tw2.exe

Tianxia2 Online Client

NetEase(Hangzhou)Network Tech.Co.,Ltd.

Publisher:
Netease  (signed by NetEase(Hangzhou)Network Tech.Co.,Ltd.)

Product:
Tianxia2 Online Client

Version:
1, 0, 0, 1

MD5:
1e0f6b9157e07cbfbaefe4b383871393

SHA-1:
0b11262d61e8b308278f1d2fb4fb998512a693a7

SHA-256:
ce17eea776a3a1b171177bd3e23f7112c6171dd81b0c6f60c204cc0fd6a65240

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 6:33:02 AM UTC  (today)

File size:
5.7 MB (6,007,984 bytes)

Product version:
1, 0, 0, 1

Copyright:
Copyright ?2007

Original file name:
tw2.exe

File type:
Executable application (Win32 EXE)

Language:
Chinese (Simplified, China)

Common path:
C:\Program Files\netease\tx2\game\tw2.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
6/29/2009 8:00:00 PM

Valid to:
8/14/2010 7:59:59 PM

Subject:
CN="NetEase(Hangzhou)Network Tech.Co.,Ltd.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="NetEase(Hangzhou)Network Tech.Co.,Ltd.", L=hangzhou, S=hangzhou, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2FB6380D1C63861957EB225D247FFAC6

File PE Metadata
Compilation timestamp:
11/24/2009 4:40:13 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
98304:6xAicqXAVVjq5vAmVztmkY+TaHX/muQyo8cFnqFEVmo9SljqG/y8WqFEVmo9SljW:BictDq5R2k2HXW8cFnq2Vtq2Vh

Entry address:
0xDB1000

Entry point:
83, EC, 04, 50, 53, E8, 01, 00, 00, 00, CC, 58, 8B, D8, 40, 2D, 00, 30, 13, 00, 2D, 5D, 36, 5F, 00, 05, 52, 36, 5F, 00, 80, 3B, CC, 75, 19, C6, 03, 00, BB, 00, 10, 00, 00, 68, 1B, 79, B3, 53, 68, 03, 8A, 15, 7E, 53, 50, E8, 0A, 00, 00, 00, 83, C0, 00, 89, 44, 24, 08, 5B, 58, C3, 55, 8B, EC, 60, 8B, 75, 08, 8B, 4D, 0C, C1, E9, 02, 8B, 45, 10, 8B, 5D, 14, EB, 08, 31, 06, 01, 1E, 83, C6, 04, 49, 0B, C9, 75, F4, 61, C9, C2, 10, 00, 00, 3E, 66, 05, AA, FC, 0F, D0, D3, A7, 57, 14, 84, FF, 64, AD, 39, 67, F5, B1...
 
[+]

Entropy:
7.9012  (probably packed)

Code size:
7.4 MB (7,749,632 bytes)

Scan tw2.exe - Powered by Reason Core Security