The TLauncher Installer 1 9 3 exe (TLauncher Setup) TLauncher Inc File Malware Analysis
Gridinsoft Logo
File Icon

The TLauncher-Installer-1.9.3.exe (TLauncher Setup) File Analysis

Technical Analysis

File Name TLauncher-Installer-1.9.3.exe
File Type
Win32 EXE
Magic Bytes PE32 executable (GUI) Intel 80386, for MS Windows
SSDEEP Hash
786432:XobBY+n8nQ6W1RrrKJBH5lFRqJkkt9O2B4Bi5e:XobW+PTbPKJBZlC39ORb
Scanner Version 1.0.229.174
Database Version 2025-12-03 18:00:38 UTC

Suspicious File Detected

Detected by 10 security engines - requires caution

This file requires additional checking for potential threats. Based on suspicious indicators, we will soon add it to our virus database.
14%
Detection Rate
26,655,352
File Size (bytes)
10/71
Engines Detected
2025-12-03
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
5a52824dcbf7114825606269e4040074
SHA1
8012466b07c77fc25f258542dc4c0181eb8a628e
SHA256
b0445930fd2580dc904d970faa5072690e398399e526fea505e4a09d9fb8d450
SHA512
1c566a3678efcfb71086f8ca56f718540484ec11db5762d8d2b0cc8e39bdf422a6b62575f618614f77017a5ff7d04202f7cb6144b74435e3778bab31b0846e93
ImpHash
42f8ab45a28dc8866c775fcbab7b12b0

Security Engines with Detections (10 of 71)

Skyhigh
Artemis Malicious
ESET-NOD32
Generik.IPKIOCP potentially unwanted application Malicious
Rising
PUA.Undefined!8.132FE (CLOUD) Malicious
Sophos
Generic Reputation PUA (PUA) Malicious
McAfeeD
ti!B0445930FD25 Malicious
Microsoft
PUADlManager:Win32/OfferCore Malicious
DeepInstinct
MALICIOUS Malicious
Malwarebytes
PUP.Optional.BundleInstaller Malicious
TrellixENS
Artemis!5A52824DCBF7 Malicious
MaxSecure
Trojan.Malware.325836606.susgen Malicious
61 engines reported no threats - Only engines with detections are shown above for clarity

PE Analysis

Basic Information

Icon
Hash: 663fbbbf73197486b89aed91aa2cbce3
Fuzzy: 14d4b0265f819a4707b510c4802c925b
dHash: c092ec6dededd2b0
Image Base 0x00400000
Entry Point 0x004f165b
Compilation Time 2025-03-25 15:19:56
Checksum 0x01973d6e (Actual: 0x01973d6e)
OS Version 5.1
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
Digital Signature OK
Imports 16 libraries
Exports 0 functions
Resources 12 Resources
Sections 5 Sections

Version Information

Comments TLauncher Setup
CompanyName TLauncher Inc.
FileDescription TLauncher Setup
FileVersion 1.9.3.0
InternalName TLauncher
LegalCopyright TLauncher Copyright © 2025
LegalTrademarks TLauncher
OriginalFilename suf_launch.exe
ProductName TLauncher
ProductVersion 2.9343.0.0
Translation 0x0409 0x0000

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 1,125,362 bytes 1,125,376 bytes 6.52 (Compressed) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 9910E48825765E90BB2756E7356FA653
.rdata 0x00114000 264,908 bytes 265,216 bytes 5.00 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 8DD1DEA894C165079FAD50E4B77C1EC4
.data 0x00155000 52,608 bytes 22,528 bytes 4.70 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 5864DE61278E56D681C6ACAD4C7AA0D9
.rsrc 0x00162000 122,584 bytes 122,880 bytes 5.52 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ A6B275E8CF9662AD6C7BC800363270C1
.reloc 0x00180000 165,164 bytes 165,376 bytes 4.91 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 5E0DC7FBC004EBC65C58B623FDD7F31A
Entropy Analysis Alert

1 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 12 (121,895 bytes)
Resource Type Count Total Size Percentage
RT_ICON 9 119,236 bytes
97.8%
RT_GROUP_ICON 1 132 bytes
0.1%
RT_VERSION 1 848 bytes
0.7%
RT_MANIFEST 1 1,679 bytes
1.4%

Certificate Chain Analysis

Certificate Information
Product TLauncher
Description TLauncher Setup
File Version 1.9.3.0
Original Name suf_launch.exe
Signing Date 08:04 AM 10/24/2025 (76 days ago)
Verification Status Signed
Signers TLauncher Inc.; Trustwave Global Code Signing CA, Level 1; Trustwave Global Certification Authority
Counter Signers Viking Cloud TWG Timestamping Responder 2022; Viking Cloud TWG Timestamping CA, Level 1; Trustwave Global Certification Authority
Internal Name TLauncher
Copyright TLauncher Copyright © 2025
Certificate Chain Summary
TLauncher Inc. #1 Primary
Validity Period: 2022-12-23 07:13:37 → 2026-02-02 07:12:37
Signature Algorithm: sha256RSA
Serial Number: 07 7F 22 38 BE 42 10 BC DD A8 7C D5 BD DB 90 61 80 9F 32
Trustwave Global Code Signing CA, Level 1 #2 Chain
Validity Period: 2018-02-06 12:21:21 → 2042-08-21 18:21:21
Signature Algorithm: sha256RSA
Serial Number: 06 CE 82 D9 B3 D4 98 74 56 05 D6 66 6B 6D 6D 99 7B CB 73
Viking Cloud TWG Timestamping Responder 2022 #3 Chain
Validity Period: 2022-08-10 10:55:04 → 2033-11-06 16:55:04
Signature Algorithm: sha256RSA
Serial Number: 07 71 C2 62 80 B4 DA 77 02 03 13 AB BC FA A3 FF ED 8B 2A
Viking Cloud TWG Timestamping CA, Level 1 #4 Chain
Validity Period: 2022-08-10 10:18:23 → 2037-08-10 10:18:23
Signature Algorithm: sha256RSA
Serial Number: 07 71 C1 BC FC 08 5F 97 F1 8C 6A 6A 23 C8 D3 7F 08 7D F9
Indigo Rose Software Design Corporation #5 Chain
Validity Period: 2023-08-03 00:00:00 → 2026-08-02 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 26 F0 EA 65 60 7F CA 8F E0 ED 7E AA BF 38 D4 3C
USERTrust RSA Certification Authority #6 Chain
Validity Period: 2019-03-12 00:00:00 → 2028-12-31 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 39 72 44 3A F9 22 B7 51 D7 D3 6C 10 DD 31 35 95
Certera Code Signing CA #7 Chain
Validity Period: 2022-09-07 00:00:00 → 2032-09-06 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 21 66 F0 8A 51 EB FC AB CC 8F 44 30 91 A9 4B 0E
Sectigo Public Time Stamping Signer R35 #8 Chain
Validity Period: 2024-01-15 00:00:00 → 2035-04-14 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 3A 52 6A 2C 84 CE 55 E6 1D 65 FC CC 12 D8 E9 89
Sectigo Public Time Stamping CA R36 #9 Chain
Validity Period: 2021-03-22 00:00:00 → 2036-03-21 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 7A 23 AE DA 53 69 96 0F 91 C8 3E 5C F4 C7 E3 3F
Sectigo Public Time Stamping Root R46 #10 Chain
Validity Period: 2021-03-22 00:00:00 → 2038-01-18 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 36 C2 B0 BD 7C 1B 3A E7 A3 B3 DD 36 CB C9 75 68

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
10 antivirus engines detected potential threats. This could be a false positive, especially for system tools or packed software. Verify the file source and check if it's digitally signed by a trusted publisher.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware

Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!

Gridinsoft Anti-Malware