Gridinsoft Logo
File Icon

The MuInstaller_11.0.0.0 TelleZ.exe (MuMu安装器) File Analysis

Technical Analysis

File Name MuInstaller_11.0.0.0 TelleZ.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.220.174
Database Version 2025-07-13 16:00:20 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
9,317,496
File Size (bytes)
2025-07-13
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
95351bbb69c77660c99cc75eeb9a838d
SHA1
9aba7b0630c255ed64ba82eca99380a9331c91a4
SHA256
93717cf25be564aa73d437087356a38438291b04e344dfc5c748921c77ff4ef0
SHA512
63638a0129f2b8362c97a0843fee972e9ada92dafaebf9dc3f0aee02a44b73e40b4401e3b439775207ab65669bf69d7e01bf89f3d1d787d6ea452b3c5cc283fb
ImpHash
baa93d47220682c04d92f7797d9224ce

PE Analysis

Basic Information

Icon
Hash: 1bfd20ba22bc1a5cc7b8618ebad5d6c8
Fuzzy: c2416cdbae77c6c32570798a5335241b
dHash: f0f0f1362c0e1609
Image Base 0x00400000
Entry Point 0x019dc000
Compilation Time 2022-03-16 06:44:18
Checksum 0x008ed7f9 (Actual: 0x008ed7f9)
OS Version 5.1
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
Digital Signature OK
Imports 2 libraries
kernel32, comctl32
Exports 0 functions
Resources 20 Resources
Sections 6 Sections

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
0x00001000 2,387,968 bytes 966,656 bytes 7.92 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 0964F6696E7997F9F35F779E489B82DC
.rsrc 0x00248000 270,536 bytes 114,176 bytes 7.98 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 34B5EBA9B8222F0E32AA46F1370FD45D
.idata 0x0028b000 4,096 bytes 512 bytes 1.31 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 9DF29D4084F6A60E836D6B57AB5CF271
0x0028c000 12,025,856 bytes 512 bytes 0.26 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE E860FC26733055064A14A1B0430662DE
xtbvpvsq 0x00e04000 8,224,768 bytes 8,221,696 bytes 7.79 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 961572ED98537377CB33BC3414B4E1C8
prbzvsps 0x015dc000 4,096 bytes 512 bytes 4.03 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 588548C4B13A73FA79DEA3B9E85A7FB7
Entropy Analysis Alert

3 section(s) with high entropy (≥7.5) detected - possible packing/encryption

Resource Analysis

Total Resources: 20 (269,342 bytes)
Resource Type Count Total Size Percentage
RT_ICON 12 266,086 bytes
98.8%
RT_MENU 1 74 bytes
0%
RT_DIALOG 1 336 bytes
0.1%
RT_STRING 1 90 bytes
0%
RT_ACCELERATOR 1 16 bytes
0%
RT_GROUP_ICON 2 180 bytes
0.1%
RT_VERSION 1 544 bytes
0.2%
RT_MANIFEST 1 2,016 bytes
0.7%

Certificate Chain Analysis

Certificate Information
Product MuMu安装器
Description MuMu安装器
File Version 1.0.5.0
Signing Date 10:37 AM 03/31/2022 (1200 days ago)
Verification Status Signed
Signers NetEase (Hangzhou) Network Co., Ltd; DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1; DigiCert Trusted Root G4
Counter Signers DigiCert Timestamp 2022 - 2; DigiCert Trusted G4 RSA4096 SHA256 TimeStamping CA; DigiCert Trusted Root G4
Copyright Copyright (C) 2017
Certificate Chain Summary
DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1 #1 Primary
Validity Period: 2021-04-29 00:00:00 → 2036-04-28 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 08 AD 40 B2 60 D2 9C 4C 9F 5E CD A9 BD 93 AE D9
NetEase (Hangzhou) Network Co., Ltd #2 Chain
Validity Period: 2021-10-27 00:00:00 → 2024-10-23 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 02 44 53 70 9C 84 72 5B 99 03 71 85 6B 0E 50 E0
DigiCert Timestamp 2022 - 2 #3 Chain
Validity Period: 2022-03-29 00:00:00 → 2033-03-14 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 0A 7A 4A 88 9E C9 99 42 90 06 63 38 4D 86 97 9D
DigiCert Trusted G4 RSA4096 SHA256 TimeStamping CA #4 Chain
Validity Period: 2022-03-23 00:00:00 → 2037-03-22 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 07 36 37 B7 24 54 7C D8 47 AC FD 28 66 2A 5E 5B

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware