init.exe

GRAVITY

Publisher:
GRAVITY  (signed and verified)

MD5:
d0701e90463096e3242123d98a1efafe

SHA-1:
6f424b81adf3f03f9895cce9f04dfc3b3a3e1213

SHA-256:
f6d6efeaccf1fe1af7c673c5960e96e1b3809ff7220ba5528e0c7325bddc7083

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 9:18:53 PM UTC  (today)

File size:
14.7 KB (15,016 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\action game1s\ragnarok\init.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
7/24/2012 3:00:00 AM

Valid to:
7/25/2013 2:59:59 AM

Subject:
CN=GRAVITY, OU=General Affairs Dept., O=GRAVITY, STREET=15F Nurikkumsquare Business tower, STREET=Sangam-dong, L=Mapo-gu, S=Seoul, PostalCode=121795, C=KR

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00E04F46384CBD397E822981BC67B12E96

File PE Metadata
Compilation timestamp:
5/20/2013 7:52:19 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
10.0

CTPH (ssdeep):
192:GtviiK08lEsrns+kltM3OSzruVQG6JZTljnJfHix8fe+PjPW38LWM1wg2ogOV2:WiigVr9klWOSHuVoTNnhCxYPLg83

Entry address:
0x1625

Entry point:
E8, 7F, 04, 00, 00, E9, B3, FD, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 40, 31, 40, 00, 89, 0D, 3C, 31, 40, 00, 89, 15, 38, 31, 40, 00, 89, 1D, 34, 31, 40, 00, 89, 35, 30, 31, 40, 00, 89, 3D, 2C, 31, 40, 00, 66, 8C, 15, 58, 31, 40, 00, 66, 8C, 0D, 4C, 31, 40, 00, 66, 8C, 1D, 28, 31, 40, 00, 66, 8C, 05, 24, 31, 40, 00, 66, 8C, 25, 20, 31, 40, 00, 66, 8C, 2D, 1C, 31, 40, 00, 9C, 8F, 05, 50, 31, 40, 00, 8B, 45, 00, A3, 44, 31, 40, 00, 8B, 45, 04, A3, 48, 31, 40, 00, 8D, 45, 08, A3, 54, 31, 40...
 
[+]

Entropy:
6.6813

Code size:
3 KB (3,072 bytes)

The file init.exe has been discovered within the following programs.

AnesisRO 20150802  by AnesisRO
www.anesisro.com
About 8% of users remove it
www.atlantis-ro.net
About 8% of users remove it
www.elynoria.fr
About 7% of users remove it
LimitRO  by Limit Ragnarok Online
www.limit-ro.net
About 3% of users remove it
MysteryRO  by MysteryRO
About 5% of users remove it
RevivalRO  by Rebirth B.V.
ragnarevival.com
About 8% of users remove it
 
Powered by Should I Remove It?

The file init.exe has been seen being distributed by the following URL.

Scan init.exe - Powered by Reason Core Security