×
This file seems to be a .NET executable .
Sadly, Manalyzer's analysis techniques were designed for native code, so it's likely that this report won't tell you much.
Sorry!
Architecture
IMAGE_FILE_MACHINE_I386
Subsystem
IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date
2071-May-24 18:07:35
Debug artifacts
Setup-TSplus.pdb
Comments
CompanyName
TSplus
FileDescription
Setup
FileVersion
19.30.0.0
InternalName
Setup-TSplus.exe
LegalCopyright
Copyright © TSplus 2021-2026
LegalTrademarks
OriginalFilename
Setup-TSplus.exe
ProductName
Setup
ProductVersion
19.30.0.0
Assembly Version
19.30.0.0
Info
Matching compiler(s):
Microsoft Visual C# v7.0 / Basic .NET
.NET executable -> Microsoft
Info
Interesting strings found in the binary:
Contains domain names:
analytics.com
google-analytics.com
www.google-analytics.com
Info
The PE is digitally signed.
Signer: TSplus SAS
Issuer: GlobalSign GCC R45 EV CodeSigning CA 2020
Safe
VirusTotal score: 0/70 (Scanned on 2026-06-25 21:48:41)
All the AVs think this file is safe.
MD5
083a9fbc5c58740326225209daf05a62
SHA1
90399756317e0b527f31b7eeba421134ee8c1a33
SHA256
0630b484f9a6bcf7fd1d996db458a25f8b6235c6f5baa4fe17d599c0584dac3e
SHA3
3df52bb0d32fdadac84a318cf981573bb2c25bf7a782aef0bbaeb9bf265a16d6
SSDeep
98304:SpjxfJTXbUoN7iTxf0bqVsM/zaLCJN0Q7BpnuuL/fD0kVWpvWp8oDrH+r7:A5JzAoN7iF8qVj/+q0Qp5L/fEvWp8o/s
Imports Hash
f34d5f2d4577ed6d9ceec516c1f5a744
e_magic
MZ
e_cblp
0x90
e_cp
0x3
e_crlc
0
e_cparhdr
0x4
e_minalloc
0
e_maxalloc
0xffff
e_ss
0
e_sp
0xb8
e_csum
0
e_ip
0
e_cs
0
e_ovno
0
e_oemid
0
e_oeminfo
0
e_lfanew
0x80
Signature
PE
Machine
IMAGE_FILE_MACHINE_I386
NumberofSections
3
TimeDateStamp
2071-May-24 18:07:35
PointerToSymbolTable
0
NumberOfSymbols
0
SizeOfOptionalHeader
0xe0
Characteristics
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE
Magic
PE32
LinkerVersion
48.0
SizeOfCode
0x475200
SizeOfInitializedData
0x51600
SizeOfUninitializedData
0
AddressOfEntryPoint
0x0047712E (Section: .text)
BaseOfCode
0x2000
BaseOfData
0x478000
ImageBase
0x400000
SectionAlignment
0x2000
FileAlignment
0x200
OperatingSystemVersion
4.0
ImageVersion
0.0
SubsystemVersion
6.0
Win32VersionValue
0
SizeOfImage
0x4cc000
SizeOfHeaders
0x200
Checksum
0x4d8e9e
Subsystem
IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NO_SEH
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve
0x100000
SizeofStackCommit
0x1000
SizeofHeapReserve
0x100000
SizeofHeapCommit
0x1000
LoaderFlags
0
NumberOfRvaAndSizes
16
MD5
49565eb8e9af8050da3bb66248930f50
SHA1
c31f91930a7e92007ea883438dbd91a56ffb2e86
SHA256
ef159d2539c63f6d3be519c5ba4ed2f2340c9b48907e7db99f5460564cb4215b
SHA3
0b935db7cc1dcdb0e31a28d555bbba358c5c0347d37baeaf0854c3fdfcd55b3e
VirtualSize
0x475134
VirtualAddress
0x2000
SizeOfRawData
0x475200
PointerToRawData
0x200
PointerToRelocations
0
PointerToLineNumbers
0
NumberOfLineNumbers
0
NumberOfRelocations
0
Characteristics
IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy
7.96474
MD5
34a9a47f98228a7ad261d50f8758a220
SHA1
62d3d8853025c9bea341a444619bc5cf34123e70
SHA256
1ebeaa5c9a3f127d40a2c4a1f9da7998f4eabe7fd9da41ff5cd1975d4b2d97ff
SHA3
707092cd8ddbdb2c591e4cab5819e6c3d112e03881f8b7a2ec2a96e0c9fe71ef
VirtualSize
0x5121d
VirtualAddress
0x478000
SizeOfRawData
0x51400
PointerToRawData
0x475400
PointerToRelocations
0
PointerToLineNumbers
0
NumberOfLineNumbers
0
NumberOfRelocations
0
Characteristics
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy
3.38785
MD5
3d70542aa53455a8e55dbe2cab4586f9
SHA1
4c69572c77548819f7fd7f5b6dc5d63345016cbd
SHA256
ee768040b039a79914dd3bcc55e7e36bdbe588573f936519674445367938373e
SHA3
62c36f5157dd5f162a363c8d38915ef18afd5c9ddd8ce4c9c1ae2d6d18f614f0
VirtualSize
0xc
VirtualAddress
0x4ca000
SizeOfRawData
0x200
PointerToRawData
0x4c6800
PointerToRelocations
0
PointerToLineNumbers
0
NumberOfLineNumbers
0
NumberOfRelocations
0
Characteristics
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy
0.10191
Type
RT_ICON
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x3e028
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
3.36339
MD5
148019a38c5dbbdb4518263520b96bf5
SHA1
0994902017f407b4e7666ab6337107160ef4df8b
SHA256
0fd710fa4fb7bffedd19c55f9934c3235b9c848097983a01a5959b45857c6a89
SHA3
914a9d48be3826c73de998040294c9d56e2272b32947d12e9067af56081bb5b3
Type
RT_ICON
Language
UNKNOWN
Codepage
UNKNOWN
Size
0xfc1c
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
3.14682
MD5
6505dbb059aceffecee1dbe1131d0ad6
SHA1
9c9d5a3da4959db2c6462c89520da0c34ecc2e9a
SHA256
880699ae91de1fb2f9844ebb763e36f1ec61d036bf7f01a31ae627ddecc7ae27
SHA3
81e6c2adcdb6475642406f9cf822936ee72f7c5a705e7836a31694be0934cbe4
Type
RT_ICON
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x25a8
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
2.57002
MD5
b135bab7eb13658eea9c5c757c07137a
SHA1
fcfa3745a4641e808538f92aa64b586cdd37e352
SHA256
f2d7b376440f95cc8622ffd4156aa6a102a3f01026ad90d107cced48de844bd0
SHA3
a02d490e41e66d8537a025925bbb3f6d5fbc4d6cfbd635fb98c19c41773e8517
Type
RT_GROUP_ICON
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x30
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
2.72749
Detected Filetype
Icon file
MD5
ba0292d8a50da90c47847e7550f60c52
SHA1
674be46dea7fe6f27506ad8a1f8534256baf0b9a
SHA256
aab4d0eec0efc7b05abe691c54ac83ee64fc5e1fe03ccd8ae0bde17ecd84c898
SHA3
1359e4857d1e235155f19d9b8302a527ccca75755ea4501dff647493f2219a2b
Type
RT_VERSION
Language
UNKNOWN
Codepage
UNKNOWN
Size
0x34c
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
3.36511
MD5
6fdb25f2b5a09a13e65dc22226af9822
SHA1
db6e1219bbfc60b0747bff13f3e490b19562cf71
SHA256
59f00feffb1069603399210f786093b23576bab6b2e0d8cf722e118320a8da2e
SHA3
3a045fa5af3f5206ae7978f003743409644e89592f6e49a80ce5b94b78bf1c78
Type
RT_MANIFEST
Language
UNKNOWN
Codepage
UNKNOWN
Size
0xb25
TimeDateStamp
1980-Jan-01 00:00:00
Entropy
5.12065
MD5
edbccfd645cf229a623879bc5c3ebbbe
SHA1
e39fc3d05f59f620482021f33e63d7009fb692bb
SHA256
b0f343e1c09319470875c30aad34859c7a4a428aed73cf88676f7767ad360b0a
SHA3
b3ac329efe15486c423e0447affe6761bf42163679f3b5bd069597a2b5b4f607
Signature
0xfeef04bd
StructVersion
0x10000
FileVersion
19.30.0.0
ProductVersion
19.30.0.0
FileFlags
(EMPTY)
FileOs
VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
FileType
VFT_APP
Language
UNKNOWN
Comments
CompanyName
TSplus
FileDescription
Setup
FileVersion (#2)
19.30.0.0
InternalName
Setup-TSplus.exe
LegalCopyright
Copyright © TSplus 2021-2026
LegalTrademarks
OriginalFilename
Setup-TSplus.exe
ProductName
Setup
ProductVersion (#2)
19.30.0.0
Assembly Version
19.30.0.0
Characteristics
0
TimeDateStamp
2071-Feb-06 06:29:18
Version
0.0
SizeofData
41
AddressOfRawData
0x4770ac
PointerToRawData
0x4752ac
Referenced File
Setup-TSplus.pdb
Characteristics
0
TimeDateStamp
1970-Jan-01 00:00:00
Version
0.0
SizeofData
0
AddressOfRawData
0
PointerToRawData
0