| Architecture |
IMAGE_FILE_MACHINE_I386
|
|---|---|
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| Compilation Date | 2005-Dec-08 14:12:22 |
| Detected languages |
English - United States
Korean - Korea |
| Info | Matching compiler(s): |
Microsoft Visual C++ 6.0 - 8.0
Microsoft Visual C++ Microsoft Visual C++ v6.0 Microsoft Visual C++ v5.0/v6.0 (MFC) |
| Info | Interesting strings found in the binary: |
Contains domain names:
|
| Info | Cryptographic algorithms detected in the binary: | Uses constants related to MD5 |
| Suspicious | The PE contains functions most legitimate programs don't use. |
[!] The program may be hiding some of its imports:
|
| Suspicious | No VirusTotal score. | This file has never been scanned on VirusTotal. |
| e_magic | MZ |
|---|---|
| e_cblp | 0x90 |
| e_cp | 0x3 |
| e_crlc | 0 |
| e_cparhdr | 0x4 |
| e_minalloc | 0 |
| e_maxalloc | 0xffff |
| e_ss | 0 |
| e_sp | 0xb8 |
| e_csum | 0 |
| e_ip | 0 |
| e_cs | 0 |
| e_ovno | 0 |
| e_oemid | 0 |
| e_oeminfo | 0 |
| e_lfanew | 0x110 |
| Signature | PE |
|---|---|
| Machine |
IMAGE_FILE_MACHINE_I386
|
| NumberofSections | 4 |
| TimeDateStamp | 2005-Dec-08 14:12:22 |
| PointerToSymbolTable | 0 |
| NumberOfSymbols | 0 |
| SizeOfOptionalHeader | 0xe0 |
| Characteristics |
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LINE_NUMS_STRIPPED
IMAGE_FILE_LOCAL_SYMS_STRIPPED
IMAGE_FILE_RELOCS_STRIPPED
|
| Magic | PE32 |
|---|---|
| LinkerVersion | 6.1423 |
| SizeOfCode | 0xce000 |
| SizeOfInitializedData | 0x123000 |
| SizeOfUninitializedData | 0 |
| AddressOfEntryPoint | 0x000BA018 (Section: .text) |
| BaseOfCode | 0x1000 |
| BaseOfData | 0xcf000 |
| ImageBase | 0x400000 |
| SectionAlignment | 0x1000 |
| FileAlignment | 0x1000 |
| OperatingSystemVersion | 4.0 |
| ImageVersion | 0.58F |
| SubsystemVersion | 4.0 |
| Win32VersionValue | 0 |
| SizeOfImage | 0x21e000 |
| SizeOfHeaders | 0x1000 |
| Checksum | 0 |
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| SizeofStackReserve | 0x100000 |
| SizeofStackCommit | 0x1000 |
| SizeofHeapReserve | 0x100000 |
| SizeofHeapCommit | 0x1000 |
| LoaderFlags | 0 |
| NumberOfRvaAndSizes | 16 |
| KERNEL32.DLL |
TlsAlloc
CompareStringW CompareStringA GetCPInfo LCMapStringW LCMapStringA GetCurrentProcess TerminateProcess HeapReAlloc ExitProcess GetVersion GetCommandLineA SetLastError TlsGetValue HeapSize HeapDestroy HeapCreate VirtualFree GetStartupInfoA GetLocalTime GetSystemTime GetTimeZoneInformation HeapFree ExitThread TlsSetValue GetCurrentThreadId RaiseException HeapAlloc RtlUnwind InterlockedExchange CreateMutexA GetVersionExA GetFileAttributesA GlobalMemoryStatus VirtualAlloc IsBadWritePtr SetUnhandledExceptionFilter UnhandledExceptionFilter FlushFileBuffers GetACP GetOEMCP GetModuleFileNameA FreeEnvironmentStringsA FreeEnvironmentStringsW GetEnvironmentStrings GetEnvironmentStringsW SetHandleCount GetStdHandle GetFileType SetStdHandle IsValidLocale IsValidCodePage GetLocaleInfoA EnumSystemLocalesA GetUserDefaultLCID GetStringTypeA GetStringTypeW IsBadReadPtr IsBadCodePtr LoadLibraryA SetEnvironmentVariableA SetEndOfFile GetLocaleInfoW FindResourceA LoadResource LockResource InterlockedDecrement InterlockedIncrement WideCharToMultiByte lstrlenA SuspendThread ResumeThread ResetEvent CreateEventA WaitForMultipleObjects SetEvent WaitForSingleObject TerminateThread EnterCriticalSection LeaveCriticalSection DeleteCriticalSection InitializeCriticalSection GetExitCodeThread CreateThread LocalFree GetModuleHandleA GetProcAddress WritePrivateProfileStringA GetPrivateProfileIntA CreateDirectoryA GlobalAlloc GlobalLock GlobalUnlock MulDiv GetCurrentDirectoryA SetCurrentDirectoryA FindFirstFileA MoveFileA SetThreadPriority RemoveDirectoryA DeleteFileA SetFileAttributesA MultiByteToWideChar ReadFile CreateFileA CloseHandle GetFileSize WriteFile SetFilePointer QueryPerformanceCounter QueryPerformanceFrequency Sleep FindClose FindNextFileA GetLastError |
|---|---|
| ADVAPI32.dll |
RegSetValueExA
RegCreateKeyExA RegQueryValueExA RegOpenKeyExA RegCloseKey |
| DDRAW.dll |
DirectDrawCreateEx
|
| DINPUT.dll |
DirectInputCreateA
|
| DSOUND.dll |
#1
|
| GDI32.dll |
GetTextMetricsA
GetStockObject SetBkColor Rectangle CreatePen CreateSolidBrush MoveToEx LineTo SetBkMode SetTextColor TextOutA GetTextExtentPoint32A SelectObject CreateICA DeleteDC StretchDIBits CreateFontA DeleteObject GetDeviceCaps |
| IMM32.dll |
ImmNotifyIME
ImmGetCandidateListA ImmGetCompositionStringA ImmGetContext ImmSetConversionStatus ImmReleaseContext ImmGetConversionStatus |
| ole32.dll |
CoCreateInstance
CLSIDFromString CreateStreamOnHGlobal CoUninitialize CoInitialize |
| OLEAUT32.dll |
SysFreeString
VariantInit SysAllocString SafeArrayCreate SafeArrayAccessData SafeArrayUnaccessData VariantClear SysAllocStringLen OleLoadPicture GetErrorInfo |
| SHELL32.dll |
ShellExecuteA
|
| SHLWAPI.dll |
PathRemoveFileSpecA
PathAddBackslashA |
| USER32.dll |
MessageBoxA
SetRect ReleaseDC GetDC SetWindowPos OffsetRect ClientToScreen GetClientRect CopyRect DrawTextA SetFocus UpdateWindow ShowWindow MoveWindow AdjustWindowRect GetWindowRect CreateWindowExA RegisterClassA LoadCursorA LoadIconA DestroyCursor GetCursorPos SetCursor PtInRect SendMessageA keybd_event GetKeyState wsprintfA DispatchMessageA TranslateMessage PeekMessageA CharNextExA SetWindowLongA CallWindowProcA CloseClipboard SetClipboardData EmptyClipboard OpenClipboard GetClipboardData CharPrevExA RemovePropA DefWindowProcA LoadStringA LoadAcceleratorsA GetMessageA PostQuitMessage PostMessageA SetRectEmpty GetSystemMetrics UnregisterClassA GetClassInfoA SetPropA GetPropA |
| WININET.dll |
InternetCloseHandle
HttpSendRequestA InternetQueryDataAvailable HttpOpenRequestA InternetReadFile InternetOpenA InternetConnectA |
| WINMM.dll |
timeGetTime
|
| WS2_32.dll |
recv
send connect socket setsockopt shutdown WSAStartup htons inet_addr WSACleanup WSAGetLastError WSAResetEvent WSAEnumNetworkEvents WSAWaitForMultipleEvents WSACreateEvent WSAEventSelect |
| GS1 |
| GS2 |
| GS3 |
| GS4 |
| GS5 |
| Do you wish to exit C2jam? |
| Unable to initialize DirectX 8.0 |
| GS6 |
| 2 |
| Please enter an ID. |
| Please enter a Password. |
| 5 |
| 6 |
| 7 |
| 8 |
| 9 |
| 10 |
| 11 |
| 12 |
| 13 |
| C2Jam is already running. |
| GS7 |
| Please run Launcher.exe |
| 2 |
| 3 |
| 4 |
| 5 |
| 6 |
| 7 |
| GS8 |
| GS9 |
| GS10 |
| GS11 |
| GS12 |
| 2 |
| 3 |
| 4 |
| 5 |
| 6 |
| 7 |
| GS13 |
| GS14 |
| GS15 |
| GS16 |
| GS17 |
| GS18 |
| GS19 |
| GS20 |
| GS21 |
| GS22 |
| GS23 |
| GS24 |
| GS25 |
| GS26 |
| GS27 |
| 1 |
| 2 |
| 3 |
| 4 |
| 5 |
| GS28 |
| GS29 |
| GS30-ID. |
| GS31 |
| Invalid ID or Password. |
| Please, contact the game administrator |
| GS33 (ID-20?) |
| GS34 |
| GS35 |
| GS36 |
| GS37 |
| 1 |
| 2 |
| 3 |
| 4 |
| GS38 |
| GS39 |
| Change room title. |
| Minimal level not set or maximum level is higher than 100. |
| Maximum level is lower than minimal level. |
| GS40 10 ~ 20 |
| ojnlist.dat file is corrupt. please redownload the file. |
| Keyboard settings are set to default. |
| Settings saved. |
| GS42 |
| Some keys are double, please change them. |
| Sound settings are set to default. |
| Settings saved. |
| GS43 |
| Select channel again |
| GS45 [User]? |
| GS45 |
| GS46 |
| GS47 |
| GS48 |
| GS49 |
| GS50 |
| GS51 |
| GS52 |
| GS53 |
| GS54 |
| 2 |
| 3 |
| 4 |
| 5 |
| GS55 |
| Playable songs. |
| GS56 |
| Song |
| Artist |
| Editor |
| Notes |
| BPM |
| GS57 |
| GS58 |
| GS59 |
| GS60 |
| GS61 |
| GS62 |
| GS63 |
| Kick user? |
| GS64 |
| [User] %s Entered. |
| [User] GSP1 |
| [User] GSP2 |
| 2 |
| 3 |
| 4 |
| 5 |
| 6 |
| Please select an item. |
| GS64 |
| GS65 |
| You cannot sell this item. |
| GS67 |
| GS68 |
| Not enough gems. |
| No free item slot. |
| GS69 |
| GS70 |
| GS71 (pressOK) |
| GS72 |
| GS73 |
| GS74 |
| 7 |
| GS75 |
| Chat to all. |
| Chat to guild members. |
| Shout a private message to all. |
| Whisper. |
| GS76 |
| GS77 |
| GS78 |
| GS79 |
| GS80 |
| GS81 |
| Charge Error |
| GS82 |
| GS83 |
| You Cannot Add More Objects, Complete List |
| Sell your %s |
| and some more sufff. |
| You dont have enough space. |
| GS87 |
| Press OK to continue to buy these items. |
| Is this gift for a female? |
| Error on item data. |
| GS88 |
| Unable to change room name. |
| XOR Key | 0x757b652b |
|---|---|
| Unmarked objects | 0 |
| 12 (7291) | 4 |
| 14 (7299) | 36 |
| 19 (8022) | 15 |
| Unmarked objects (#2) | 43 |
| 19 (8034) | 18 |
| C++ objects (VS2003 (.NET) build 4035) | 1 |
| C objects (9178) | 3 |
| Total imports | 250 |
| Imports (9210) | 7 |
| C objects (VS98 build 8168) | 217 |
| C++ objects (VS98 build 8168) | 193 |
| Resource objects (VS98 cvtres build 1720) | 1 |
No comments yet.