Gridinsoft Logo
File Icon

Death Stranding Directors Cut v1.0 Plus 26 Trainer.exe Hack GameHack Analysis

Technical Analysis

File Name Death Stranding Directors Cut v1.0 Plus 26 Trainer.exe
File Type
PE32+ executable (GUI) x86-64, for MS Windows
Scanner Version 1.0.179.174
Database Version 2024-06-19 01:00:22 UTC

Hack.Win64.GameHack.cl

Malware family: GameHack

GameHack refers to game modification tools that manipulate game mechanics to provide unfair advantages, violating game terms of service and fair play principles.
N/A
Detection Rate
1,154,560
File Size (bytes)
2024-06-19
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
bf36e1d433dfa61e97f7d92f44f1af19
SHA1
d1b1f74bec890ae02c3d5284f0e190195cf87f20
SHA256
4e2d60184a4f38ee5d38a702b4409772b58a7bb2eba4b87830ec6df141d7f286
SHA512
88c1f2e488efdd7b04ebe0c7bab818129680e6cc1e7f4ab373f99d6691cc77a3729045f18deb01d019a21bac3e1606a878366937775a936a52dc78448b400a5d
ImpHash
9a0adf0e9dd414974484dff6ab3e3768

PE Analysis

Basic Information

Icon
Hash: 7249d5fc6221a5b21411aa2ad27aa387
Fuzzy: a1c738eea59667290c83d00f50a19604
dHash: 70f8fc7a7e2eaa70
Image Base 0x140000000
Entry Point 0x14002b9f0
Compilation Time 2022-05-11 18:42:15
Checksum 0x00000000 (Actual: 0x00129885)
OS Version 6.0
PEiD Signatures PE32+ executable (GUI) x86-64, for MS Windows
Digital Signature The PE file does not contain a certificate table.
Imports 9 libraries
KERNEL32, USER32, ADVAPI32, SHELL32, OLEAUT32, mscoree, WININET, VERSION, WINMM
Exports 0 functions
Resources 12 Resources
Sections 7 Sections

Version Information

CompanyName 3DMGAME
FileDescription Death Stranding Directors Cut v1.0 Plus 26 Trainer
FileVersion 1.0.0.0
InternalName Death Stranding Directors Cut v1.0 Plus 26 Trainer
LegalCopyright FLiNG Copyright (C) 2022
OriginalFilename Death Stranding Directors Cut v1.0 Plus 26 Trainer.exe
ProductName Death Stranding Directors Cut v1.0 Plus 26 Trainer
ProductVersion 1.0.781.8
Translation 0x0000 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 343,536 bytes 343,552 bytes 6.45 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 9E393BDD39B9ACD44D8C1A8388F1AB28
.rdata 0x00055000 125,002 bytes 125,440 bytes 5.37 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ A2F067BBE94E79EC582F0AA8E856CF92
.data 0x00074000 14,828 bytes 6,144 bytes 3.11 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE F1C78AE5237D1DDDECFBC4D663FE6697
.pdata 0x00078000 15,720 bytes 15,872 bytes 5.72 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 834DD973E1F99709486E41E17BF558C4
_RDATA 0x0007c000 252 bytes 512 bytes 2.43 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 90435A10239074E1053AAECC4A3279D9
.rsrc 0x0007d000 658,944 bytes 658,944 bytes 7.30 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 4B8BF58B9ED7FFFA3243DC6C3DCE8AE8
.reloc 0x0011e000 2,760 bytes 3,072 bytes 5.23 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ E2564FE4087451A86318651A3F697B0E
Entropy Analysis Alert

1 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 12 (658,083 bytes)
Resource Type Count Total Size Percentage
COVER 1 54,564 bytes
8.3%
REMOTE 2 308,228 bytes
46.8%
UI 1 181,248 bytes
27.5%
WAVE 2 22,222 bytes
3.4%
RT_ICON 3 90,092 bytes
13.7%
RT_GROUP_ICON 1 48 bytes
0%
RT_VERSION 1 1,028 bytes
0.2%
RT_MANIFEST 1 653 bytes
0.1%

Certificate Chain Analysis

No Digital Signatures

This file is not digitally signed.

Security Implications:
  • Cannot verify the publisher's identity
  • Increased security risk when running this file
  • May trigger security warnings on some systems

⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources

Certificate Verification Status

The PE file does not contain a certificate table.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Hack.Win64.GameHack.cl Removal

Gridinsoft has the capability to identify and eliminate Hack.Win64.GameHack.cl without requiring further user intervention.

Download Anti-Malware

Removal Instructions

Follow these steps to completely remove the threat from your system

  1. Start by downloading Gridinsoft Anti-Malware to your computer.
  2. Double-click on the gsam-en-install.exe file and follow the on-screen instructions to install the program.
  3. Once the installation of Gridinsoft Anti-Malware is complete, the program will open on the Scan screen.
  4. Click on the "Standard Scan" button to begin scanning your computer for threats.
  5. After the scanning process is finished, click on "Clean Now" to remove any detected threats.
  6. If prompted, restart your system to complete the removal process and ensure all threats are eliminated.
Important: Before You Start
Disconnect from the internet to prevent the malware from spreading or downloading additional threats. Run the scan in Safe Mode for better detection and removal of persistent threats.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware