Gridinsoft Logo
File Icon

The GZDOOM.exe (GZDoom) File Analysis

Technical Analysis

File Name GZDOOM.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.219.174
Database Version 2025-07-04 17:00:27 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
5,017,600
File Size (bytes)
2025-07-04
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
d3b58ff5c6e908b4b4f9fabe3bbd79a0
SHA1
50fbc1b7a0a46507962d3531e02fdf3812883bae
SHA256
b22886f8b83bfa2bad5073b9bef4cdcb7ff713f3f5f4fa8fac3620bec99a6930
SHA512
d8ec85c33c44fd3fb45abe8fdf6f12d6e66775ff3ee0b1d8db6d6cf8abc5d8bd26f7c0b997fc0ffc170d39132ff8e109987721866ab738e29b2c555d06393e73
ImpHash
540fdba182fa9ad3a95f345d3f2f4198

PE Analysis

Basic Information

Icon
Hash: a2f3d8f2dc5713f98b3e0451b6da214c
Fuzzy: 6ea68cfefad3fe88c097bd6948033f65
dHash: 19f0647c31303212
Image Base 0x00400000
Entry Point 0x00791885
Compilation Time 2016-09-18 16:04:00
Checksum 0x004c9cfb (Actual: 0x004c9cfb)
OS Version 5.1
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
Digital Signature No valid SignedData structure was found.
Imports 12 libraries
Exports 2 functions
Resources 36 Resources
Sections 8 Sections

Version Information

Comments Thanks to id Software for creating DOOM and then releasing the source code. Thanks also to TeamTNT for creating BOOM, which ZDoom is partially based on. Includes code based on the Cajun Bot 0.97 by Martin Collberg.
CompanyName
FileDescription GZDoom
FileVersion g2.2.0
InternalName GZDoom
LegalCopyright Copyright \u00A9 1993-1996 id Software, 1998-2010 Randy Heit, 2002-2010 Christoph Oelckers, et al.
LegalTrademarks DoomR is a Registered Trademark of id Software, Inc.
OriginalFilename gzdoom.exe
ProductName GZDoom
ProductVersion 2.2.0
Translation 0x0409 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 4,110,897 bytes 4,111,360 bytes 6.69 (Compressed) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ B702D90EE0D188D544E51BD8D767FA60
.rtext 0x003ed000 7,602 bytes 7,680 bytes 6.50 (Compressed) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 050A7A99D3577ABEA807E02A6DE6658D
.rdata 0x003ef000 531,876 bytes 531,968 bytes 5.89 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 09C646815794A7673DB7D67B4088030D
.data 0x00471000 2,321,332 bytes 80,384 bytes 5.45 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE A5966A9B9B8AC7E43A71155EDF96254A
.gfids 0x006a8000 2,660 bytes 3,072 bytes 3.45 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 0487E4478EAEFB84D6306620DE635F6A
.tls 0x006a9000 9 bytes 512 bytes 0.02 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 1F354D76203061BFDD5A53DAE48D5435
.rsrc 0x006aa000 31,144 bytes 31,232 bytes 4.62 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 5594A45B37B3EDF5D5E04DB13CA5DE90
.reloc 0x006b2000 250,268 bytes 250,368 bytes 6.72 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 5C667400B8E590CEFF32AA3A6D1110B4
Entropy Analysis Alert

3 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 36 (29,241 bytes)
Resource Type Count Total Size Percentage
RT_BITMAP 1 2,612 bytes
8.9%
RT_ICON 13 14,344 bytes
49.1%
RT_DIALOG 11 9,112 bytes
31.2%
RT_GROUP_ICON 9 236 bytes
0.8%
RT_VERSION 1 1,408 bytes
4.8%
RT_MANIFEST 1 1,529 bytes
5.2%

Certificate Chain Analysis

Certificate Information
Product GZDoom
Description GZDoom
File Version g2.2.0
Original Name gzdoom.exe
Internal Name GZDoom
Copyright Copyright \u00A9 1993-1996 id Software, 1998-2010 Randy Heit, 2002-2010 Christoph Oelckers, et al.

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware