War3.exe

Warcraft III

Blizzard Entertainment

Scan War3.exe - Powered by Reason Core Security
Publisher:
Blizzard Entertainment

Product:
Warcraft III

Version:
1, 0, 20, 6048

MD5:
9e90990ee652cff04460f8271997054a

SHA-1:
a820bd99320743c7f2f9c67fef8ae21d9e9e5a64

SHA-256:
69f8ee77372f50dd48843b033f110576108e3443267ce502175217d11c1200b8

Scanner detections:
8 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
12/8/2016 3:13:14 PM UTC  (today)

Scan engine
Detection
Engine version

eSafe
Win32.TRProxy.Ranky
7.0.17.0

McAfee Web Gateway
Heuristic.LooksLike.Win32.SuspiciousPE.J
7.7103

Norman
W32/Small.SX
11.20140610

File size:
1.5 MB (1,568,211 bytes)

Product version:
Version 1.20

Copyright:
Copyright 2003-2004

Original file name:
War3.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

File PE Metadata
Compilation timestamp:
9/10/2012 6:15:03 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:8q14KyitXe25Sp1T9k85+fGJ4DQUMEzq3RlGUagrC:FPXtXp5Spd9k85YGJ4DQUMEzOGpF

Entry address:
0x95000

Entry point:
50, A1, C8, A0, 44, 00, A3, 1C, 50, 49, 00, B8, 20, 50, 49, 00, A3, C8, A0, 44, 00, 58, 68, 34, 1C, 40, 00, C3, 90, 90, 90, 90, 90, 8B, 44, 24, 04, 80, 38, 69, 74, 0B, 80, 38, 49, 74, 06, FF, 25, 1C, 50, 49, 00, 90, 50, FF, 15, 1C, 50, 49, 00, 90, 60, 90, 8B, F0, 8B, 46, 3C, 03, C6, 8B, B8, D8, 00, 00, 00, 8B, 88, DC, 00, 00, 00, 03, FE, A1, BC, A0, 44, 00, 39, 07, 74, 0A, 83, C7, 04, E2, F7, 61, 90, C2, 04, 00, 90, E9, 1C, 00, 00, 00, 6B, 65, 72, 6E, 65, 6C, 33, 32, 00, 56, 69, 72, 74, 75, 61, 6C, 50, 72...
 
[+]

Code size:
828 KB (847,872 bytes)

Scan War3.exe - Powered by Reason Core Security