C9.exe

Continent of The Ninth

WEBZEN INC

Publisher:
Webzen  (signed by WEBZEN INC)

Product:
Continent of The Ninth

Version:
2, 0, 0, 0

MD5:
cb664f6976bf471e8b85b9c8b515c131

SHA-1:
e9b1ef229fd675bd9409df069b6bf3957d1ce984

SHA-256:
2979fef082a97b86905b8a7e5b77cc470a199d54933ce4852d305921b27faa50

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 10:51:25 AM UTC  (today)

File size:
11.4 MB (11,978,488 bytes)

Product version:
2, 0, 0, 0

Copyright:
Copyright (C) Webzen 2008

Original file name:
C9.exe

File type:
Executable application (Win32 EXE)

Language:
Korean (Korea)

Common path:
C:\Program Files\steam\steamapps\common\c9\c9.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
6/15/2014 8:00:00 PM

Valid to:
11/6/2014 6:59:59 PM

Subject:
CN=WEBZEN INC, O=WEBZEN INC, L=Seongnam-si, S=Gyeonggi-do, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
33463A2D56BB9839410BB53EA83D81FD

File PE Metadata
Compilation timestamp:
8/31/2014 11:23:16 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
196608:12j2KpPX5ulrF0/AHvatNiAXIPFoG3J7v:1e2+qrRHvaOeGBv

Entry address:
0x5BE9DF

Entry point:
60, 9C, FC, B8, 01, 00, 00, 00, B9, FF, FF, 00, 00, E0, FE, 48, 83, F8, 00, 75, F3, 68, 19, 24, 58, 01, FF, 15, 0C, 6B, 2F, 01, 68, 26, 24, 58, 01, 50, FF, 15, 04, 6B, 2F, 01, 8B, D8, 50, 8B, CC, 51, 6A, 40, 68, 5B, 00, 00, 00, 68, DF, E9, 9B, 00, FF, D0, 8B, CC, 51, 6A, 40, 68, 19, 00, 00, 00, 68, 00, 24, 58, 01, 8B, C3, FF, D0, 83, C4, 04, E9, C6, 39, BC, 00, 00, 89, 0D, 24, 98, CC, 00, 89, 15, 20, 98, CC, 00, 89, 1D, 1C, 98, CC, 00, 89, 35, 18, 98, CC, 00, 89, 3D, 14, 98, CC, 00, 66, 8C, 15, 40, 98, CC...
 
[+]

Entropy:
6.6163

Code size:
17.5 MB (18,359,296 bytes)

The file C9.exe has been seen being distributed by the following URL.

http://patch-gwgp.c9.webzen.com/LIVE/.../C9.exe

Scan C9.exe - Powered by Reason Core Security