File Name | BoneTown.exe |
File Type |
PE32+ executable (GUI) x86-64, for MS Windows
|
Scanner Version | 1.0.214.174 |
Database Version | 2025-04-21 01:00:20 UTC |
No threats detected by our scanner
Hash Type | Value | Action |
---|---|---|
MD5 |
42633ee17d4a8880356673ecbbd65692
|
|
SHA1 |
962a72d9535f1bc0bbcfbf5813c75f031eea68dc
|
|
SHA256 |
6383d90854229c5429c1a23bbada7ea6137cd0487dee34c85880ee886bc85a7c
|
|
SHA512 |
8b76dbb8ef60b352b058446dcd41b626453972df26ec730da1a9da2b79e01a82b90988895f0ee7ec40393913ef817918caab83c1a454212b910502fb20f6efb8
|
|
ImpHash |
7628a738dfd2e07e103d470782451eea
|
Icon |
Hash: d521e65e203f47225596ef85fa8e2086
Fuzzy: 1ad83c3155b0541f15809ca3b866e71e dHash: a4f0f0f8fcec6c38 |
Image Base | 0x140000000 |
Entry Point | 0x140292058 |
Compilation Time | 2024-06-07 15:48:02 |
Checksum | 0x00000000 (Actual: 0x003ebc53) |
OS Version | 6.0 |
PEiD Signatures |
PE32+ executable (GUI) x86-64, for MS Windows
|
PDB Path | C:\Projects\Steam\BoneTown\BoneTown\BoneTown_Shipping64.pdb |
Digital Signature | No valid SignedData structure was found. |
Imports | 25 libraries |
Exports | 0 functions |
Resources | 7 Resources |
Sections | 6 Sections |
Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
---|---|---|---|---|---|---|
.text |
0x00001000 |
2,763,499 bytes | 2,763,776 bytes | 6.43 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
273231A01645EC0A222D6E54F964FFF1 |
.rdata |
0x002a4000 |
876,346 bytes | 876,544 bytes | 5.20 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
F9E3304CE601707E1F1C2B445EC0B2E3 |
.data |
0x0037a000 |
3,959,972 bytes | 205,824 bytes | 3.08 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
FB5EA07AA783821ACB6F88FB61494454 |
.pdata |
0x00741000 |
154,116 bytes | 154,624 bytes | 6.25 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
CE33076638C378794F5367057EC0030B |
.rsrc |
0x00767000 |
9,544 bytes | 9,728 bytes | 6.55 (Compressed) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
F7F22AC6F7637DF8F25BF35C7BC11F30 |
.reloc |
0x0076a000 |
42,308 bytes | 42,496 bytes | 5.45 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
F79F33C4579F5BDC80EEFB49D8235ADC |
1 section(s) with elevated entropy (≥6.5) - possible compression
Resource Type | Count | Total Size | Percentage |
---|---|---|---|
RT_ICON | 3 | 7,352 bytes | |
RT_GROUP_ICON | 3 | 60 bytes | |
RT_MANIFEST | 1 | 1,684 bytes |
This file is not digitally signed.
⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources
No valid SignedData structure was found.
Recommendation: Verify the file source and ensure it comes from a trusted publisher.
Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:
Download Anti-MalwareThis file appears clean, but regular security maintenance is important