Gridinsoft Logo
File Icon

The UNDERTALE.exe (UNDERTALE) File Analysis

Technical Analysis

File Name UNDERTALE.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.213.174
Database Version 2025-04-14 20:00:30 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
4,826,624
File Size (bytes)
2025-04-14
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
1bb57143577351488d08330a0f39760e
SHA1
459b7c780af0e679ccbfa1be3099fc9ff8f06c3b
SHA256
81b06334cc691ce4b5e325579fcca3f56ab8381c589c96b8786c185a13f9fa2d
SHA512
8b81b02d0ac37ece4cf4a8d62d5d60a97790100dc56b88f6f1e2d7cbe7e0d807b5913bf0b3b0b833b8a51e8ef130c5bdcc0da7f573866dbf3f848751baa4b5d7
ImpHash
2c5dca54550e34b8f3cc00484192539b

PE Analysis

Basic Information

Icon
Hash: c25ef64b26420f29fb54b4e5cd402db2
Fuzzy: f67253208be7038f3f2dcf43aca5ef80
dHash: a833534d2b16cc69
Image Base 0x00400000
Entry Point 0x0069ef4d
Compilation Time 2018-09-24 11:35:37
Checksum 0x0049a6fc (Actual: 0x0049a6fc)
OS Version 6.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
PDB Path c:\hudson\ZeusBase\ZeusGreen\GameMaker\Runner\VC_Runner\Win32\Release-Zeus\Runner.pdb
Digital Signature No valid SignedData structure was found.
Imports 17 libraries
Exports 0 functions
Resources 39 Resources
Sections 8 Sections

Version Information

CompanyName
FileDescription UNDERTALE
FileVersion 1.0.9.0
LegalCopyright
PrivateBuild 01.00.00.00
ProductName
ProductVersion 1.0.9.0
Translation 0x0809 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 3,142,333 bytes 3,142,656 bytes 6.63 (Compressed) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ F9A6CD14B9134EE7578F63580759327E
.rdata 0x00301000 934,864 bytes 934,912 bytes 5.58 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ A9F3398D0FC36670C315D853B41B201A
.data 0x003e6000 3,605,204 bytes 566,272 bytes 3.95 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 1034B4406942BFB347EECEF58E16C65F
minATL 0x00757000 12 bytes 512 bytes 0.00 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ BF619EAC0CDF3F68D496EA9344137E8B
.mydata 0x00758000 8 bytes 512 bytes 0.02 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_SHARED|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 9475A59226943A3AD422E18169989F66
.gfids 0x00759000 372 bytes 512 bytes 3.62 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ B938E370546B95C84A1146580C1E9C36
_RDATA 0x0075a000 2,016 bytes 2,048 bytes 4.48 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ DB8E2FFAB91D2B70DC34C61ECE8EA31A
.rsrc 0x0075b000 177,973 bytes 178,176 bytes 4.75 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 10D100E5870414F3DC32E5E61DAB1118
Entropy Analysis Alert

1 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 39 (175,696 bytes)
Resource Type Count Total Size Percentage
GIF 15 77,610 bytes
44.2%
RT_BITMAP 5 52,080 bytes
29.6%
RT_ICON 6 42,295 bytes
24.1%
RT_DIALOG 9 1,690 bytes
1%
RT_STRING 1 448 bytes
0.3%
RT_GROUP_ICON 1 20 bytes
0%
RT_VERSION 1 548 bytes
0.3%
RT_MANIFEST 1 1,005 bytes
0.6%

Certificate Chain Analysis

Certificate Information
Description UNDERTALE
File Version 1.0.9.0

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware