silkroadonlineglobal_official_v1_486.exe

Silkroad Online Install Program

This is a setup and installation application. The file has been seen being downloaded from img.joymax.com.
Product:
Silkroad Online Install Program

Version:
1, 0, 0, 1

MD5:
3a651da6b05ae3219867e36189f5281e

SHA-1:
adacfee274b90cac616c9357de53ac5cb842376f

SHA-256:
91838efed27353cac21115e8e3504b23fc60ceb4a50170d6a42c17e2ab3d769c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 12:18:58 PM UTC  (today)

File size:
2.3 MB (2,380,000 bytes)

Product version:
1, 0, 0, 1

Copyright:
Copyright (C) 2003

Original file name:
Silkroad.EXE

File type:
Executable application (Win32 EXE)

Language:
Korean (Korea)

Common path:
C:\users\{user}\downloads\silkroadonlineglobal_official_v1_486.exe

File PE Metadata
Compilation timestamp:
3/6/2012 5:07:20 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
49152:w0edI83uaSRgyztt5gCn/m9WKbgOUkMUdu+tCX3zLlQYjZNgUxJH8:wxdIJaggG5gCnu8KbV9tCNQYjZN7xJc

Entry address:
0x4798F

Entry point:
E8, 24, 8B, 00, 00, E9, 16, FE, FF, FF, 55, 8B, EC, 83, EC, 48, 53, 33, DB, 57, 8B, F8, 3B, FB, 89, 5D, F8, 89, 5D, FC, 75, 22, E8, BA, 11, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, D3, E5, FF, FF, 83, C4, 14, 83, CA, FF, 8B, C2, E9, 77, 02, 00, 00, 8B, 47, 14, 99, 8B, C8, 8B, C2, 89, 4D, EC, 83, C1, BB, 89, 45, F0, 83, D0, FF, 3B, C3, 56, 0F, 87, 49, 02, 00, 00, 72, 0C, 81, F9, 08, 04, 00, 00, 0F, 87, 3B, 02, 00, 00, 8B, 47, 10, 3B, C3, 7C, 05, 83, F8, 0B, 7E, 46, 99, 6A, 0C, 59, F7, F9, 8B...
 
[+]

Entropy:
7.8113  (probably packed)

Code size:
376 KB (385,024 bytes)

The file silkroadonlineglobal_official_v1_486.exe has been seen being distributed by the following URL.

Scan silkroadonlineglobal_official_v1_486.exe - Powered by Reason Core Security