Gridinsoft Logo
File Icon

The PlantsVsZombies.exe (Plants vs. Zombies) File Analysis

Technical Analysis

File Name PlantsVsZombies.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.220.174
Database Version 2025-07-11 19:00:17 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
1,885,896
File Size (bytes)
2025-07-11
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
3c8876147c84735ca540dda5be3c6451
SHA1
bf5c51304b1bade29ba4988cc96bf9c35780793c
SHA256
9397ca2dc3a4560eba5f87aef40fd800786ba0312716729ccbdbda185abee27d
SHA512
beb3b63d4ddae9e4a385da2ae9ed670b84ac9c8383c0649fcac31545dbbe4deab2ddb389a2c616bc9522b344e3a97ecb4775bc6858cc0d5b39497a8651602906
ImpHash
1830114513f6f597435f788e3b228d52

PE Analysis

Basic Information

Icon
Hash: 0ea5fd04da200ce3896cf75739269e70
Fuzzy: 5839a0ddd63c4a51e1e4c2c6e6f265c5
dHash: ec8c9ac8ec62d8c9
Image Base 0x00400000
Entry Point 0x0050d751
Compilation Time 2008-12-05 23:33:05
Checksum 0x001dc1f4 (Actual: 0x001d3f36)
OS Version 4.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
PDB Path c:\rmtest\pc\_base\util\FnFProtectRun2.pdb
Digital Signature The expected hash does not match the digest in SpcInfo
Imports 10 libraries
WSOCK32, KERNEL32, USER32, GDI32, ADVAPI32, SHELL32, ole32, OLEAUT32, WININET, WINMM
Exports 0 functions
Resources 20 Resources
Sections 4 Sections

Version Information

FileDescription Plants vs. Zombies
FileVersion 1.0.0.1051
InternalName Plants vs. Zombies
LegalCopyright Copyright (C) 2009
OriginalFilename PlantsVsZombies.exe
ProductName Plants vs. Zombies
ProductVersion 1.0.0.1051
Translation 0x0409 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 1,292,817 bytes 1,294,336 bytes 6.69 (Compressed) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 5DE944EE513A317347C6128010E69F6B
.rdata 0x0013d000 296,852 bytes 299,008 bytes 5.86 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ FE40B5190390152925CA62BEDF808FFD
.data 0x00186000 435,296 bytes 57,344 bytes 5.00 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 72AD1DB85AAF4B5431A5ADF43493A07A
.rsrc 0x001f1000 221,352 bytes 225,280 bytes 5.98 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 92F8477B61018C9A5F9D616ADD63F434
Entropy Analysis Alert

1 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 20 (220,094 bytes)
Resource Type Count Total Size Percentage
DATA 1 2,046 bytes
0.9%
RT_CURSOR 1 748 bytes
0.3%
RT_ICON 12 215,672 bytes
98%
RT_MENU 1 32 bytes
0%
RT_DIALOG 1 284 bytes
0.1%
RT_GROUP_CURSOR 1 20 bytes
0%
RT_GROUP_ICON 1 174 bytes
0.1%
RT_VERSION 1 716 bytes
0.3%
RT_MANIFEST 1 402 bytes
0.2%

Certificate Chain Analysis

Certificate Information
Product Plants vs. Zombies
Description Plants vs. Zombies
File Version 1.0.0.1051
Original Name PlantsVsZombies.exe
Signing Date 10:31 PM 04/29/2009 (5917 days ago)
Verification Status The digital signature of the object did not verify.
Signers PopCap Games; VeriSign Class 3 Code Signing 2004 CA; VeriSign Class 3 Public Primary CA
Counter Signers VeriSign Time Stamping Services Signer - G2; VeriSign Time Stamping Services CA; Thawte Timestamping CA
Internal Name Plants vs. Zombies
Copyright Copyright (C) 2009
Certificate Chain Summary
VeriSign Time Stamping Services Signer - G2 #1 Primary
Validity Period: 2007-06-15 00:00:00 → 2012-06-14 23:59:59
Signature Algorithm: sha1RSA
Serial Number: 38 25 D7 FA F8 61 AF 9E F4 90 E7 26 B5 D6 5A D5
VeriSign Time Stamping Services CA #2 Chain
Validity Period: 2003-12-04 00:00:00 → 2013-12-03 23:59:59
Signature Algorithm: sha1RSA
Serial Number: 47 BF 19 95 DF 8D 52 46 43 F7 DB 6D 48 0D 31 A4
VeriSign Class 3 Code Signing 2004 CA #3 Chain
Validity Period: 2004-07-16 00:00:00 → 2014-07-15 23:59:59
Signature Algorithm: sha1RSA
Serial Number: 41 91 A1 5A 39 78 DF CF 49 65 66 38 1D 4C 75 C2
PopCap Games #4 Chain
Validity Period: 2006-09-01 00:00:00 → 2009-09-21 23:59:59
Signature Algorithm: sha1RSA
Serial Number: 3C 61 DF 38 D5 BB 38 36 A8 B4 4B 98 5C 50 44 79

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

The expected hash does not match the digest in SpcInfo

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware