文件名 | DriveBeyondHorizons.exe |
文件类型 |
PE32+ executable (GUI) x86-64, for MS Windows
|
扫描器版本 | 1.0.219.174 |
数据库版本 | 2025-07-06 15:00:20 UTC |
我们的扫描器未检测到威胁
哈希类型 | 值 | 操作 |
---|---|---|
MD5 |
76af0d67a65225343637129f3c9a903e
|
|
SHA1 |
54251111b3737d1e2f97690dad9b32aee41d50e8
|
|
SHA256 |
ed16737a135a6ee429198fe87a3f82909e4437fe1452c81b921467b0ed2b1dad
|
|
SHA512 |
528980b27235ec392d9ecda0c33663cee675bad094166e7957aac701e46055f3ff8e29709b6c55d241377ff2b24f549feee8c8234d07b96cdef21e791f05c21a
|
|
ImpHash |
caf7c2e6c0664ebb738cedc6edca1961
|
图标 |
哈希: a876774da8bb5446550a1de1b45f2da7
模糊: b0920770d52c4b17025088bee8fb247c dHash: 8e0b69696969338e |
映像基址 | 0x140000000 |
入口点 | 0x140001ca8 |
编译时间 | 2025-06-09 18:32:15 |
校验和 | 0x000380ff (实际: 0x00035948) |
操作系统版本 | 6.0 |
PEiD 签名 |
PE32+ executable (GUI) x86-64, for MS Windows
|
PDB 路径 | BootstrapPackagedGame-Win64-Shipping.pdb |
数字签名 | No valid SignedData structure was found. |
导入 |
5 库
KERNEL32, USER32, ADVAPI32, SHELL32, SHLWAPI |
导出 | 0 函数 |
资源 | 13 资源 |
节 | 8 节 |
CompanyName | Epic Games, Inc. |
LegalCopyright | Fill out your copyright notice in the Description page of Project Settings. |
ProductName | BootstrapPackagedGame |
ProductVersion | UE5-CL-0 |
FileDescription | BootstrapPackagedGame |
InternalName | UnrealEngine |
OriginalFilename | BootstrapPackagedGame-Win64-Shipping.exe |
Translation | 0x0409 0x04b0 |
名称 | 虚拟地址 | 虚拟大小 | 原始大小 | 熵 | 特征 | MD5 |
---|---|---|---|---|---|---|
.text |
0x00001000 |
79,168 bytes | 79,360 bytes | 6.48 (正常) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
CE8E9A2C539546E178ACD56B90C2D0AF |
.rdata |
0x00015000 |
45,382 bytes | 45,568 bytes | 4.92 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
3AC44546EE8A9F605CC1EB22E5B3C7C4 |
.data |
0x00021000 |
7,368 bytes | 3,072 bytes | 2.05 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
E347929BB3AA3444EA1EB77C010BD32A |
.pdata |
0x00023000 |
4,728 bytes | 5,120 bytes | 4.71 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
FCEE214B95E33E3F55C58ABED304A655 |
_RDATA |
0x00025000 |
348 bytes | 512 bytes | 2.83 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
2851AB45DFABAF770E5631CCFADC5B6E |
.fptable |
0x00026000 |
256 bytes | 512 bytes | 0.00 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
BF619EAC0CDF3F68D496EA9344137E8B |
.rsrc |
0x00027000 |
27,168 bytes | 27,648 bytes | 7.25 (压缩) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
D999ECBE15D84E06B3E392E2759368A7 |
.reloc |
0x0002e000 |
1,696 bytes | 2,048 bytes | 4.97 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
184DB66AF5F395DD9FDE3A8127027117 |
1 检测到较高熵(≥6.5)的节 - 可能存在压缩
资源类型 | 数量 | 总大小 | 百分比 |
---|---|---|---|
RT_ICON | 7 | 23,721 字节 | |
RT_RCDATA | 2 | 188 字节 | |
RT_GROUP_ICON | 2 | 208 字节 | |
RT_VERSION | 1 | 876 字节 | |
RT_MANIFEST | 1 | 1,408 字节 |
产品 | BootstrapPackagedGame |
描述 | BootstrapPackagedGame |
原始名称 | BootstrapPackagedGame-Win64-Shipping.exe |
内部名称 | UnrealEngine |
版权 | Fill out your copyright notice in the Description page of Project Settings. |
✓ 此文件已进行数字签名,证书链已验证。
No valid SignedData structure was found.
建议: 验证文件来源并确保它来自可信的发布者.
Gridinsoft Anti-Malware 拥有更强大的病毒扫描引擎。我们建议使用它来更准确地诊断受感染的系统。这个简短的指南将帮助您安装我们的旗舰产品以进行更准确的诊断:
下载反恶意软件此文件看起来是干净的,但定期的安全维护很重要