| File Name | PlantsVsZombies_20110922_EN_3_1.exe |
| File Type |
PE32 executable (GUI) Intel 80386, for MS Windows, InstallShield self-extracting archive
|
| Scanner Version | 1.0.228.174 |
| Database Version | 2025-11-07 07:00:24 UTC |
No threats detected by our scanner
| Hash Type | Value | Action |
|---|---|---|
| MD5 |
de23cdebf6842a725646c5bfa31ad38c
|
|
| SHA1 |
f65a99a478d44d2f0a660fc7b8cb6110ca2363f5
|
|
| SHA256 |
ee276706679fa28fd0310cca7bcd35ff8d4fdeb9335affdd9555bf491ee39995
|
|
| SHA512 |
bb6ec6f09b36c9fcf422b9871e16b4fc217f6adae1cd785a48dada3f04bafb2d9f3de6bf9acbe259f1146ae6a59ade62c5833eeb0b9c526c02fa0c876603dab6
|
|
| ImpHash |
5ed716f11736e6213b137c0ffeeb36d9
|
| Icon |
Hash: ccfdf0b314f528b6d31538e1d3ea8e28
Fuzzy: ab98634dfd76c4ed87619129999f6110 dHash: cd8eb969a9998ecc |
| Image Base | 0x00400000 |
| Entry Point | 0x004473c5 |
| Compilation Time | 2011-06-30 21:09:28 |
| Checksum | 0x028bd7e0 (Actual: 0x028bd7e0) |
| OS Version | 5.0 |
| PEiD Signatures |
PE32 executable (GUI) Intel 80386, for MS Windows, InstallShield self-extracting archive
|
| Digital Signature | OK |
| Imports |
9 libraries
COMCTL32, VERSION, KERNEL32, USER32, GDI32, ADVAPI32, SHELL32, ole32, OLEAUT32 |
| Exports | 0 functions |
| Resources | 20 Resources |
| Sections | 4 Sections |
| Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
|---|---|---|---|---|---|---|
.text |
0x00001000 |
388,188 bytes | 388,608 bytes | 6.51 (Compressed) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
8DD3671C6EDC94FAB8ADAD57AA26CFF8 |
.rdata |
0x00060000 |
62,134 bytes | 62,464 bytes | 4.61 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
C4F37ED3C55E42D3639F6276826123BF |
.data |
0x00070000 |
22,168 bytes | 7,680 bytes | 3.95 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
92F0EBFFEDEE62CEA2B1993D67AA284C |
.rsrc |
0x00076000 |
31,744 bytes | 31,744 bytes | 5.61 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
946115420250B11C8F71805A8B0E9299 |
1 section(s) with elevated entropy (≥6.5) - possible compression
| Resource Type | Count | Total Size | Percentage |
|---|---|---|---|
| RT_ICON | 9 | 25,064 bytes | |
| RT_DIALOG | 9 | 4,842 bytes | |
| RT_GROUP_ICON | 1 | 132 bytes | |
| RT_MANIFEST | 1 | 626 bytes |
| Signing Date | 10:11 PM 09/21/2011 (5225 days ago) |
| Verification Status | Signed |
| Signers | PopCap Games; VeriSign Class 3 Code Signing 2009-2 CA; VeriSign Class 3 Public Primary CA |
| Counter Signers | VeriSign Time Stamping Services Signer - G2; VeriSign Time Stamping Services CA; Thawte Timestamping CA |
38 25 D7 FA F8 61 AF 9E F4 90 E7 26 B5 D6 5A D547 BF 19 95 DF 8D 52 46 43 F7 DB 6D 48 0D 31 A460 F0 BE 25 F0 28 BF ED B5 BD F0 CE 5C 7A 9E 2665 52 26 E1 B2 2E 18 E1 59 0F 29 85 AC 22 E7 5C✓ This file has been digitally signed and the certificate chain has been verified
OK
Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:
Download Anti-MalwareThis file appears clean, but regular security maintenance is important
Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware
Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!