
Digital Signature OK
Imports 31 libraries
Exports 0 functions
Resources 3 Resources
Sections 3 Sections

Version Information

ProductName setup
FileVersion 3.3.1
ProductVersion 3.3.1
FileDescription setup
Translation 0x0000 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
UPX0 0x00001000 7,053,312 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
UPX1 0x006bb000 5,988,352 bytes 5,986,816 bytes 7.89 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 45C7F9A7B357E170A2CE92D2270BE63B
.rsrc 0x00c71000 8,192 bytes 6,656 bytes 3.33 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 2E051D9000CEAC91859E654AA6AEFA50
Entropy Analysis Alert

1 section(s) with high entropy (≥7.5) detected - possible packing/encryption

Resource Analysis

Total Resources: 3 (4,052 bytes)
Resource Type Count Total Size Percentage
RT_ICON 1 3,624 bytes
89.4%
RT_GROUP_ICON 1 20 bytes
0.5%
RT_VERSION 1 408 bytes
10.1%

Certificate Chain Analysis

Certificate Information
Product setup
Description setup
File Version 3.3.1
Signing Date 10:23 AM 04/22/2023 (859 days ago)
Verification Status Signed
Signers Zeal Software Applications; Sectigo Public Code Signing CA R36; Sectigo Public Code Signing Root R46; Sectigo (AAA)
Counter Signers Sectigo RSA Time Stamping Signer #3; Sectigo RSA Time Stamping CA; Sectigo
Certificate Chain Summary
Sectigo Public Code Signing Root R46 #1 Primary
Validity Period: 2021-05-25 00:00:00 → 2028-12-31 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 48 FC 93 B4 60 55 94 8D 36 A7 C9 8A 89 D6 94 16
Sectigo Public Code Signing CA R36 #2 Chain
Validity Period: 2021-03-22 00:00:00 → 2036-03-21 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 62 1D 6D 0C 52 01 9E 3B 90 79 15 20 89 21 1C 0A
Zeal Software Applications #3 Chain
Validity Period: 2022-08-15 00:00:00 → 2023-08-15 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 55 BA B2 DA EE B5 DE 61 DA 8C 70 4C A5 E0 EC F8
Sectigo RSA Time Stamping CA #4 Chain
Validity Period: 2019-05-02 00:00:00 → 2038-01-18 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 30 0F 6F AC DD 66 98 74 7C A9 46 36 A7 78 2D B9
Sectigo RSA Time Stamping Signer #3 #5 Chain
Validity Period: 2022-05-11 00:00:00 → 2033-08-10 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 90 39 7F 9A D2 4A 3A 13 F2 BD 91 5F 08 38 A9 43

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware