Gridinsoft Logo
File Icon

Resident Evil 4 v1.0-v20230424 Plus 36 Trainer.exe Hack GameHack Analysis

Technical Analysis

File Name Resident Evil 4 v1.0-v20230424 Plus 36 Trainer.exe
File Type
PE32+ executable (GUI) x86-64, for MS Windows
Scanner Version 1.0.225.174
Database Version 2025-09-23 05:00:23 UTC

Hack.Win64.GameHack.cld

Malware family: GameHack

GameHack refers to game modification tools that manipulate game mechanics to provide unfair advantages, violating game terms of service and fair play principles.
N/A
Detection Rate
1,702,912
File Size (bytes)
2025-09-23
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
6d9479d72c74a855983cc3a819e954b2
SHA1
ee590bb8f691548744173d35fca3d51e3740e7d1
SHA256
b387075df84d510dc77e2771b6e561283ea926d15a7e4e01561d55368cf5efc4
SHA512
974ccc6e76cedd0fd33a833d59f2d468fc1ea18a7b371119c98ce2c73bd7386158b9d5072b16ff9ce7d539f7cc79a36578c8a54a7cc7b52e9d42fda87e24298f
ImpHash
335b5e5300d836a684f2d89f4a7851b9

PE Analysis

Basic Information

Icon
Hash: 5b5c69756305e5b7bcc03412fe64a17c
Fuzzy: a1c738eea59667290c83d00f50a19604
dHash: 70f8fc7a7e2eaaf0
Image Base 0x140000000
Entry Point 0x140071e10
Compilation Time 2023-05-06 20:10:10
Checksum 0x00000000 (Actual: 0x001aca98)
OS Version 6.0
PEiD Signatures PE32+ executable (GUI) x86-64, for MS Windows
Digital Signature No valid SignedData structure was found.
Imports 10 libraries
KERNEL32, USER32, ADVAPI32, SHELL32, ole32, OLEAUT32, mscoree, WININET, VERSION, WINMM
Exports 0 functions
Resources 18 Resources
Sections 7 Sections

Version Information

CompanyName 3DMGAME
FileDescription Resident Evil 4 v1.0-v20230424 Plus 36 Trainer
FileVersion 1.0.0.0
InternalName Resident Evil 4 v1.0-v20230424 Plus 36 Trainer
LegalCopyright FLiNG Copyright (C) 2023
OriginalFilename Resident Evil 4 v1.0-v20230424 Plus 36 Trainer.exe
ProductName Resident Evil 4 v1.0-v20230424 Plus 36 Trainer
ProductVersion 1.0.1034.5
Translation 0x0000 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 628,188 bytes 628,224 bytes 6.41 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 8530FC96276A9539432F89FCB3337C83
.rdata 0x0009b000 227,122 bytes 227,328 bytes 5.50 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ ACBA4C2B6FA97CC0D5F3533EBAE96CA1
.data 0x000d3000 18,364 bytes 8,192 bytes 3.25 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE CFF669F6500EF60E9664030185A1DD8C
.pdata 0x000d8000 22,536 bytes 23,040 bytes 5.84 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 6940109DA7F22C027FED2F715B3477CE
_RDATA 0x000de000 348 bytes 512 bytes 3.31 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ A3FCEE7768F65F6FF92FBC135DC0F951
.rsrc 0x000df000 810,592 bytes 811,008 bytes 7.15 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ B9B30AE8B0B2C61C9007310F33FE02EE
.reloc 0x001a5000 3,100 bytes 3,584 bytes 5.13 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ FB1598606C95CE000C5B7C868700FF45
Entropy Analysis Alert

1 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 18 (809,448 bytes)
Resource Type Count Total Size Percentage
COVER 1 71,879 bytes
8.9%
REMOTE 3 309,396 bytes
38.2%
UI 1 187,904 bytes
23.2%
WAVE 2 22,222 bytes
2.7%
RT_ICON 8 216,276 bytes
26.7%
RT_GROUP_ICON 1 118 bytes
0%
RT_VERSION 1 1,000 bytes
0.1%
RT_MANIFEST 1 653 bytes
0.1%

Certificate Chain Analysis

No Digital Signatures

This file is not digitally signed.

Security Implications:
  • Cannot verify the publisher's identity
  • Increased security risk when running this file
  • May trigger security warnings on some systems

⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources

Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Hack.Win64.GameHack.cld Removal

Gridinsoft has the capability to identify and eliminate Hack.Win64.GameHack.cld without requiring further user intervention.

Download Anti-Malware

Removal Instructions

Follow these steps to completely remove the threat from your system

  1. Start by downloading Gridinsoft Anti-Malware to your computer.
  2. Double-click on the gsam-en-install.exe file and follow the on-screen instructions to install the program.
  3. Once the installation of Gridinsoft Anti-Malware is complete, the program will open on the Scan screen.
  4. Click on the "Standard Scan" button to begin scanning your computer for threats.
  5. After the scanning process is finished, click on "Clean Now" to remove any detected threats.
  6. If prompted, restart your system to complete the removal process and ensure all threats are eliminated.
Important: Before You Start
Disconnect from the internet to prevent the malware from spreading or downloading additional threats. Run the scan in Safe Mode for better detection and removal of persistent threats.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.

Your Score for
/

Gridinsoft Anti-Malware

Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware

Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!

Gridinsoft Anti-Malware