game.exe

Warface

MailRU

Publisher:
Crytek GmbH  (signed by MailRU)

Product:
Warface

Version:
1, 1, 1, 320

MD5:
39cfff160adc5b0c4a4228ba6d9396ad

SHA-1:
2305e52031e405195b985d183555349cd1b5d0c3

SHA-256:
54311e7a8bcda090d7bb387042c9cd5d7fa9592d3a1d35820b09d1cdf590a989

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/20/2018 7:11:44 AM UTC  (today)

File size:
17.9 MB (18,791,464 bytes)

Product version:
1, 1, 1, 320

Copyright:
(C) 2007 Crytek GmbH

File type:
Executable application (Win32 EXE)

Language:
English

Common path:
C:\users\{user}\appdata\local\mail.ru\warface\bin32release\game.exe

Digital Signature
Signed by:

Authority:
MailRU

Valid from:
12/4/2012 11:53:56 PM

Valid to:
12/4/2013 11:53:56 PM

Subject:
CN=MailRU

Issuer:
CN=MailRU

Serial number:
00BC97E95BDE8A6C2F

File PE Metadata
Compilation timestamp:
3/2/2013 10:49:17 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
4.0

CTPH (ssdeep):
393216:mFgqWaDHtdFIOSPHfMojg2PsnHdMIXaqxv2sp/il+TyU7aj:Og+7tdbNojtEdbOspqlcyIaj

Entry address:
0x36C1E0

Entry point:
FF, 25, 14, FF, B3, 01, FF, 25, 14, FF, B3, 01, FF, 25, 14, FF, B3, 01, E8, 89, 8E, C9, FF, FF, 25, 60, F0, B3, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, E8, CC, 09, A9, 00, 83, C4, 0C, FF, 25, 64, F0, B3, 01, 00, 00, 00, 00, 00, E8, 1D, 9D, CB, FF, FF, 25, 68, F0, B3, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, E8, 75, 5E, C9, FF, 83, C4, 08, FF, 25, 6C, F0, B3, 01, 55, C7, C5, E5, 85, 3E, 45, 9C, 50, C1, CD, 19...
 
[+]

Entropy:
7.9991  (probably packed)

Code size:
16.3 MB (17,141,044 bytes)

The file game.exe has been discovered within the following program.

Warface  by Mail.Ru
Warface is an online browser based free-to-play first-person shooter. The game is exclusive to the PC and is powered by CryEngine 3. This game is currently in an open beta stage on Mail.Ru's game client in Russia.
wf.mail.ru/register?site_id=1_880_69112_0
About 2% of users remove it
 
Powered by Should I Remove It?

Scan game.exe - Powered by Reason Core Security