Gridinsoft Logo
File Icon

The setup.exe (Microsoft Setup Bootstrapper) File Analysis

Technical Analysis

File Name setup.exe
File Type
PE32+ executable (GUI) x86-64, for MS Windows
Scanner Version 1.0.212.174
Database Version 2025-04-08 18:01:03 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
262,336
File Size (bytes)
2025-04-08
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
92c34025207f2aa9ffd194f475103f68
SHA1
c9ed9845fb7fe04312de0a1ed65bf62804324308
SHA256
b19d79cdccfb4d48bc8f33ec2422acdf17ade17dd9ba23ea28c23706244e2184
SHA512
1312b1fd70a30d9008e3c080eba74210c9b81e8a9bd2c841363f216e003cbb9d4e6a94b26a28dc370b522683472bb5e6ce6ad711a572a3c49b27c11fc36a58d7
ImpHash
8df305cbfddc966a7b6ab459d5570a2d

PE Analysis

Basic Information

Icon
Hash: 5f94b95007880b3f19d43ffec7d49425
Fuzzy: f3f5c220b4667001ff0764453ac23c10
dHash: e0c8cec6c6c6c8e0
Image Base 0x140000000
Entry Point 0x140001978
Compilation Time 2015-07-30 12:26:14
Checksum 0x0004cd22 (Actual: 0x0004cd22)
OS Version 5.2
PEiD Signatures PE32+ executable (GUI) x86-64, for MS Windows
PDB Path P:\Target\x64\ship\setupexe\x-none\setup.pdbtup.pdb0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
Digital Signature OK
Imports 1 libraries
KERNEL32
Exports 0 functions
Resources 26 Resources
Sections 6 Sections

Version Information

CompanyName Microsoft Corporation
FileDescription Microsoft Setup Bootstrapper
FileVersion 16.0.4266.1001
InternalName setup.exe
LegalTrademarks1 Microsoft® is a registered trademark of Microsoft Corporation.
LegalTrademarks2 Windows® is a registered trademark of Microsoft Corporation.
OriginalFilename setup.exe
ProductName Microsoft Setup Bootstrapper
ProductVersion 16.0.4266.1001
MOSEVersion BETA
Translation 0x0000 0x04e4

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 44,368 bytes 44,544 bytes 6.37 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 95378F9050E29667EC77DC8501840A33
.rdata 0x0000c000 33,328 bytes 33,792 bytes 4.70 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ D091F374547629222B4D4850BFF6DF2E
.data 0x00015000 6,872 bytes 2,560 bytes 1.91 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 89882E73208C6756B911FD37D0DC6F98
.pdata 0x00017000 3,348 bytes 3,584 bytes 4.61 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 57A91F08F0FA4DFC3A35B700C706E9E6
.rsrc 0x00018000 168,024 bytes 168,448 bytes 2.06 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ B3E3A8C63C3135A175014CDA298D594F
.reloc 0x00042000 1,352 bytes 1,536 bytes 5.13 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 677E680201F08E6B7254EF23E1584C73

Resource Analysis

Total Resources: 26 (166,623 bytes)
Resource Type Count Total Size Percentage
RT_ICON 23 163,678 bytes
98.2%
RT_GROUP_ICON 1 328 bytes
0.2%
RT_VERSION 1 1,108 bytes
0.7%
RT_MANIFEST 1 1,509 bytes
0.9%

Certificate Chain Analysis

Certificate Information
Product Microsoft Setup Bootstrapper
Description Microsoft Setup Bootstrapper
File Version 16.0.4266.1001
Original Name setup.exe
Signing Date 02:03 PM 07/31/2015 (3599 days ago)
Verification Status Signed
Signers Microsoft Corporation; Microsoft Code Signing PCA; Microsoft Root Certificate Authority
Counter Signers Microsoft Time-Stamp Service; Microsoft Time-Stamp PCA; Microsoft Root Certificate Authority
Internal Name setup.exe
Certificate Chain Summary
Microsoft Time-Stamp Service #1 Primary
Validity Period: 2015-03-20 17:32:03 → 2016-06-20 17:32:03
Signature Algorithm: sha1RSA
Serial Number: 33 00 00 00 71 B3 2E 8A 6B 82 AA 1F 4E 00 00 00 00 00 71
Microsoft Corporation #2 Chain
Validity Period: 2015-06-04 17:42:45 → 2016-09-04 17:42:45
Signature Algorithm: sha1RSA
Serial Number: 33 00 00 01 0A 2C 79 AE D7 79 7B A6 AC 00 01 00 00 01 0A
Microsoft Code Signing PCA #3 Chain
Validity Period: 2010-08-31 22:19:32 → 2020-08-31 22:29:32
Signature Algorithm: sha1RSA
Serial Number: 61 33 26 1A 00 00 00 00 00 31
Microsoft Time-Stamp PCA #4 Chain
Validity Period: 2007-04-03 12:53:09 → 2021-04-03 13:03:09
Signature Algorithm: sha1RSA
Serial Number: 61 16 68 34 00 00 00 00 00 1C

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware