flyff_us_v19_20120710.exe

Flyff

Gala-Net

The program is a setup application that uses the Inno Setup installer. This is installed with Flyff. The file has been seen being downloaded from cdn-files1.playerattack.com and multiple other hosts.
Publisher:
Gala-Net

Product:
Flyff

Description:
Flyff Setup

MD5:
e40aa4b6d79d9eaf47cd71d455976f0e

SHA-1:
61faf3c5469272d9419058a0ffe7af44dd606d0d

SHA-256:
e16911da128cbf41e9b323a96beeea6620ed2d94bdcf2a0f85623b105d8fd042

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 7:04:56 PM UTC  (today)

File size:
1.1 GB (1,179,887,329 bytes)

File type:
Executable application (Win64 EXE)

Installer:
Inno Setup

Language:
Language Neutral

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
25165824:kod711UqIL6w7ZPYcRDjuacux2IURjwYMES9H4rjm:H11M6w7ORpR1MAS

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, 6E, 96, FF, FF, E8, 75, A8, FF, FF, E8, A0, CA, FF, FF, E8, E7, CA, FF, FF, E8, 0E, F3, FF, FF, E8, 75, F4, FF, FF, 33, C0, 55, 68, 0B, A1, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, D4, A0, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 9B, FE, FF, FF, E8, 02, FA, FF, FF, 8D, 55, F0, 33, C0, E8, AC, D0, FF, FF, 8B, 55, F0, B8, E4, CD, 40, 00, E8, 1F, 97, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, E4, CD, 40, 00, B2, 01, B8...
 
[+]

Entropy:
8.0000

Packer / compiler:
Inno Setup v5.x - Installer Maker

The file flyff_us_v19_20120710.exe has been discovered within the following program.

Flyff  by GALA-NET
flyff.gpotato.com
About 7% of users remove it
 
Powered by Should I Remove It?

The file flyff_us_v19_20120710.exe has been seen being distributed by the following 5 URLs.

http://cdn-files1.playerattack.com/file/.../Flyff_US_V19_20120710.exe

http://cdn-files1.playerattack.com/file/.../Flyff_US_V19_20120710.exe

Scan flyff_us_v19_20120710.exe - Powered by Reason Core Security