File Path | Type and Hashes |
---|
Match Rules |
---|
File Name: | m1601272350.exe |
File Type: | PE32 executable (GUI) Intel 80386, for MS Windows |
SHA1: | 39e681dc8eaae3da140c634f7f5942b5d51da4c8 |
MD5: | e02c028c0a7d2a4741bacde177c3c86a |
First Seen Date: | 2016-01-27 20:22:50.050093 ( ) |
Number of Clients Seen: | 4 |
Last Analysis Date: | 2016-01-27 20:22:50.041494 ( ) |
Human Expert Analysis Result: | No human expert analysis verdict given to this sample yet. |
Property | Value |
---|---|
number of sections | 4 |
file size | 2544640 |
LegalCopyright | Copyright(C) 2016 |
InternalName | WorldOfRheya |
FileVersion | 1.0.0.1 |
CompanyName | |
ProductName | Launcher World of Rheya |
ProductVersion | 1,0,0,1 |
FileDescription | Launcher World of Rheya |
OriginalFilename | metin2client.exe |
Translation | 0x0800 0x03b5 |
entry point | 0x576e55 (.text) |
mime type | application/x-dosexec |
machine type | Intel 386 or later - 32Bit |
compilation time stamp | 0x569E1F32 [Tue Jan 19 11:34:10 2016 UTC] |
sha256 | 115698bc00757a67ae6999366f4f852fe4c7842d9af509ab1402ded4f2842019 |
Name | Virtual Address | Virtual Size | Raw Size | Entropy | MD5 |
---|---|---|---|---|---|
.text | 0x1000 | 0x1d3e84 | 0x1d4000 | 6.600741 | - |
.rdata | 0x1d5000 | 0x6f412 | 0x6f600 | 5.973084 | - |
.data | 0x245000 | 0x64580 | 0x1de00 | 6.277188 | - |
.rsrc | 0x2aa000 | 0xbb78 | 0xbc00 | 4.435895 | - |
-
KERNEL32.dll
- GetTickCount
- ReadProcessMemory
- SetEndOfFile
- SetEnvironmentVariableA
- CreateFileW
- CreateProcessA
- GetExitCodeProcess
- WriteConsoleW
- OutputDebugStringW
- HeapReAlloc
- SetStdHandle
- GetCurrentProcessId
- GetCurrentProcess
- GetLastError
- FindNextFileA
- FindFirstFileA
- GetTimeZoneInformation
- FreeEnvironmentStringsW
- GetEnvironmentStringsW
- GetProcessHeap
- SetFilePointerEx
- ReadConsoleW
- GetConsoleMode
- GetConsoleCP
- FlushFileBuffers
- GetModuleFileNameW
- GetStdHandle
- GetOEMCP
- GetACP
- IsValidCodePage
- GetFileAttributesExW
- HeapSize
- EnumSystemLocalesW
- GetUserDefaultLCID
- IsValidLocale
- GetLocaleInfoW
- LCMapStringW
- CompareStringW
- FindClose
- GetModuleHandleW
- GetStartupInfoW
- TlsFree
- TlsSetValue
- TlsGetValue
- TlsAlloc
- TerminateProcess
- InitializeCriticalSectionAndSpinCount
- SetLastError
- UnhandledExceptionFilter
- GetFileType
- GetCPInfo
- LoadLibraryExW
- GetCurrentDirectoryW
- GetCommandLineA
- HeapAlloc
- HeapFree
- IsProcessorFeaturePresent
- IsDebuggerPresent
- GetSystemTimeAsFileTime
- AreFileApisANSI
- GetModuleHandleExW
- RtlUnwind
- RaiseException
- DecodePointer
- EncodePointer
- GetStringTypeW
- QueryPerformanceCounter
- ExitProcess
- ReleaseSemaphore
- GetLocaleInfoA
- CompareStringA
- WideCharToMultiByte
- GetVersionExA
- GetSystemDirectoryA
- LoadLibraryA
- lstrlenW
- GlobalUnlock
- GlobalLock
- GetProcAddress
- FreeLibrary
- ReadFile
- WriteFile
- GetModuleHandleA
- WinExec
- GetCurrentThread
- SetUnhandledExceptionFilter
- CreateFileA
- GetFileSize
- OutputDebugStringA
- CreateFileMappingA
- UnmapViewOfFile
- MapViewOfFile
- CreateDirectoryA
- GlobalAlloc
- MultiByteToWideChar
- SetFileAttributesA
- Module32Next
- Module32First
- CloseHandle
- GetSystemInfo
- Sleep
- WaitForSingleObject
- DeleteCriticalSection
- LeaveCriticalSection
- EnterCriticalSection
- InitializeCriticalSection
- GlobalFree
- lstrlenA
- GetModuleFileNameA
- GetPrivateProfileStringA
- GetCurrentDirectoryA
- DeleteFileA
- MoveFileA
- GetCurrentThreadId
- CreateDirectoryW
- CreateToolhelp32Snapshot
-
USER32.dll
- ReleaseDC
- DefWindowProcA
- PeekMessageA
- InvalidateRect
- GetClientRect
- FillRect
- SetRect
- OffsetRect
- MessageBoxA
- LoadStringA
- PostQuitMessage
- GetDC
- SetWindowPos
- GetAsyncKeyState
- GetCursorPos
- ScreenToClient
- FindWindowA
- LoadIconA
- SystemParametersInfoA
- GetKeyState
- ShowCursor
- SetCursor
- DestroyCursor
- LoadImageA
- SetCursorPos
- ClientToScreen
- ShowWindow
- GetCapture
- SetCapture
- ReleaseCapture
- ChangeDisplaySettingsA
- CharNextW
- GetClipboardData
- CloseClipboard
- OpenClipboard
- GetKeyboardLayout
- GetKeyboardLayoutNameA
- DispatchMessageA
- TranslateMessage
- GetMessageA
- LoadCursorA
- AdjustWindowRectEx
- GetMenu
- RegisterClassA
- CharPrevExA
- CharNextExA
- SetWindowLongA
- GetWindowLongA
- UpdateWindow
- SetFocus
- MoveWindow
- DestroyWindow
- IsWindow
- CreateWindowExA
- RegisterClassExA
- UnregisterClassA
- GetSystemMetrics
-
GDI32.dll
- GetStockObject
- CreateFontIndirectA
- GetCharABCWidthsFloatW
- GetTextExtentPoint32W
- SelectObject
- SetBkColor
- SetTextColor
- TextOutW
- CreateCompatibleDC
- DeleteDC
- SetBkMode
- CreateDIBSection
- TextOutA
- EnumFontFamiliesExA
- CreateSolidBrush
- StretchBlt
- GetTextExtentPoint32A
- DeleteObject
-
ole32.dll
- CoInitializeEx
- OleUninitialize
- OleInitialize
- CoGetClassObject
- OleSetContainedObject
- CoCreateInstance
- CoUninitialize
- CoInitialize
-
WINMM.dll
- timeBeginPeriod
- timeEndPeriod
- timeGetDevCaps
- timeGetTime
-
d3d9.dll
- Direct3DCreate9
-
d3dx9_42.dll
- D3DXCreateTexture
- D3DXLoadSurfaceFromSurface
- D3DXGetFVFVertexSize
- D3DXCreateSphere
- D3DXCreateCylinder
- D3DXCreateMatrixStack
- D3DXMatrixOrthoOffCenterRH
- D3DXMatrixOrthoRH
- D3DXMatrixPerspectiveFovRH
- D3DXMatrixLookAtRH
- D3DXMatrixDeterminant
- D3DXVec2Normalize
- D3DXMatrixScaling
- D3DXCreateTextureFromFileInMemoryEx
- D3DXVec4Transform
- D3DXMatrixRotationAxis
- D3DXVec3TransformNormal
- D3DXMatrixRotationX
- D3DXMatrixInverse
- D3DXMatrixRotationYawPitchRoll
- D3DXQuaternionMultiply
- D3DXQuaternionRotationAxis
- D3DXMatrixRotationQuaternion
- D3DXMatrixTranslation
- D3DXMatrixMultiply
- D3DXMatrixRotationZ
- D3DXVec3TransformCoord
- D3DXVec3Normalize
- D3DXVec3Project
- D3DXPlaneNormalize
- D3DXQuaternionRotationYawPitchRoll
- D3DXVec3Transform
- D3DXMatrixTranspose
-
python27.dll
- PyImport_ImportModule
- PyImport_AddModule
- PyRun_StringFlags
- Py_Finalize
- Py_Initialize
- Py_SetProgramName
- PyErr_Fetch
- PyModule_GetDict
- _Py_NoneStruct
- PyNumber_Check
- PyObject_CallObject
- PyErr_Print
- PyErr_BadArgument
- PyErr_Clear
- PyString_AsString
- PyFloat_AsDouble
- PyCallable_Check
- PyObject_GetAttr
- PyObject_GetAttrString
- PyString_InternFromString
- PyList_Append
- PyList_New
- PyString_FromString
- PyExc_RuntimeError
- PyErr_SetString
- PyDict_Size
- PyDict_Next
- PyInt_AsLong
- PyDict_GetItemString
- PyTuple_GetItem
- PyTuple_Size
- PyLong_AsLong
- Py_InitModule4
- PyDict_SetItemString
- PyModule_AddIntConstant
- Py_BuildValue
-
IMM32.dll
- ImmGetOpenStatus
- ImmSetConversionStatus
- ImmGetConversionStatus
- ImmGetCandidateListW
- ImmSetCompositionStringW
- ImmGetCompositionStringW
- ImmAssociateContext
- ImmReleaseContext
- ImmGetContext
- ImmIsIME
- ImmGetIMEFileNameA
- ImmNotifyIME
-
VERSION.dll
- GetFileVersionInfoA
- VerQueryValueA
- GetFileVersionInfoSizeA
-
imagehlp.dll
- StackWalk
- EnumerateLoadedModules
- GetTimestampForLoadedLibrary
-
DevIL.dll
- ilTexImage
- ilSave
- ilShutDown
- ilEnable
- ilOriginFunc
- ilCopyPixels
- ilSetPixels
- ilConvertImage
- ilLoad
- ilGetInteger
- ilGenImages
- ilBindImage
- ilDeleteImages
- ilInit
-
granny2.dll
- _GrannyGetMeshBindingToBoneIndices@4
- _GrannyFreeMeshBinding@4
- _GrannyNewMeshBinding@12
- _GrannyFreeModelInstance@4
- _GrannyInstantiateModel@4
- _GrannyGetWorldPoseComposite4x4Array@4
- _GrannyFreeLocalPose@4
- _GrannyNewLocalPose@4
- _GrannyUpdateModelMatrix@20
- _GrannyFindBoneByName@12
- _GrannyFreeCompletedModelControls@4
- _GrannySetModelClock@8
- _GrannyGetSourceSkeleton@4
- _GrannyGetFileInfo@4
- _GrannyFreeFile@4
- _GrannyFreeFileSection@8
- _GrannyReadEntireFileFromMemory@8
- _GrannyConvertSingleObject@20
- _GrannyFindMatchingMember@16
- _GrannyGetMaterialTextureByType@8
- _GrannyNewWorldPose@4
- _GrannyFreeWorldPose@4
- _GrannyGetWorldPose4x4@8
- _GrannyGetWorldPoseComposite4x4@8
- _GrannyGetTotalTypeSize@4
- _GrannyGetMeshVertexCount@4
- _GrannyMeshIsRigid@4
- _GrannyGetMeshIndexCount@4
- _GrannyFreeControl@4
- _GrannyFreeControlOnceUnused@4
- _GrannyCompleteControlAt@8
- _GrannyControlIsComplete@4
- _GrannyFreeControlIfComplete@4
- _GrannyGetControlLoopCount@4
- _GrannySetControlLoopCount@8
- _GrannyGetControlSpeed@4
- _GrannySetControlSpeed@8
- _GrannyGetControlLocalDuration@4
- _GrannySetControlEaseIn@8
- _GrannySetControlEaseInCurve@28
- _GrannySetControlEaseOut@8
- _GrannySetControlEaseOutCurve@28
- _GrannyGetControlRawLocalClock@4
- _GrannySetControlRawLocalClock@8
- _GrannyPlayControlledAnimation@12
- _GrannyGetMeshTriangleGroupCount@4
- _GrannyGetMeshTriangleGroups@4
- _GrannyGetMeshVertexType@4
- _GrannyCopyMeshVertices@12
- _GrannyGetMeshVertices@4
- _GrannyCopyMeshIndices@12
- _GrannyNewMeshDeformer@16
- _GrannyFreeMeshDeformer@4
- _GrannyDeformVertices@24
- GrannyPNT332VertexType
- _GrannySampleModelAnimationsAccelerated@20
-
mss32.dll
- _AIL_set_3D_sample_loop_count@8
- _AIL_mem_free_lock@4
- _AIL_file_read@8
- _AIL_set_file_callbacks@16
- _AIL_WAV_info@8
- _AIL_decompress_ASI@24
- _AIL_decompress_ADPCM@12
- _AIL_file_type@8
- _AIL_open_digital_driver@16
- _AIL_open_stream@12
- _AIL_close_digital_driver@4
- _AIL_enumerate_3D_providers@12
- _AIL_close_3D_provider@4
- _AIL_open_3D_listener@4
- _AIL_close_3D_listener@4
- _AIL_set_3D_position@16
- _AIL_set_3D_velocity@20
- _AIL_set_3D_orientation@28
- _AIL_startup@0
- _AIL_shutdown@0
- _AIL_set_redist_directory@4
- _AIL_close_stream@4
- _AIL_start_stream@4
- _AIL_pause_stream@8
- _AIL_set_stream_volume_levels@12
- _AIL_stream_volume_levels@12
- _AIL_set_stream_loop_count@8
- _AIL_stream_status@4
- _AIL_last_error@0
- _AIL_allocate_sample_handle@4
- _AIL_release_sample_handle@4
- _AIL_init_sample@4
- _AIL_set_sample_file@12
- _AIL_start_sample@4
- _AIL_stop_sample@4
- _AIL_resume_sample@4
- _AIL_end_sample@4
- _AIL_set_sample_volume_pan@12
- _AIL_set_sample_loop_count@8
- _AIL_sample_status@4
- _AIL_sample_volume_pan@12
- _AIL_allocate_3D_sample_handle@4
- _AIL_release_3D_sample_handle@4
- _AIL_start_3D_sample@4
- _AIL_stop_3D_sample@4
- _AIL_resume_3D_sample@4
- _AIL_end_3D_sample@4
- _AIL_set_3D_sample_file@8
- _AIL_set_3D_sample_volume@8
- _AIL_open_3D_provider@4
- _AIL_3D_sample_status@4
- _AIL_3D_sample_volume@4
- _AIL_auto_update_3D_position@8
-
SpeedTreeRT.dll
- ?SetTreeSize@CSpeedTreeRT@@QAEXMM@Z
- ?GetTreePosition@CSpeedTreeRT@@QBEPBMXZ
- ?SetTreePosition@CSpeedTreeRT@@QAEXMMM@Z
- ?SetBranchLightingMethod@CSpeedTreeRT@@QAEXW4ELightingMethod@1@@Z
- ?SetLeafLightingMethod@CSpeedTreeRT@@QAEXW4ELightingMethod@1@@Z
- ?LoadTree@CSpeedTreeRT@@QAE_NPBEI@Z
- ?LoadTree@CSpeedTreeRT@@QAE_NPBD@Z
- ?GetBranchMaterial@CSpeedTreeRT@@QBEPBMXZ
- ?GetLeafMaterial@CSpeedTreeRT@@QBEPBMXZ
- ?GetFrondMaterial@CSpeedTreeRT@@QBEPBMXZ
- ?SetLeafRockingState@CSpeedTreeRT@@QAEX_N@Z
- ?SetNumLeafRockingGroups@CSpeedTreeRT@@QAEXI@Z
- ?SetLeafWindMethod@CSpeedTreeRT@@QAEXW4EWindMethod@1@@Z
- ?SetBranchWindMethod@CSpeedTreeRT@@QAEXW4EWindMethod@1@@Z
- ?SetFrondWindMethod@CSpeedTreeRT@@QAEXW4EWindMethod@1@@Z
- ?SetLocalMatrices@CSpeedTreeRT@@QAEXII@Z
- ?MakeInstance@CSpeedTreeRT@@QAEPAV1@XZ
- ?Compute@CSpeedTreeRT@@QAE_NPBMI_N@Z
- ??3CSpeedTreeRT@@SAXPAX@Z
- ??2CSpeedTreeRT@@SAPAXI@Z
- ??1CSpeedTreeRT@@QAE@XZ
- ??0CSpeedTreeRT@@QAE@XZ
- ??1STextures@CSpeedTreeRT@@QAE@XZ
- ??0STextures@CSpeedTreeRT@@QAE@XZ
- ??1SGeometry@CSpeedTreeRT@@QAE@XZ
- ??0SGeometry@CSpeedTreeRT@@QAE@XZ
- ?SetCamera@CSpeedTreeRT@@SAXPBM0@Z
- ?SetLightAttributes@CSpeedTreeRT@@SAXIPBM@Z
- ?SetLightState@CSpeedTreeRT@@SAXI_N@Z
- ?SetNumWindMatrices@CSpeedTreeRT@@SAXI@Z
- ?SetWindStrength@CSpeedTreeRT@@QAEMMMM@Z
- ?SetTime@CSpeedTreeRT@@SAXM@Z
- ?ComputeLodLevel@CSpeedTreeRT@@QAEXXZ
- ?SetLodLevel@CSpeedTreeRT@@QAEXM@Z
- ?SetDropToBillboard@CSpeedTreeRT@@SAX_N@Z
- ?SetLodLimits@CSpeedTreeRT@@QAEXMM@Z
- ?GetCollisionObject@CSpeedTreeRT@@QAEXIAAW4ECollisionObjectType@1@PAM1@Z
- ?GetCollisionObjectCount@CSpeedTreeRT@@QAEIXZ
- ?GetBoundingBox@CSpeedTreeRT@@QBEXPAM@Z
- ?GetCurrentError@CSpeedTreeRT@@SAPBDXZ
- ?SetTextureFlip@CSpeedTreeRT@@SAX_N@Z
- ?GetTextures@CSpeedTreeRT@@QBEXAAUSTextures@1@@Z
- ?GetGeometry@CSpeedTreeRT@@QAEXAAUSGeometry@1@KFFF@Z
- ?GetNumFrondLodLevels@CSpeedTreeRT@@QBEGXZ
- ?GetNumLeafLodLevels@CSpeedTreeRT@@QBEGXZ
- ?GetNumBranchLodLevels@CSpeedTreeRT@@QBEGXZ
- ?SetFrondLightingMethod@CSpeedTreeRT@@QAEXW4ELightingMethod@1@@Z
-
DINPUT8.dll
- DirectInput8Create
-
WS2_32.dll
- None
- None
- None
- None
- None
- None
- None
- None
- None
- None
- None
- None
- None
- None
-
DDRAW.dll
- DirectDrawCreate
-
ADVAPI32.dll
- RegCloseKey
- CryptGenRandom
- CryptReleaseContext
- CryptAcquireContextA
- RegQueryValueExA
- RegOpenKeyExA
-
SHELL32.dll
- SHGetSpecialFolderPathA
-
OLEAUT32.dll
- None
- None
- None
- None
RT_CURSOR
RT_ICON
RT_DIALOG
RT_STRING
RT_GROUP_CURSOR
RT_GROUP_ICON
RT_VERSION
RT_MANIFEST