Gridinsoft Logo
File Icon

The Paradise-32.exe File Analysis

Technical Analysis

File Name Paradise-32.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.229.174
Database Version 2025-11-17 02:00:27 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
117,760
File Size (bytes)
2025-11-17
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
de1056847807b819a4db7eb426cdf373
SHA1
b376eeeea67c1be7c64d5ec12acab9c9ae9f771e
SHA256
c241a05b13462f8ecc3251e6d94422674a0305c483ef2ae9000a15b1ba70c902
SHA512
281230aa20db3d72048beb6ef9788b230aa7d457867d62e340f706e92ae436c02cd2121376ee47fc31694c7ff5bd92c45614704327bd4a3eb37032324428d7da
ImpHash
6f0f72e12bdea21b3a946ca4036df56c

PE Analysis

Basic Information

Icon
Hash: 9c98e472da3b7b433a13e9c61f17fd99
Fuzzy: 0978519a2a172ff710e1453ea62af7b1
dHash: 79f8ccd4f0f8d4cc
Image Base 0x00400000
Entry Point 0x004014a0
Compilation Time 2021-10-18 10:32:35
Checksum 0x00000000 (Actual: 0x0002af4c)
OS Version 4.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
Digital Signature No valid SignedData structure was found.
Imports 12 libraries
Exports 0 functions
Resources 5 Resources
Sections 8 Sections

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 7,940 bytes 8,192 bytes 6.00 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_16BYTES 1CF5AE5EADC7C1D71F72BB5390488EF0
.data 0x00003000 120 bytes 512 bytes 1.34 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_4BYTES 8347CB31105176C23BEF031C1B15417D
.rdata 0x00004000 1,744 bytes 2,048 bytes 4.76 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_ALIGN_4BYTES CB90300356C29BCC12FB843BE53621E7
.bss 0x00005000 1,008 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_32BYTES D41D8CD98F00B204E9800998ECF8427E
.idata 0x00006000 2,728 bytes 3,072 bytes 4.35 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_4BYTES 66AA60D1E5ABDC08361F728F8011A4E7
.CRT 0x00007000 52 bytes 512 bytes 0.27 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_4BYTES F5162AC0C440A3B119BF2874A30B5641
.tls 0x00008000 8 bytes 512 bytes 0.00 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_4BYTES BF619EAC0CDF3F68D496EA9344137E8B
.rsrc 0x00009000 88,888 bytes 89,088 bytes 7.72 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE|IMAGE_SCN_ALIGN_4BYTES AF8D5372FABDB140B902523C5E1371F7
Entropy Analysis Alert

1 section(s) with high entropy (≥7.5) detected - possible packing/encryption

Resource Analysis

Total Resources: 5 (88,578 bytes)
Resource Type Count Total Size Percentage
RT_ICON 4 88,516 bytes
99.9%
RT_GROUP_ICON 1 62 bytes
0.1%

Certificate Chain Analysis

No Digital Signatures

This file is not digitally signed.

Security Implications:
  • Cannot verify the publisher's identity
  • Increased security risk when running this file
  • May trigger security warnings on some systems

⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources

Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.

Your Score for
/

Gridinsoft Anti-Malware

Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware

Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!

Gridinsoft Anti-Malware