Gridinsoft Logo
File Icon

The MelonLoader.Installer.exe (MelonLoader.Installer) File Analysis

Technical Analysis

File Name MelonLoader.Installer.exe
File Type
PE32+ executable (GUI) x86-64, for MS Windows
Scanner Version 1.0.227.174
Database Version 2025-10-12 06:00:17 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
22,334,995
File Size (bytes)
2025-10-12
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
179c844fd8bd3ab184ae58579f315b74
SHA1
f4aa26c3691a8283fddc50d44fd554bc84259fe7
SHA256
929ed9edf54c185bd7711455744133daac2b7ec80f4ff4672f145c61b44c8fdb
SHA512
beee376fbd28ff1359f6102fdad3fbeb165a5ef8ad94960386b0d83766621a9ba2a0c9211c88f05ac65a1d6dcabd2c8435ed1e9a2d48e67b343a63402c5d1cc3
ImpHash
4cf5b55b032188167348d5cf6018c2b0

PE Analysis

Basic Information

Icon
Hash: 427a619955fff8930c6a1f9814274a2b
Fuzzy: a739637fdfc4ebf74549e421a4db167e
dHash: 40988228b8c67031
Image Base 0x140000000
Entry Point 0x1405ef980
Compilation Time 2025-07-15 17:29:01
Checksum 0x00000000 (Actual: 0x01556d72)
OS Version 6.0
PEiD Signatures PE32+ executable (GUI) x86-64, for MS Windows
PDB Path D:\a\_work\1\s\artifacts\obj\coreclr\windows.x64.Release\Corehost.Static\singlefilehost.pdb
Digital Signature No valid SignedData structure was found.
Imports 17 libraries
Exports 6 functions
Resources 12 Resources
Sections 9 Sections

Version Information

Translation 0x0000 0x04b0
CompanyName discord.gg/2Wn3N2P
FileDescription MelonLoader.Installer
FileVersion 4.2.0.0
InternalName MelonLoader.Installer.dll
LegalCopyright
OriginalFilename MelonLoader.Installer.dll
ProductName MelonLoader.Installer
ProductVersion 4.2.0+a1b288e0ab90ac71142f36389ba27138e6f7e133
Assembly Version 4.2.0.0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 6,597,340 bytes 6,597,632 bytes 6.45 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ CFA808502B5E1E957D08BABBC76A283D
.CLR_UEF 0x0064c000 215 bytes 512 bytes 3.09 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 9F5AFEC7116D6EA7378F9B507EF8B4E6
.rdata 0x0064d000 1,609,730 bytes 1,610,240 bytes 5.67 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 127C15C11C8FE3CA9A8B0758C65A8B37
.data 0x007d7000 107,144 bytes 24,576 bytes 2.92 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE DC459B1D0C186CCD7D2C8EF278BB4F01
.pdata 0x007f2000 231,948 bytes 232,448 bytes 6.49 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 89CE91B9750592AA45BF84199C84B6CD
.didat 0x0082b000 56 bytes 512 bytes 0.42 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 0C53079D672A8CD73FE15F106BA07E13
Section 0x0082c000 8 bytes 512 bytes 0.00 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE BF619EAC0CDF3F68D496EA9344137E8B
.rsrc 0x0082d000 1,519,428 bytes 1,519,616 bytes 6.31 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ B1C1E431561721708F908451194A4A09
.reloc 0x009a0000 31,672 bytes 31,744 bytes 5.45 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ B1439A12652BAD9312CADACFB5A51CB8

Resource Analysis

Total Resources: 12 (1,518,561 bytes)
Resource Type Count Total Size Percentage
RT_ICON 6 157,599 bytes
10.4%
RT_RCDATA 3 1,359,304 bytes
89.5%
RT_GROUP_ICON 1 90 bytes
0%
RT_VERSION 1 904 bytes
0.1%
RT_MANIFEST 1 664 bytes
0%

Certificate Chain Analysis

Certificate Information
Product MelonLoader.Installer
Description MelonLoader.Installer
File Version 4.2.0.0
Original Name MelonLoader.Installer.dll
Internal Name MelonLoader.Installer.dll
Certificate Chain Summary
Microsoft Windows Code Signing PCA 2024 #1 Primary
Validity Period: 2024-08-08 21:36:23 → 2035-06-23 22:04:01
Signature Algorithm: sha384RSA
Serial Number: 33 00 00 00 1C 48 9F 81 DF A1 B0 B7 77 00 00 00 00 00 1C
.NET DAC #2 Chain
Validity Period: 2025-05-08 18:23:58 → 2026-05-06 18:23:58
Signature Algorithm: sha384RSA
Serial Number: 33 00 00 00 5C 91 BA DE E1 AF F7 5E 70 00 00 00 00 00 5C
Microsoft Time-Stamp Service #3 Chain
Validity Period: 2024-07-25 18:31:13 → 2025-10-22 18:31:13
Signature Algorithm: sha256RSA
Serial Number: 33 00 00 01 FB CB CB 6C 37 67 E5 30 95 00 01 00 00 01 FB
Microsoft Time-Stamp PCA 2010 #4 Chain
Validity Period: 2021-09-30 18:22:25 → 2030-09-30 18:32:25
Signature Algorithm: sha256RSA
Serial Number: 33 00 00 00 15 C5 E7 6B 9E 02 9B 49 99 00 00 00 00 00 15

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.

Your Score for
/

Gridinsoft Anti-Malware

Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware

Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!

Gridinsoft Anti-Malware