ToyWars.exe

ToyWars CS Client

NQGAMES Co., Ltd

Publisher:
TOT Productions Ltd.  (signed by NQGAMES Co., Ltd)

Product:
ToyWars CS Client

Version:
1.0.1.47

MD5:
098d9bd487c4ca5a74b19953eff6db4e

SHA-1:
b25ac61a5ee54a44869ed306d35e82117d260951

SHA-256:
ab72acd7419f11525e348b52aff3d4c3ecec260b0cf1a4f82553cf31a5d828c4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 4:32:21 PM UTC  (today)

File size:
6 MB (6,300,072 bytes)

Product version:
1.0.1.47

Copyright:
Copyright (C) 2010 TOT Productions Ltd.

Original file name:
ToyWars.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\bin\toywars.exe

Digital Signature
Authority:
thawte, Inc.

Valid from:
12/30/2014 7:00:00 AM

Valid to:
12/31/2015 6:59:59 AM

Subject:
CN="NQGAMES Co., Ltd", O="NQGAMES Co., Ltd", L=Gangnam-gu, S=Seoul, C=KR

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
3389B782F1DADCA0CFB54663FF1E9B77

File PE Metadata
Compilation timestamp:
6/22/2015 4:43:17 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
98304:t96nwxLt/ERA2+ZO7kuOsVACGy8jh5k11qO0HcGlws2JNJHm+SOcLRisqqc:D2yLt/p5UYf1v67b0HL2RHmB5kq

Entry address:
0x155F000

Entry point:
68, 00, 00, 00, 00, 68, 01, 00, 00, 00, 68, 00, 00, 40, 00, 68, 00, E0, 95, 01, E9, 00, 04, 00, 00, CE, 21, 00, 00, 00, 00, 00, 00, 20, 21, 00, 00, 36, 21, 00, 00, 4A, 21, 00, 00, 5C, 21, 00, 00, 0E, 21, 00, 00, 7E, 21, 00, 00, 8A, 21, 00, 00, 96, 21, 00, 00, 6E, 21, 00, 00, 00, 21, 00, 00, 00, 00, 00, 00, B4, 21, 00, 00, 00, 00, 00, 00, 64, 75, 6D, 6D, 79, 00, 64, 75, 6D, 6D, 79, 00, 64, 75, 6D, 6D, 79, 00, 64, 75, 6D, 6D, 79, 00, 64, 75, 6D, 6D, 79, 00, 64, 75, 6D, 6D, 79, 00, 6B, 65, 72, 6E, 65, 6C, 33...
 
[+]

Entropy:
7.9744

Packer / compiler:
PKLITE32 v1.1

Code size:
11.5 MB (12,007,936 bytes)

Scan ToyWars.exe - Powered by Reason Core Security