dfb9e097bd3823d6a610656e123e2fa08d83d8a365d45d6eddaf64755d59915c

Summary

Architecture IMAGE_FILE_MACHINE_I386
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date 2026-Apr-24 05:59:24
Detected languages Chinese - PRC
English - United States
Japanese - Japan
Korean - Korea
TLS Callbacks 2 callback(s) detected.
CompanyName Ymir Entertainment
FileDescription Metin2Client
FileVersion 1.0.40999.1
InternalName Metin2Client
LegalCopyright Copyright (C) 2011
OriginalFilename Metin2Client.exe
ProductName Metin2Client
ProductVersion 1, 0, 0, 1

Plugin Output

Info Matching compiler(s): Microsoft Visual C++ v6.0 DLL
Microsoft Visual C++ 6.0 - 8.0
Suspicious Strings found in the binary may indicate undesirable behavior: Miscellaneous malware strings:
  • cmd.exe
Contains domain names:
  • BeOpen.com
  • command.com
  • hammerm2.com
  • http://python.org
  • http://www.hammerm2.com
  • http://www.hammerm2.com/ishop
  • https://hammerm2.com
  • python.org
  • www.hammerm2.com
Info Cryptographic algorithms detected in the binary: Uses constants related to CRC32
Uses constants related to MD5
Uses constants related to SHA1
Uses constants related to SHA256
Uses constants related to SHA512
Uses constants related to AES
Uses known Mersenne Twister constants
Microsoft's Cryptography API
Suspicious The PE is possibly packed. Unusual section name found: .data0
Malicious The PE contains functions mostly used by malware. [!] The program may be hiding some of its imports:
  • LoadLibraryW
  • LoadLibraryExW
  • LoadLibraryA
  • GetProcAddress
Functions which can be used for anti-debugging purposes:
  • CreateToolhelp32Snapshot
  • SwitchToThread
  • FindWindowA
Code injection capabilities (PowerLoader):
  • FindWindowA
  • GetWindowLongA
Can access the registry:
  • RegOpenKeyExA
  • RegQueryValueExA
  • RegCreateKeyExW
  • RegSetValueExW
  • RegEnumKeyExA
  • RegSaveKeyA
  • RegDeleteValueA
  • RegEnumValueA
  • RegQueryInfoKeyA
  • RegLoadKeyA
  • RegSetValueExA
  • RegQueryValueA
  • RegFlushKey
  • RegCreateKeyExA
  • RegDeleteKeyA
  • RegSetValueA
  • RegCreateKeyA
  • RegGetValueW
  • RegCloseKey
  • RegOpenKeyExW
  • RegQueryValueExW
Possibly launches other programs:
  • CreateProcessA
  • ShellExecuteA
  • ShellExecuteW
Uses Microsoft's cryptographic API:
  • CryptReleaseContext
  • CryptDestroyHash
  • CryptHashData
  • CryptAcquireContextA
  • CryptCreateHash
  • CryptGetHashParam
Can create temporary files:
  • CreateFileW
  • GetTempPathW
  • CreateFileA
Memory manipulation functions often used by packers:
  • VirtualAlloc
  • VirtualProtect
Leverages the raw socket API to access the Internet:
  • gethostbyname
  • __WSAFDIsSet
  • closesocket
  • connect
  • ioctlsocket
  • recv
  • setsockopt
  • socket
  • select
  • WSAIoctl
  • WSAStartup
  • WSACleanup
  • send
  • WSAGetLastError
  • inet_addr
  • htons
Enumerates local disk drives:
  • GetDriveTypeW
Manipulates other processes:
  • OpenProcess
  • ReadProcessMemory
Can take screenshots:
  • GetDC
  • FindWindowA
  • CreateCompatibleDC
Reads the contents of the clipboard:
  • GetClipboardData
Suspicious VirusTotal score: 1/68 (Scanned on 2026-05-22 03:01:04) ClamAV: Win.Packer.MalwareCrypter-6620810-1

Hashes

MD5 29a74520a6c88b041b7d78c78f0f69f9
SHA1 3ded7bd93a34327386d7b2a628a4d35e0ac7d6ec
SHA256 dfb9e097bd3823d6a610656e123e2fa08d83d8a365d45d6eddaf64755d59915c
SHA3 a51a6bd6c20175ee0531549af2decab9362e2b9790452ac36f2c09b53571ae59
SSDeep 393216:zWMkRg/tTjB/TU4RMMSzWpdRaRk7Ld8P5T0:zuytTjB7UFMO6RzG
Imports Hash f0f121640197fe9f47227f94fb4e512e

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0x80

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_I386
NumberofSections 7
TimeDateStamp 2026-Apr-24 05:59:24
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xe0
Characteristics IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE

Image Optional Header

Magic PE32
LinkerVersion 14.0
SizeOfCode 0x12e3600
SizeOfInitializedData 0x728e00
SizeOfUninitializedData 0
AddressOfEntryPoint 0x0032FB47 (Section: .text)
BaseOfCode 0x1000
BaseOfData 0x12e5000
ImageBase 0x400000
SectionAlignment 0x1000
FileAlignment 0x200
OperatingSystemVersion 6.0
ImageVersion 0.0
SubsystemVersion 6.0
Win32VersionValue 0
SizeOfImage 0x1bae000
SizeOfHeaders 0x400
Checksum 0
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x100000
SizeofStackCommit 0x1000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 0284b166d12d1a70c798bdde30aab42a
SHA1 3f056b62caa8bb89fc8ab717f50076b41da80dac
SHA256 9bb5235235bc1f25f0f7ab4a6bbfdd30ca10e1157f9f00ada78d5a1184d67ce1
SHA3 57df3f65123238708bea3140cb91345e311fc453cf5a4b115abb3dc2fe15fe18
VirtualSize 0x12e349a
VirtualAddress 0x1000
SizeOfRawData 0x12e3600
PointerToRawData 0x400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.51536

.rdata

MD5 fbd516a37b325566a8c3cd3c5cfeec66
SHA1 6b0b1b1ed6fbfed9ba8fe9a24b756b37fc3deac7
SHA256 0cd40a800e771fc581dae1eb6494e65d0a0bb9e9fdfe35827bb1cb99ddbb5eb4
SHA3 10e0ff450f07ccf91e17f92d90c0cee88f4af779cd66fc11daeb45cf697499fa
VirtualSize 0x19bb4e
VirtualAddress 0x12e5000
SizeOfRawData 0x19bc00
PointerToRawData 0x12e3a00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 6.07763

.data

MD5 22b86708543807fcc001733e68bc859a
SHA1 baca7bd6d9607b501a55286c36de4a700efdbee6
SHA256 dda28eea443288e2a6b1077fd06464d53d590a058e3f1b4695b9462bc7e850a8
SHA3 f33888bb0db6a3762ea169985db6a0fa5dff52c9b14dba621ebc8893a2058a62
VirtualSize 0x313c70
VirtualAddress 0x1481000
SizeOfRawData 0x22c600
PointerToRawData 0x147f600
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 5.35057

_RDATA

MD5 3fba92dd3395f8370ca156e432d84cc5
SHA1 8e1d6a48fe5488702267685f8e455d0d7f370d34
SHA256 b7598579c50a1f94ee83874cffb03f6702604fc070cafdb2476c6d488716518d
SHA3 5526ce5f0963135cf2e54ae74f19753822e0c55b8bf33b70aef16328d88afdbd
VirtualSize 0x16510
VirtualAddress 0x1795000
SizeOfRawData 0x16600
PointerToRawData 0x16abc00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 5.62046

.data0

MD5 d2d297dd98ed8612854045e292a84106
SHA1 6fa7bc730f27ea3c52498693fae52af80ee8b3dc
SHA256 259b488b700e579e0aac81543c1d3031970d56eabc2817c536e4ef438937f0bb
SHA3 009fe6187b0a2b569cac40ac444c7cb3b87fa874a61b99e6003e1ee3513d2c7a
VirtualSize 0x19eb30
VirtualAddress 0x17ac000
SizeOfRawData 0x19ec00
PointerToRawData 0x16c2200
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 7.26657

.rsrc

MD5 41c56a8db9ecf6ed08a001adf3f272ef
SHA1 574abefce3046b90a0e264e8bb8d11c22472acce
SHA256 0508c927bdad2b9d2b796791040fdbc2767099c7c6a8f1dbee29b43cb1ce74e8
SHA3 dd4f9c485e2fef7137f007267c5f562fc3bef32a8ab1fa62d2d60558d0c5c326
VirtualSize 0x72f4c
VirtualAddress 0x194b000
SizeOfRawData 0x73000
PointerToRawData 0x1860e00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 6.1394

.reloc

MD5 5fc64f36e2ec2e874348f84832c126f7
SHA1 ec2db398917d8efa38e9595a80b72f36889c9187
SHA256 3d5a24422ee9b8ceeecd7ecf6154a2c299b781377b6e28a18f33f95f65188d5a
SHA3 686f4b62c60f9fcd32a6c58d1389baf72dbad5ef634dabe2c4c05a47d7ae7b0c
VirtualSize 0x1efd24
VirtualAddress 0x19be000
SizeOfRawData 0x1efe00
PointerToRawData 0x18d3e00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy 6.81916

Imports

IPHLPAPI.DLL GetAdaptersInfo
GetPerAdapterInfo
KERNEL32.dll GetPrivateProfileStringA
lstrlenA
lstrcatA
GlobalFree
GetModuleFileNameA
GetSystemDirectoryA
DeleteFileA
GetCurrentDirectoryA
VirtualFree
VirtualAlloc
ReadFile
FindNextFileA
FindFirstFileA
FindClose
SetFileAttributesA
K32GetModuleInformation
GetModuleHandleA
WriteConsoleW
SetConsoleMode
ReadConsoleInputA
PeekConsoleInputA
GetNumberOfConsoleInputEvents
FreeEnvironmentStringsW
GetEnvironmentStringsW
GetCommandLineW
GetCommandLineA
GetOEMCP
IsValidCodePage
FindFirstFileExA
HeapReAlloc
MoveFileExW
EnumSystemLocalesW
GetUserDefaultLCID
IsValidLocale
GetLocaleInfoW
LCMapStringW
CompareStringW
GetTimeFormatW
GetDateFormatW
ReadConsoleW
GetConsoleMode
GetTimeZoneInformation
UnlockFileEx
LockFileEx
HeapCompact
HeapSize
FlushFileBuffers
VirtualProtect
FileTimeToSystemTime
SystemTimeToTzSpecificLocalTime
SetStdHandle
ExitProcess
GetDriveTypeW
GetModuleHandleExW
SetUnhandledExceptionFilter
GetSystemInfo
OpenProcess
SetThreadPriority
Sleep
CreateEventA
WaitForSingleObject
SetEvent
DeleteCriticalSection
LeaveCriticalSection
EnterCriticalSection
ExitThread
InitializeCriticalSectionAndSpinCount
VirtualQuery
RtlUnwind
RaiseException
GetEnvironmentVariableW
CreateSemaphoreW
FlushViewOfFile
InitializeCriticalSection
ExpandEnvironmentStringsW
ResetEvent
SetConsoleCtrlHandler
GetACP
GetExitCodeProcess
GenerateConsoleCtrlEvent
Module32Next
Module32First
CreateToolhelp32Snapshot
ReadProcessMemory
GetCurrentProcessId
GetCurrentProcess
GetLastError
MultiByteToWideChar
GetTickCount
GetCurrentDirectoryW
GetModuleHandleW
GetProcessHeap
HeapFree
HeapAlloc
DeviceIoControl
GetProcessTimes
MoveFileW
GetSystemTime
GetFileType
CreateProcessA
SystemTimeToFileTime
SetEnvironmentVariableA
SetCurrentDirectoryW
DeleteFileW
GetFileAttributesExW
SetFileAttributesW
SetCurrentDirectoryA
GetVersion
GetFileAttributesW
GetEnvironmentVariableA
CreatePipe
SetEnvironmentVariableW
SetFileTime
RemoveDirectoryW
FindNextFileW
GetFullPathNameW
GetFileAttributesExA
MoveFileA
FindFirstFileW
CreateDirectoryW
SetEndOfFile
GetFullPathNameA
IsDBCSLeadByte
GetConsoleCP
GetConsoleOutputCP
GetFileAttributesA
GetFileInformationByHandle
VerifyVersionInfoW
GetProcessAffinityMask
VerSetConditionMask
DuplicateHandle
SetThreadGroupAffinity
GetThreadGroupAffinity
GetNumaHighestNodeNumber
GetLogicalProcessorInformationEx
GetCurrentProcessorNumberEx
TlsFree
TlsSetValue
TlsGetValue
TlsAlloc
GetThreadPriority
CreateThread
SignalObjectAndWait
LoadLibraryW
SetLastError
QueryDepthSList
InterlockedFlushSList
InterlockedPushEntrySList
InterlockedPopEntrySList
LoadLibraryExW
FreeLibraryAndExitThread
GetThreadTimes
GetCurrentThread
WaitNamedPipeW
PeekNamedPipe
GetModuleFileNameW
TerminateProcess
GetStartupInfoW
UnhandledExceptionFilter
IsDebuggerPresent
IsProcessorFeaturePresent
InitializeSListHead
GetCPInfo
GetStringTypeW
CloseThreadpoolWait
SetThreadpoolWait
CreateThreadpoolWait
CloseThreadpoolTimer
WaitForThreadpoolTimerCallbacks
SetThreadpoolTimer
CreateThreadpoolTimer
FreeLibraryWhenCallbackReturns
GetSystemTimeAsFileTime
FlushProcessWriteBuffers
CreateSemaphoreExW
CreateEventExW
QueryPerformanceFrequency
QueryPerformanceCounter
GetNativeSystemInfo
GetExitCodeThread
SwitchToThread
WaitForSingleObjectEx
GetTickCount64
SleepConditionVariableSRW
WakeAllConditionVariable
LCMapStringEx
DecodePointer
EncodePointer
LocalFree
InitializeCriticalSectionEx
TryAcquireSRWLockExclusive
AcquireSRWLockExclusive
ReleaseSRWLockExclusive
CloseThreadpoolWork
WaitForThreadpoolWorkCallbacks
SubmitThreadpoolWork
CreateThreadpoolWork
FormatMessageA
SetFilePointerEx
CreateFileW
ReleaseSemaphore
GetLocaleInfoA
CompareStringA
WideCharToMultiByte
lstrlenW
GlobalLock
GlobalUnlock
FreeLibrary
GetVersionExA
OutputDebugStringW
WriteFile
SetFilePointer
OutputDebugStringA
LoadLibraryA
GetProcAddress
GetCurrentThreadId
CreateFileMappingA
UnmapViewOfFile
MapViewOfFile
GetFileSize
QueryFullProcessImageNameA
GlobalAlloc
RemoveDirectoryA
CreateDirectoryA
GetTempPathW
CloseHandle
CreateFileA
GetStdHandle
USER32.dll RegisterClassExW
CreateWindowExW
DestroyWindow
DefWindowProcA
DefWindowProcW
MessageBoxA
PeekMessageA
GetAsyncKeyState
GetDC
RegisterClassA
CreateWindowExA
IsWindow
MoveWindow
GetMenu
GetWindowRect
ReleaseDC
InvalidateRect
GetClientRect
ClientToScreen
FillRect
SetRect
OffsetRect
PostQuitMessage
FlashWindowEx
SetWindowPos
GetCursorPos
ScreenToClient
FindWindowA
LoadIconA
SystemParametersInfoA
GetKeyState
ShowCursor
SetCursor
DestroyCursor
LoadImageA
SetCursorPos
ShowWindow
GetCapture
SetCapture
ReleaseCapture
ChangeDisplaySettingsA
GetSystemMetrics
LoadStringA
DispatchMessageA
AdjustWindowRectEx
GetWindowLongA
SetWindowLongA
LoadCursorA
CharPrevA
GetMonitorInfoA
MonitorFromPoint
CharPrevExA
CharNextExA
CharNextW
GetClipboardData
CloseClipboard
OpenClipboard
GetKeyboardLayout
GetKeyboardLayoutNameA
TranslateMessage
GDI32.dll GetTextExtentPoint32A
TextOutA
GetDeviceCaps
GetPixel
CreateDIBSection
StretchBlt
SetBkMode
DeleteDC
GetCharABCWidthsFloatW
CreateCompatibleDC
TextOutW
SetTextColor
GetStockObject
EnumFontFamiliesExA
CreateFontIndirectA
SetBkColor
SelectObject
GetTextExtentPoint32W
DeleteObject
CreateSolidBrush
ADVAPI32.dll CryptReleaseContext
RegOpenKeyExA
RegQueryValueExA
CryptDestroyHash
CryptHashData
RegCreateKeyExW
RegSetValueExW
RegEnumKeyExA
RegSaveKeyA
RegConnectRegistryA
RegDeleteValueA
RegEnumValueA
RegQueryInfoKeyA
RegLoadKeyA
RegSetValueExA
RegQueryValueA
RegFlushKey
RegCreateKeyExA
RegDeleteKeyA
RegSetValueA
RegCreateKeyA
EventRegister
EventSetInformation
EventWriteTransfer
EventUnregister
RegGetValueW
RegCloseKey
RegOpenKeyExW
RegQueryValueExW
CryptAcquireContextA
CryptCreateHash
CryptGetHashParam
ole32.dll CoCreateInstance
CoUninitialize
CoInitialize
CoInitializeEx
CoTaskMemFree
WINMM.dll timeGetDevCaps
timeGetTime
timeEndPeriod
timeBeginPeriod
d3d9.dll Direct3DCreate9Ex
Direct3DCreate9
d3dx9_43.dll D3DXVec3Normalize
D3DXVec3TransformCoord
D3DXMatrixRotationZ
D3DXMatrixMultiply
D3DXMatrixTranslation
D3DXMatrixRotationQuaternion
D3DXQuaternionRotationAxis
D3DXQuaternionMultiply
D3DXMatrixRotationYawPitchRoll
D3DXMatrixInverse
D3DXMatrixRotationX
D3DXVec3TransformNormal
D3DXMatrixRotationAxis
D3DXVec4Transform
D3DXAssembleShader
D3DXMatrixTranspose
D3DXMatrixScaling
D3DXVec2Normalize
D3DXMatrixDeterminant
D3DXMatrixLookAtRH
D3DXVec3Project
D3DXMatrixPerspectiveFovRH
D3DXMatrixOrthoRH
D3DXMatrixOrthoOffCenterRH
D3DXCreateMatrixStack
D3DXCreateCylinder
D3DXCreateSphere
D3DXLoadSurfaceFromSurface
D3DXCreateTexture
D3DXCreateTextureFromFileInMemoryEx
D3DXGetFVFVertexSize
D3DXPlaneNormalize
D3DXQuaternionRotationYawPitchRoll
D3DXVec3Transform
IMM32.dll ImmNotifyIME
ImmGetOpenStatus
ImmSetConversionStatus
ImmGetIMEFileNameA
ImmGetConversionStatus
ImmGetCandidateListW
ImmIsIME
ImmSetCompositionStringW
ImmGetCompositionStringW
ImmAssociateContext
ImmReleaseContext
ImmGetContext
SETUPAPI.dll SetupDiGetClassDevsW
SetupDiDestroyDeviceInfoList
SetupDiEnumDeviceInfo
SetupDiGetDeviceRegistryPropertyW
VERSION.dll GetFileVersionInfoA
GetFileVersionInfoSizeA
VerQueryValueA
DevIL.dll ilShutDown
ilOriginFunc
ilLoad
ilGetInteger
ilGenImages
ilEnable
ilDeleteImages
ilCopyPixels
ilConvertImage
ilSetPixels
ilTexImage
ilInit
ilBindImage
ilSave
granny2.dll GrannyPWNT3432VertexType
_GrannyGetMeshIndexCount@4
_GrannyGetTotalTypeSize@4
_GrannyGetTotalObjectSize@4
_GrannyGetWorldPoseComposite4x4@8
_GrannyGetWorldPose4x4@8
_GrannyFreeWorldPose@4
_GrannyNewWorldPose@4
_GrannyFindBoneByName@12
_GrannyFreeModelInstance@4
_GrannyInstantiateModel@4
_GrannyGetWorldPoseComposite4x4Array@4
_GrannyFreeLocalPose@4
_GrannyNewLocalPose@4
_GrannyUpdateModelMatrix@20
_GrannyGetMaterialTextureByType@8
_GrannyFindMatchingMember@16
_GrannyConvertSingleObject@20
_GrannyReadEntireFileFromMemory@8
_GrannyFreeFileSection@8
_GrannyFreeFile@4
_GrannyGetFileInfo@4
_GrannyGetMeshTriangleGroupCount@4
_GrannyGetMeshTriangleGroups@4
_GrannyGetMeshVertexType@4
_GrannyGetMeshVertexCount@4
_GrannyCopyMeshVertices@12
_GrannyGetMeshVertices@4
_GrannyMeshIsRigid@4
_GrannyCopyMeshIndices@12
_GrannyNewMeshBinding@12
_GrannyFreeMeshBinding@4
_GrannyGetMeshBindingToBoneIndices@4
_GrannyNewMeshDeformer@16
_GrannyFreeMeshDeformer@4
_GrannyDeformVertices@24
GrannyPNT332VertexType
_GrannyGetSourceSkeleton@4
_GrannySetModelClock@8
_GrannySampleModelAnimationsAccelerated@20
_GrannyGetWorldPoseBoneCount@4
_GrannyGetSourceModel@4
_GrannyFindTrackGroupForModel@12
_GrannyFreeControl@4
_GrannyFreeControlOnceUnused@4
_GrannyCompleteControlAt@8
_GrannyControlIsComplete@4
_GrannyFreeControlIfComplete@4
_GrannyGetControlLoopCount@4
_GrannySetControlLoopCount@8
_GrannyGetControlSpeed@4
_GrannySetControlSpeed@8
_GrannyGetControlLocalDuration@4
_GrannySetControlEaseIn@8
_GrannySetControlEaseInCurve@28
_GrannySetControlEaseOut@8
_GrannySetControlEaseOutCurve@28
_GrannyGetControlRawLocalClock@4
_GrannySetControlRawLocalClock@8
_GrannyPlayControlledAnimation@12
_GrannyBeginControlledAnimation@8
_GrannyEndControlledAnimation@4
_GrannySetTrackGroupTarget@12
_GrannySetTrackGroupLOD@16
_GrannyFreeCompletedModelControls@4
mss32.dll _AIL_file_read@8
_AIL_set_file_callbacks@16
_AIL_WAV_info@8
_AIL_decompress_ASI@24
_AIL_decompress_ADPCM@12
_AIL_file_type@8
_AIL_open_digital_driver@16
_AIL_open_stream@12
_AIL_auto_update_3D_position@8
_AIL_3D_sample_volume@4
_AIL_3D_sample_status@4
_AIL_close_digital_driver@4
_AIL_enumerate_3D_providers@12
_AIL_open_3D_provider@4
_AIL_close_3D_provider@4
_AIL_open_3D_listener@4
_AIL_close_3D_listener@4
_AIL_set_3D_position@16
_AIL_set_3D_velocity@20
_AIL_set_3D_orientation@28
_AIL_startup@0
_AIL_shutdown@0
_AIL_set_redist_directory@4
_AIL_close_stream@4
_AIL_start_stream@4
_AIL_pause_stream@8
_AIL_set_stream_volume_levels@12
_AIL_stream_volume_levels@12
_AIL_set_stream_loop_count@8
_AIL_mem_free_lock@4
_AIL_last_error@0
_AIL_allocate_sample_handle@4
_AIL_release_sample_handle@4
_AIL_init_sample@4
_AIL_set_sample_file@12
_AIL_start_sample@4
_AIL_stop_sample@4
_AIL_resume_sample@4
_AIL_end_sample@4
_AIL_set_sample_volume_pan@12
_AIL_set_sample_loop_count@8
_AIL_sample_status@4
_AIL_sample_volume_pan@12
_AIL_allocate_3D_sample_handle@4
_AIL_release_3D_sample_handle@4
_AIL_start_3D_sample@4
_AIL_stop_3D_sample@4
_AIL_resume_3D_sample@4
_AIL_end_3D_sample@4
_AIL_set_3D_sample_loop_count@8
_AIL_set_3D_sample_volume@8
_AIL_set_3D_sample_file@8
_AIL_stream_status@4
SpeedTreeRT.dll ?GetCollisionObject@CSpeedTreeRT@@QAEXIAAW4ECollisionObjectType@1@PAM1@Z
?SetLodLimits@CSpeedTreeRT@@QAEXMM@Z
?SetBranchWindMethod@CSpeedTreeRT@@QAEXW4EWindMethod@1@@Z
?GetBoundingBox@CSpeedTreeRT@@QBEXPAM@Z
?SetDropToBillboard@CSpeedTreeRT@@SAX_N@Z
?SetLodLevel@CSpeedTreeRT@@QAEXM@Z
?ComputeLodLevel@CSpeedTreeRT@@QAEXXZ
?GetCollisionObjectCount@CSpeedTreeRT@@QAEIXZ
?GetCurrentError@CSpeedTreeRT@@SAPBDXZ
?GetTextures@CSpeedTreeRT@@QBEXAAUSTextures@1@@Z
?SetTextureFlip@CSpeedTreeRT@@SAX_N@Z
?GetGeometry@CSpeedTreeRT@@QAEXAAUSGeometry@1@KFFF@Z
?GetNumFrondLodLevels@CSpeedTreeRT@@QBEGXZ
?GetNumLeafLodLevels@CSpeedTreeRT@@QBEGXZ
?SetLeafWindMethod@CSpeedTreeRT@@QAEXW4EWindMethod@1@@Z
?GetNumBranchLodLevels@CSpeedTreeRT@@QBEGXZ
?SetLocalMatrices@CSpeedTreeRT@@QAEXII@Z
?SetFrondWindMethod@CSpeedTreeRT@@QAEXW4EWindMethod@1@@Z
?SetFrondLightingMethod@CSpeedTreeRT@@QAEXW4ELightingMethod@1@@Z
?SetTime@CSpeedTreeRT@@SAXM@Z
?SetWindStrength@CSpeedTreeRT@@QAEMMMM@Z
?SetNumWindMatrices@CSpeedTreeRT@@SAXI@Z
?SetLightState@CSpeedTreeRT@@SAXI_N@Z
?SetLightAttributes@CSpeedTreeRT@@SAXIPBM@Z
?SetCamera@CSpeedTreeRT@@SAXPBM0@Z
?SetNumLeafRockingGroups@CSpeedTreeRT@@QAEXI@Z
?SetLeafRockingState@CSpeedTreeRT@@QAEX_N@Z
?GetFrondMaterial@CSpeedTreeRT@@QBEPBMXZ
?GetLeafMaterial@CSpeedTreeRT@@QBEPBMXZ
?GetBranchMaterial@CSpeedTreeRT@@QBEPBMXZ
?SetLeafLightingMethod@CSpeedTreeRT@@QAEXW4ELightingMethod@1@@Z
?SetBranchLightingMethod@CSpeedTreeRT@@QAEXW4ELightingMethod@1@@Z
?SetTreePosition@CSpeedTreeRT@@QAEXMMM@Z
?GetTreePosition@CSpeedTreeRT@@QBEPBMXZ
?SetTreeSize@CSpeedTreeRT@@QAEXMM@Z
?LoadTree@CSpeedTreeRT@@QAE_NPBEI@Z
?LoadTree@CSpeedTreeRT@@QAE_NPBD@Z
?MakeInstance@CSpeedTreeRT@@QAEPAV1@XZ
?Compute@CSpeedTreeRT@@QAE_NPBMI_N@Z
??3CSpeedTreeRT@@SAXPAX@Z
??2CSpeedTreeRT@@SAPAXI@Z
??1CSpeedTreeRT@@QAE@XZ
??0CSpeedTreeRT@@QAE@XZ
??1STextures@CSpeedTreeRT@@QAE@XZ
??0STextures@CSpeedTreeRT@@QAE@XZ
??1SGeometry@CSpeedTreeRT@@QAE@XZ
??0SGeometry@CSpeedTreeRT@@QAE@XZ
DINPUT8.dll DirectInput8Create
WS2_32.dll gethostbyname
__WSAFDIsSet
closesocket
connect
ioctlsocket
recv
setsockopt
socket
select
WSAIoctl
WSAStartup
WSACleanup
send
WSAGetLastError
inet_addr
htons
DDRAW.dll DirectDrawCreate
SHELL32.dll SHGetSpecialFolderPathA
ShellExecuteA
ShellExecuteW
OLEAUT32.dll SysFreeString
VariantClear

Delayed Imports

AmdPowerXpressRequestHighPerformance

Ordinal 1
Address 0x14862b8

NvOptimusEnablement

Ordinal 2
Address 0x14862b4

initPrototype

Ordinal 3
Address 0x69e140

initRootLibCythonizer

Ordinal 4
Address 0x69f800

initSkillColorWindow

Ordinal 5
Address 0x1200340

initacceptguildwardialog

Ordinal 6
Address 0x106fb90

initatlaswindow

Ordinal 7
Address 0x1073370

initattachstonedialog

Ordinal 8
Address 0x1074330

initauctionwindow

Ordinal 9
Address 0x1076330

initauctionwindow_listpage

Ordinal 10
Address 0x1077e80

initauctionwindow_registerpage

Ordinal 11
Address 0x107a2f0

initauctionwindow_uniqueauctionpage

Ordinal 12
Address 0x107bdc0

initbattlepasswindow

Ordinal 13
Address 0x107cd30

initbeltinventorywindow

Ordinal 14
Address 0x1086910

initbuildguildbuildingwindow

Ordinal 15
Address 0x1088660

initchangegradenamedialog

Ordinal 16
Address 0x108e760

initchangelookwindow

Ordinal 17
Address 0x1090050

initchangepassworddialog

Ordinal 18
Address 0x1092200

initcharacterwindow

Ordinal 19
Address 0x10957f0

initcolorInfo

Ordinal 20
Address 0x35ac30

initcombatzonewindow

Ordinal 21
Address 0x10b3b10

initcomponent

Ordinal 22
Address 0x3676c0

initconnectingdialog

Ordinal 23
Address 0x10bc360

initconsoleModule

Ordinal 24
Address 0x393d10

initconstInfo

Ordinal 25
Address 0x3a5170

initcostumewindow

Ordinal 26
Address 0x10bd9e0

initcreatecharacterwindow

Ordinal 27
Address 0x10c0200

initcreatecharacterwindow2

Ordinal 28
Address 0x10c9b70

initcreatecharacterwindow3

Ordinal 29
Address 0x10d3270

initcuberesultwindow

Ordinal 30
Address 0x10d7570

initcubewindow

Ordinal 31
Address 0x10d91d0

initdailygift

Ordinal 32
Address 0x3b4aa0

initdebugInfo

Ordinal 33
Address 0x3b60a0

initdeclareguildwardialog

Ordinal 34
Address 0x10ddda0

initdicesystem

Ordinal 35
Address 0x10e1ae0

initdragon_soul_refine_settings

Ordinal 36
Address 0x3b6cc0

initdragonsoulrefinewindow2

Ordinal 37
Address 0x10e4bc0

initdragonsoulwindow2

Ordinal 38
Address 0x10e7f20

initdungeoninfowindow

Ordinal 39
Address 0x10ee280

initdungeonrankingwindow

Ordinal 40
Address 0x10f3ce0

initeffectcolor

Ordinal 41
Address 0x10f7f80

initemotion

Ordinal 42
Address 0x3baa80

initenergybar2

Ordinal 43
Address 0x10faac0

initequipmentdialog

Ordinal 44
Address 0x10fc070

initexception

Ordinal 45
Address 0x3cefd0

initexchangedialog

Ordinal 46
Address 0x10fe2a0

initexpandedtaskbar2

Ordinal 47
Address 0x1100ad0

initfishingwindow

Ordinal 48
Address 0x1101e90

initgame

Ordinal 49
Address 0x474a40

initgameoptiondialog

Ordinal 50
Address 0x11061a0

initgameoptiondialog_formobile

Ordinal 51
Address 0x11167b0

initgamewindow

Ordinal 52
Address 0x1122940

initguildwarkillcounter

Ordinal 53
Address 0x48c230

initguildwindow

Ordinal 54
Address 0x11261f0

initguildwindow_baseinfopage

Ordinal 55
Address 0x1128d00

initguildwindow_boardpage

Ordinal 56
Address 0x112eb10

initguildwindow_gradepage

Ordinal 57
Address 0x11302f0

initguildwindow_guildinfopage

Ordinal 58
Address 0x1131e20

initguildwindow_guildinfopage_eu

Ordinal 59
Address 0x1139090

initguildwindow_guildinfopage_jp

Ordinal 60
Address 0x11408c0

initguildwindow_guildskillpage

Ordinal 61
Address 0x1148330

initguildwindow_memberpage

Ordinal 62
Address 0x114b860

inithelpwindow

Ordinal 63
Address 0x114d460

inithelpwindow2

Ordinal 64
Address 0x1158e20

initigshop

Ordinal 65
Address 0x545fa0

initigshop_lang

Ordinal 66
Address 0x54fc70

initimekor

Ordinal 67
Address 0x1162aa0

initinputdialog

Ordinal 68
Address 0x1163770

initinputdialogwithdescription

Ordinal 69
Address 0x1164e20

initinputdialogwithdescription2

Ordinal 70
Address 0x11666b0

initinterfaceModule

Ordinal 71
Address 0x5aeaf0

initintroCreate

Ordinal 72
Address 0x5d1070

initintroEmpire

Ordinal 73
Address 0x5d8ac0

initintroLoading

Ordinal 74
Address 0x5eae40

initintroLogin

Ordinal 75
Address 0x6067b0

initintroLogo

Ordinal 76
Address 0x60afc0

initintroSelect

Ordinal 77
Address 0x6248b0

initinventorywindow

Ordinal 78
Address 0x1168810

initinventorywindow2

Ordinal 79
Address 0x116d370

initloadingwindow

Ordinal 80
Address 0x1173420

initloadingwindow2

Ordinal 81
Address 0x1174cb0

initlocaleInfo

Ordinal 82
Address 0x643630

initloginwindow

Ordinal 83
Address 0x1176ca0

initloginwindow2

Ordinal 84
Address 0x117e5c0

initloginwindow3

Ordinal 85
Address 0x11896b0

initmallwindow

Ordinal 86
Address 0x11939b0

initmarklistwindow

Ordinal 87
Address 0x1194f00

initmessengerwindow

Ordinal 88
Address 0x11969a0

initminigamedialog

Ordinal 89
Address 0x11997c0

initminigamefisheventwaitingpage

Ordinal 90
Address 0x119aad0

initminigamefishgamepage

Ordinal 91
Address 0x119de10

initminigamerumigamepage

Ordinal 92
Address 0x11a1e30

initminigamerumiwaitingpage

Ordinal 93
Address 0x11a96c0

initminigamewindow

Ordinal 94
Address 0x11ac270

initminigamewindow_bk

Ordinal 95
Address 0x11ad010

initminimap

Ordinal 96
Address 0x11adfa0

initmoneyinputdialog

Ordinal 97
Address 0x11b06c0

initmouseModule

Ordinal 98
Address 0x66a870

initmousebuttonwindow

Ordinal 99
Address 0x11b1d40

initmusicInfo

Ordinal 100
Address 0x66d2d0

initmusiclistwindow

Ordinal 101
Address 0x11b3740

initnetworkModule

Ordinal 102
Address 0x676100

initofflineshop_bankdialog

Ordinal 103
Address 0x11be990

initofflineshopadminpanel

Ordinal 104
Address 0x11b51c0

initofflineshopbuilder

Ordinal 105
Address 0x11b7890

initofflineshopchangetimedialog

Ordinal 106
Address 0x11b92c0

initofflineshopdialog

Ordinal 107
Address 0x11baf80

initofflineshopinputdialog

Ordinal 108
Address 0x11bc790

initpartymemberinfoboard

Ordinal 109
Address 0x11c05c0

initpassworddialog

Ordinal 110
Address 0x11c24f0

initpassworddialog2

Ordinal 111
Address 0x11c4080

initpickmoneydialog

Ordinal 112
Address 0x11c6680

initplayerSettingModule

Ordinal 113
Address 0x699750

initpopupdialog

Ordinal 114
Address 0x11c7ec0

initprivateshopbuilder

Ordinal 115
Address 0x11c9550

initquestdialog

Ordinal 116
Address 0x11cb0e0

initquestiondialog

Ordinal 117
Address 0x11cbe40

initquestiondialog2

Ordinal 118
Address 0x11cd710

initquestiondialog_dungeon_info

Ordinal 119
Address 0x11cf210

initrefinedialog

Ordinal 120
Address 0x11d0c90

initrestartdialog

Ordinal 121
Address 0x11d2a40

initrightmousebuttonwindow

Ordinal 122
Address 0x11d4060

initsafeboxwindow

Ordinal 123
Address 0x11d59d0

initselectcharacterwindow

Ordinal 124
Address 0x11d75f0

initselectcharacterwindow2

Ordinal 125
Address 0x11e06e0

initselectcharacterwindow3

Ordinal 126
Address 0x11e7ef0

initselectempirewindow

Ordinal 127
Address 0x11ec600

initselectempirewindow2

Ordinal 128
Address 0x11f22e0

initselectempirewindow3

Ordinal 129
Address 0x11f7b70

initselectitemwindow

Ordinal 130
Address 0x11f96d0

initserverCommandParser

Ordinal 131
Address 0x6a6860

initserverInfo

Ordinal 132
Address 0x6a7aa0

initshopdialog

Ordinal 133
Address 0x11fafb0

initshopdialog2

Ordinal 134
Address 0x11fe210

initskillpointresetdialog

Ordinal 135
Address 0x1206c30

initskybox

Ordinal 136
Address 0x6b65b0

initspecularcolor

Ordinal 137
Address 0x12082a0

initstatusupwindow

Ordinal 138
Address 0x6b7e40

initstringCommander

Ordinal 139
Address 0x6c0c80

initsystem

Ordinal 140
Address 0x6cb890

initsystemdialog

Ordinal 141
Address 0x120b5e0

initsystemdialog2

Ordinal 142
Address 0x120e380

initsystemdialog_formall

Ordinal 143
Address 0x1211a00

initsystemdialog_forportal

Ordinal 144
Address 0x1214c10

initsystemoptiondialog

Ordinal 145
Address 0x1217a30

inittargetTest

Ordinal 146
Address 0x6dcd30

inittaskbar

Ordinal 147
Address 0x1222130

inittaskbar2

Ordinal 148
Address 0x122ac70

inittaskbar_easter2

Ordinal 149
Address 0x1233810

inittaskbar_valentine2

Ordinal 150
Address 0x123c2e0

inittest_affect

Ordinal 151
Address 0x6df9b0

inittitle

Ordinal 152
Address 0x6f2df0

inittitle_system

Ordinal 153
Address 0x729150

initui

Ordinal 154
Address 0x826a40

inituiAffectShower

Ordinal 155
Address 0x85e460

inituiAttachMetin

Ordinal 156
Address 0x8719d0

inituiAuction

Ordinal 157
Address 0x879750

inituiAutoban

Ordinal 158
Address 0x880460

inituiBattlePass

Ordinal 159
Address 0x8b78f0

inituiCandidate

Ordinal 160
Address 0x8c3790

inituiCharacter

Ordinal 161
Address 0x91eb50

inituiChat

Ordinal 162
Address 0x968060

inituiCommon

Ordinal 163
Address 0x988c10

inituiCube

Ordinal 164
Address 0x9a7ef0

inituiDice

Ordinal 165
Address 0x9b7ce0

inituiDragonSoul

Ordinal 166
Address 0x9fc320

inituiDungeonInfo

Ordinal 167
Address 0xa1aeb0

inituiEquipmentDialog

Ordinal 168
Address 0xa76ad0

inituiEx

Ordinal 169
Address 0xa7aa60

inituiExchange

Ordinal 170
Address 0xa8d520

inituiGameButton

Ordinal 171
Address 0xa9ed30

inituiGameOption

Ordinal 172
Address 0xaba820

inituiGuild

Ordinal 173
Address 0xb48ab0

inituiHelp

Ordinal 174
Address 0xb5bf50

inituiInventory

Ordinal 175
Address 0xba15b0

inituiMapNameShower

Ordinal 176
Address 0xbb2120

inituiMessenger

Ordinal 177
Address 0xbd9f90

inituiMiniGame

Ordinal 178
Address 0xbe9a40

inituiMiniGameFishEvent

Ordinal 179
Address 0xc110f0

inituiMiniMap

Ordinal 180
Address 0xc2d570

inituiOfflineShop

Ordinal 181
Address 0xc753d0

inituiOfflineShopBuilder

Ordinal 182
Address 0xc90390

inituiOption

Ordinal 183
Address 0xca45e0

inituiParty

Ordinal 184
Address 0xcce990

inituiPhaseCurtain

Ordinal 185
Address 0xcd75d0

inituiPickMoney

Ordinal 186
Address 0xcdcf30

inituiPlayerGauge

Ordinal 187
Address 0xce08a0

inituiPointReset

Ordinal 188
Address 0xce4710

inituiPrivateShopBuilder

Ordinal 189
Address 0xcfb960

inituiPrivateShopSearch

Ordinal 190
Address 0xd241c0

inituiQuest

Ordinal 191
Address 0xd4e440

inituiRefine

Ordinal 192
Address 0xd68260

inituiRestart

Ordinal 193
Address 0xd6e820

inituiSafebox

Ordinal 194
Address 0xd909e0

inituiScriptLocale

Ordinal 195
Address 0xd96580

inituiSelectMusic

Ordinal 196
Address 0xda7a20

inituiShop

Ordinal 197
Address 0xddaa70

inituiSkillColor

Ordinal 198
Address 0xe00600

inituiSystem

Ordinal 199
Address 0xe72b10

inituiSystemOption

Ordinal 200
Address 0xe89590

inituiTarget

Ordinal 201
Address 0xeab070

inituiTaskBar

Ordinal 202
Address 0xee3930

inituiTip

Ordinal 203
Address 0xef5820

inituiToolTip

Ordinal 204
Address 0xf854b0

inituiTransmutation

Ordinal 205
Address 0xfa2e80

inituiUploadMark

Ordinal 206
Address 0xfb4bf0

inituiVoiceChatConfig

Ordinal 207
Address 0xfcd3e0

inituiWeb

Ordinal 208
Address 0xfee570

inituiWhisper

Ordinal 209
Address 0x1008060

initui_wrapper

Ordinal 210
Address 0x10609a0

inituicards

Ordinal 211
Address 0x8d8120

inituichangelanguage

Ordinal 212
Address 0x8e0da0

inituieffectcolor

Ordinal 213
Address 0xa2d050

inituiemojis

Ordinal 214
Address 0xa5d610

inituifishbot

Ordinal 215
Address 0xa99210

inituiselectitem

Ordinal 216
Address 0xd9e370

inituispecularcolor

Ordinal 217
Address 0xe14fe0

inituistatusup

Ordinal 218
Address 0xe1c290

inituiswitchbot

Ordinal 219
Address 0xe656f0

inituiwarboard

Ordinal 220
Address 0xfe69f0

initutils

Ordinal 221
Address 0x106ec00

initwebwindow

Ordinal 222
Address 0x1244480

initwebwindow2

Ordinal 223
Address 0x12459e0

initwhisperdialog

Ordinal 224
Address 0x1247160

1

Type RT_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0x8ac
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.64429
MD5 09dde700bf36032c640e7bc21de173ec
SHA1 a2c02db997dcf84052a2a1d86beaa7aa6ffdc209
SHA256 ec6470df935e6aff1f9d96ee6fc4a53b2cb93bec08ba13e3ef13212c5ca70f57
SHA3 a43414e8dc56e93dceab9b1bba0358710ede9abf2b856433b3cf0bb0a9ca63d2

2

Type RT_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0x8ac
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.90617
MD5 3850a8b00806560f1ee065acb4ccee89
SHA1 4b2692436a024f213c667d54e0882634afd9fec0
SHA256 ac8c07592b23a9ae3fd2cc873fce0862d441476299616cbc3659bf2dc3897a5a
SHA3 ddc87cef067ea17828f1b780810bb745ff464cb642397992929131588dcc6117

3

Type RT_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0x8ac
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.66823
MD5 2ca7d3336aecb826890456dfa4f0c1aa
SHA1 0972a409430b952e990341081f4fe71783e607df
SHA256 0d76fd6fed75bbde37ffb0fed3d172fc1c5c895193ea69ea6ff98e84f318c8ef
SHA3 dc566408b8e5aea648b59675740306469089375a87f7ed332a8ccfa6dca8cd73

4

Type RT_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0x8ac
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.40205
MD5 c6eb792faa03cbabbfa65823607ecc79
SHA1 17ddb3be3d37eefddfd9622ce31bace68111af4d
SHA256 e7d033b103afdb959043f835daf34447dc29924e05fe7163141a2ae72f01c9ac
SHA3 9a085f62e4867bab47bed9b6ee204571f474b2f27537b459ec52f344a594c0ae

5

Type RT_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0x8ac
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.06965
MD5 c6dc93b1413418a2eec174b1a70a9b61
SHA1 7cfe41da5d8edd585d6e75802e29dd279b7ac887
SHA256 9e5c586398ed5d40ccfa115bf34b6daaeb97e9fc203ff2e8b702b0d4ec53ab2b
SHA3 1f37e4d25f8cabd6d3d9261e921ad33de9210ebfa6a5661d00933ea25f5bced3

6

Type RT_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0x8ac
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.69313
MD5 04b7b781beb8118c6c68f195af5ceddb
SHA1 1523c2c3a4fb3541be37eb66a80bca379008d5e4
SHA256 002638b010d2e6b6211ea54cc94fefba405074268e2306fef974696f67b47b10
SHA3 08d125432de27676452f9b0199183199356549b9b77444412e9bfa9946e2093c

7

Type RT_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0x8ac
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.20898
MD5 18b4bdf3a89b8f516f1100cd032adc80
SHA1 895f748221f14480a88a4618d104fd8b73f2444c
SHA256 37e373bf054c1af584d07598179d3ca716c756de7aa57ae75dc467b89f8906a3
SHA3 8fb9aa88df6bacf757fafea78fb4ec380f081b22e282cd74b1a437d57d04941a

8

Type RT_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0xcac
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.72289
MD5 68ba05131d6605a5373085e717e6053f
SHA1 a5c2dd5042ad472b0fd78bfdaa06e7af7cadb416
SHA256 15923990bc24a30fd6cc2e3214917586a7627ec2c8d31e2290e2b56d68f5507a
SHA3 38a15519d5703838d83c6bd6701ae91203dd2aebd36b42e210e724a9beb1c02a

9

Type RT_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0xcac
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.72289
MD5 7629057a3044634951fd32959cce3712
SHA1 4c94dc13ff0291be738d69588f9df240906cd4ab
SHA256 012bde93a7152e3f9bc2a6f75b503c213e8539b1a927330c11cfa4d5edbcdef3
SHA3 a417cbd8cbb7c8baa1bd88758d0b3ff774d0664f970b25eeb6f1175594eb5be0

10

Type RT_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0x8ac
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.00967
MD5 697baaed7ed43035912f78e0de4189dd
SHA1 c8f99f5a6bf3ac2eb6bca7d8e3b8419c783dc693
SHA256 2d2461a9c14b287a5dcdddcf261e5626cf09949666091024a63bad5ce2ca156c
SHA3 913c8bbe15ebfcb534ed642bacbbbc414275485444a24bf76243a9c8835ba97a

11

Type RT_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0xcac
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 1.21178
MD5 f899f111c907c302c4b7254e129f7dac
SHA1 09791cc9d9174fbbe28f0c810f5c35c000da5e57
SHA256 5d4bf6cb23a589afbc439cc9f5ae2db44295de15a390e145d0082b6e3475653c
SHA3 5f9cc7ed1fb6c3b6f09f717b28412f2cc703e1c03888a2deee35cf5419ad482c

12

Type RT_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0xcac
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 1.19485
MD5 137e009adf8fab4589a5879f78196183
SHA1 fb577678d8825ddc3777a0bde011402ccb026441
SHA256 0e9f8eeb59f26645b809eab3fdbd7d72a80124f317706a47f3ac48dfb58fb4d7
SHA3 64ad08fa84b843d473e91ef4bf1176e358c07c89ba6490675fd1f57407b8481b

13

Type RT_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0xcac
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 1.07083
MD5 239c05850ba86ccfbee74a1687ed589d
SHA1 ea19eac760adb0549309d6e9dd086cd1f5f0df0b
SHA256 5137c19c08712ef68b76eeaad97723a4da84d9f91cb224ab48f30a5fc4c0c56d
SHA3 4459cd7f603f3cad8efebe19d5da8443f58bbe3c2a7f689653bdf340488c6b16

14

Type RT_ICON
Language Korean - Korea
Codepage UNKNOWN
Size 0x468
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.90893
MD5 8d07d3204e568837f5db91cf99af05c0
SHA1 2b5401932b0657dae4f7356fccf2c002a91d44f5
SHA256 f5fd4f1e4cbc961e66795df62590289f61b97fc3b09e3785913f91caa493fabe
SHA3 1bcd02687630b942b337d2d30714499cbd4f191f29a4d9a44130118966333d2f

15

Type RT_ICON
Language Korean - Korea
Codepage UNKNOWN
Size 0x988
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.07722
MD5 d958ec4067931de0f48d8356b89546c9
SHA1 921fe07d6f234bd3d5e75f7201126419bd597686
SHA256 e45a54ec533d73b8f0b8743f5c8209390a2e45a8d18a51c29ffa42beb3999f59
SHA3 db76084585d2695635ad0cceb7730297c743894e80c3d9738c4043e2efeffae8

16

Type RT_ICON
Language Korean - Korea
Codepage UNKNOWN
Size 0x10a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.14061
MD5 bc2ab82324a9ac0a96ed99396761d4ef
SHA1 c33bf6e6c96d58174d384d0deed649888f7d76a5
SHA256 f721a83e2850c95cff10a172c316457ac5184b07d6eb5109751ab9400992be52
SHA3 662de45f0322cf22684a466c3d0727dcbea853ee21966c1f34a8beb8c556a83a

17

Type RT_ICON
Language Korean - Korea
Codepage UNKNOWN
Size 0x25a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.16431
MD5 228fc8f82c8118b40190337515870a3c
SHA1 d76eb342b9e0bc4351471851c97375f63fee164d
SHA256 94ec46f271c7c891dc2eb3c75b329ad203498e066b28913629e677d22cab271a
SHA3 3cbce4a32616308bf7a5d487c5dea1b3b54a2023f870583481420678a24cfcc1

18

Type RT_ICON
Language Korean - Korea
Codepage UNKNOWN
Size 0x4228
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.16434
MD5 bfee7ca502a97eaa0eb3e4589de748ad
SHA1 e864bf4c4917f7de73cfa54aab692e0302e4e49e
SHA256 bc6a4b4a0cd572b8bb3ef8ba9062fe78dd222fe350002a96297673d4e7e8e3e8
SHA3 d24490afb30e86dc1252f6e57788ee235a43f01318c4546ba7b8aafebcd947eb

19

Type RT_ICON
Language Korean - Korea
Codepage UNKNOWN
Size 0x5488
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.1537
MD5 d2fa65e8c79927521036c009a248e501
SHA1 9fb642e473bd5da4483961b5a7b46be9d274d0a3
SHA256 3a0fbd9c7fe79a4a10aa6d31181ff37b4516d10b95ae660347d36b1553147c77
SHA3 c59d9fa4c5241709f6af40e8b5622591e7139e5e27f111602a1eb659f30423d8

20

Type RT_ICON
Language Korean - Korea
Codepage UNKNOWN
Size 0x94a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.17209
MD5 c9a44e5311f314b29652a31be470ea5c
SHA1 7aaa64cde593c540b543148ccf52e40ea94d8843
SHA256 dff90cc558ab0177c0dc64941ba9b666dfc9c0012eb7cf9427fca08efa93eb6c
SHA3 bf0a613b58f7865da9cb705f0352839f2c70a7ad238d1081cfc21de7a2cf2540

21

Type RT_ICON
Language Korean - Korea
Codepage UNKNOWN
Size 0x10828
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.17393
MD5 1623051e308811aa85b6065f4ef0515c
SHA1 7c737ac92687725062585bc64debf22316c165b3
SHA256 44041d1ce510ca59e3989d090f1d9afcec38a33b5ff780c74c5034084a474d83
SHA3 b00259ce4d9ffa71fdbdfe15bbb8c8eb2ed48573aa74cefa062a545d97d1ec30

22

Type RT_ICON
Language Korean - Korea
Codepage UNKNOWN
Size 0x42028
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.17586
MD5 fe1b0200e6d8bfdaba1aca481f4c42e0
SHA1 a9a8e98f78d1374151a74851543e558e1e829b5d
SHA256 7c10722cfb613076744819459cc8ac679b9aabfe571a765793a203cde8f12ce9
SHA3 6af4b5e1f419a70fad9624e36466e30ebe908a7e8ac5694f9a3da646b8f83933

143

Type RT_DIALOG
Language Korean - Korea
Codepage UNKNOWN
Size 0xc0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.82917
MD5 00df0c460fcb357bb12c4209e50f2b76
SHA1 c5b59beb16261de79ea0552012ffe724024ccacc
SHA256 b09c41c7a28431b34d71639d036c28f179829618a46cc4f7bcdd442a069b62f5
SHA3 0708535a15338d99f2c6652bda4886d98d03d55b2a6e0e0c42db988e20860e16

1 (#2)

Type RT_STRING
Language English - United States
Codepage UNKNOWN
Size 0x130
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.33944
MD5 015f319a81f4df2bfdaea8831fdcc3e6
SHA1 8951089422613d2f4e30ee77eba0a3f513097fe6
SHA256 42c2821eb046091676c8b264a2adf07fab9fc7a98fee4d52759b5a8ec7cb604d
SHA3 aae81d0c8a52e9e1e3fc2c1b32fddd90f6b63b251c2f95c72de934649e4987c8

1 (#3)

Type RT_STRING
Language Japanese - Japan
Codepage UNKNOWN
Size 0x24
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 0.545897
MD5 e420226786af946de8ddccfb427fdbf3
SHA1 96e78a8646d3896b29660f30cfe532ca2abd3054
SHA256 9276d16b289adf6ba1f25eda1a813ce313ac9e35da6c85c7ddcc5effbd940524
SHA3 924ac449f346341ed89debf9f0fac19b083aaef6fa424cd12f25a26395b4310b

1 (#4)

Type RT_STRING
Language Korean - Korea
Codepage UNKNOWN
Size 0x18c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.25751
MD5 3d38fe4b58adec32e3eddd0c22935296
SHA1 8dc99920abe4a8e7ca87b4076ef9f7af1d8554d6
SHA256 bfe18c7248cea428ada694c91cbdf74e27b3a2b7ac9df84fc2031221d3c8da28
SHA3 ca7481b613dc00bb3a12ff3014ac50c438c77922947c877e37fe9c4064881e27

1 (#5)

Type RT_STRING
Language Chinese - PRC
Codepage UNKNOWN
Size 0x74
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.67565
MD5 ae3b65004484114a917b3083caec89b9
SHA1 08ae1fee556cb1826f161364eef9be7f35d4a6df
SHA256 694e561f3acb8112ac8f229cf3d5ca714a87fa1d2f39653bc6651f7e1aab09ca
SHA3 10820e1b65597c9f72ec98d50085804e668a981b2cf6294c380316656174c223

102

Type RT_GROUP_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.0815
Detected Filetype Cursor file
MD5 9517769cc556aaa56f46868028d2b6cb
SHA1 9331c2b67f11bd05dcb749ae38c0039b9b095feb
SHA256 1c17dcf9c496c3aa8a647ffeccfd45ae14014650fbb31e21e51e1a6a2a5a1975
SHA3 58c8019a3a3f41203147d89ba690e1ff1f7b291b7765da8933f400a66e912b8a
Preview

104

Type RT_GROUP_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.21924
Detected Filetype Cursor file
MD5 c9b5527483906327ed558daa83abbc6c
SHA1 9a2531a3ad1dceee45d8582220a2c92394d86c21
SHA256 a9b61e539218e0c1d79434e6aa6a2fa0869cabce87a6358030a7c916746962e5
SHA3 be2e0683b000b2419123130ce4585401954930f6c5cbba1101b2cf6a8220b4be
Preview

105

Type RT_GROUP_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.11924
Detected Filetype Cursor file
MD5 1cc00ef6663c1712b1e6b115ffd7c56d
SHA1 8a59115911da418a161d174b222e57ab7145e9f9
SHA256 40f26942498dc26b8e8a2faf835cc372def4e95746564f362e2a89bce530b7e5
SHA3 f2bbfcab1a058e0a9d0a31303fb71b0a7cf763658fdde36e24afa1f2ee29b6dd
Preview

106

Type RT_GROUP_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.21924
Detected Filetype Cursor file
MD5 b4090856debd42d38bb1b71cf3a1cb16
SHA1 883afe044a75a2cba22466b7863ea2e0651dc495
SHA256 49551d8ebafb42bafa4037ccbbc2df8f09742e9e27d1533c7a25e5f879e3ce29
SHA3 7b3597cf9590d482377c1549c2c190f5aec0bea6689da69a5ef79f1f5a065237
Preview

107

Type RT_GROUP_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.21924
Detected Filetype Cursor file
MD5 358b1f1ad9a64b236fe59a0a42d46775
SHA1 56a546a4a636c18f9be7d352e251f51d6badf4b9
SHA256 19eb59bb5280fbc5b205993e9d1c4455442141879ad1436f76c594759a0ca28a
SHA3 a0f5492fe1d478da4a663a4c5b5c58b5f06e0ef5f26417a6e52ca0b284a175cb
Preview

108

Type RT_GROUP_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.21924
Detected Filetype Cursor file
MD5 6baa43b6179dc6403946b8595838547e
SHA1 d9261543680456ee7938d7c0f98be27cc9a2956d
SHA256 e7fee7e272ea78849032212f604da7a2f54e5f7f39b3abb7948158e88422c8d8
SHA3 55ef0740705f0969f4b063570b145478a8ea4d74ab463614479af16fefee6fab
Preview

109

Type RT_GROUP_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.21924
Detected Filetype Cursor file
MD5 6799e05fc293c7e4d71538eb645f0d31
SHA1 2e3d342e920ac9b6990d4198e1db720ec515e863
SHA256 d47650adad2e15cc954de6397de32203032a0208c6b225e4e07dd1966ca47dd3
SHA3 6dc0f6b8f39a6caf2483fbf24355c9a61307e6f9765e4b60e732ff54f782bac7
Preview

110

Type RT_GROUP_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.31924
Detected Filetype Cursor file
MD5 45161e1940dba2c27e73bc3be818cb70
SHA1 19b057dd6e3039b8311b19ac53617b62059aea80
SHA256 473ab89b3563d1532907083089fcd19a9f6a003bacdda5a1cbbbb3713e51b770
SHA3 e806841e749b0bf9ac43c729efe02db486b011987081b4ca40a26fdd0a116d0f
Preview

111

Type RT_GROUP_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.31924
Detected Filetype Cursor file
MD5 6e9b8fe541c216a17277cf7f33d8295f
SHA1 6d7d9908448089af33f3753df9c6d532ab610df3
SHA256 a43410f6e73877619746d9384f5a7c520c2f2571ac083216ceb46f64dec5afea
SHA3 d16ac25e350b75a6bde87e156cf4a10f59ec5ea9fa4ee5d640c45f3968199730
Preview

139

Type RT_GROUP_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.21924
Detected Filetype Cursor file
MD5 3adbc9b0e6a91b823d917c83916c52c7
SHA1 5074fb81d7b31c7f2b6da15366f512943bbdc285
SHA256 4f5d280561059f90056baad84289086bd9df17896a66ae88a43cbe2cd8d0758f
SHA3 6b6743d6704d4f50525fa591d4752a58451d10569e61c831dde839bcda4f8957
Preview

140

Type RT_GROUP_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.31924
Detected Filetype Cursor file
MD5 176eef70905805e53fd8aec1683b9260
SHA1 bdca564e4311b88f8e78b78145c04d51ec8eee19
SHA256 6defc603e6f95d187c6d2b4e3768cce2dfebcba99b63df5bcaeca9071ef9f2da
SHA3 29d1b850bbb62154fb39ab4c7d333978c61e98c887947f6ce5000b08f7be847c
Preview

141

Type RT_GROUP_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.21924
Detected Filetype Cursor file
MD5 f00e802c6e0eb7c0c8dc07d78ad6a13f
SHA1 3d9dce5917d9f6aff65ddd73bc46ea4dd6e3cb1c
SHA256 edb1271bc926bb2bcffa1b4f69b19f6309bccf3bfb802415420d3a7cc7c005bd
SHA3 304b0490698328014fb88da6431bf18ae222eca5ee2339f02e4fac24c51a6d43
Preview

142

Type RT_GROUP_CURSOR
Language Korean - Korea
Codepage UNKNOWN
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.31924
Detected Filetype Cursor file
MD5 a9c02c6b32a6da0f1a359027b26f0e78
SHA1 f0f0b713f49e4d9025b8a0e77fc19960d8a1a063
SHA256 cc1ae55319611b7a2ddba3fedaf956620f28367b72bc736068a8a4c591e6fdb8
SHA3 41978f73c3e19f360380b8cfd9fe09b2a428ffddf826bd49926fd9aeef904f8e
Preview

100

Type RT_GROUP_ICON
Language Korean - Korea
Codepage UNKNOWN
Size 0x84
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.08219
Detected Filetype Icon file
MD5 a624e7bb2960c6e2f22d52e65edb1a1a
SHA1 0aa31812bd2bd7f2d3bd35e3727c77d03cd48f03
SHA256 13455ad1778aef796794767847ed8b9da186e0d443587fdfb9f9263dbacf3ab2
SHA3 0730aaf14ef53336af26b2140636de621234ed5130f2cc2dbcf6b9fbc2483aea

1 (#6)

Type RT_VERSION
Language Korean - Korea
Codepage UNKNOWN
Size 0x2ec
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.32602
MD5 988348f528f7766d6e4dd9643e369869
SHA1 fb9bacaa8adf5fe59868383c5a8acbbbdce11114
SHA256 cc0b16735418d27972f4d487f5a21a77426ca84285d42df6d37c688bd6193689
SHA3 29426ab3165ad8fe6c1c04cfbd4682ad2fc39bb7fa52d3678489c5391df6bee8

1 (#7)

Type RT_MANIFEST
Language English - United States
Codepage UNKNOWN
Size 0x188
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.89623
MD5 b8e76ddb52d0eb41e972599ff3ca431b
SHA1 fc12d7ad112ddabfcd8f82f290d84e637a4d62f8
SHA256 165c5c883fd4fd36758bcba6baf2faffb77d2f4872ffd5ee918a16f91de5a8a8
SHA3 37f83338b28cb102b1b14f27280ba1aa3fffb17f7bf165cb7b675b7e8eb7cddd

String Table contents

Metin 2
's
IDS_WARN_BAD_DRIVER
IDS_WARN_NO_TNL
Cannot read %s file
File '%s' is not latest version. Please launch patcher.
Please run patcher.
's
메틴2
그래픽 드라이버를 업데이트 하시기 바랍니다.
사용하고 계신 시스템의 그래픽카드는 3D TnL 하드웨어 가속이 지원되지 않아
게임이 느리게 실행되거나 제대로 실행되지 않을수 있습니다.
%s 파일을 읽을 수 없습니다.
'%s' 파일은 최신버전이 아닙니다. 런처를 다시 실행해주세요.
클라이언트는 패처를 사용해서 실행되어야 합니다.
's
希望您能更新显卡驱动。
您的显卡不支持3D TnL 硬件加速
游戏将无法正常运行。

Version Info

Signature 0xfeef04bd
StructVersion 0x10000
FileVersion 1.0.40999.0
ProductVersion 1.0.0.1
FileFlags (EMPTY)
FileOs VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
FileType VFT_APP
Language UNKNOWN
CompanyName Ymir Entertainment
FileDescription Metin2Client
FileVersion (#2) 1.0.40999.1
InternalName Metin2Client
LegalCopyright Copyright (C) 2011
OriginalFilename Metin2Client.exe
ProductName Metin2Client
ProductVersion (#2) 1, 0, 0, 1
Resource LangID Korean - Korea

TLS Callbacks

StartAddressOfRawData 0x186c7a8
EndAddressOfRawData 0x186c851
AddressOfIndex 0x1afff8c
AddressOfCallbacks 0x16e5c40
SizeOfZeroFill 0
Characteristics IMAGE_SCN_ALIGN_8BYTES
Callbacks 0x0072FC97
0x0072FBA6

Load Configuration

Size 0xc0
TimeDateStamp 1970-Jan-01 00:00:00
Version 0.0
GlobalFlagsClear (EMPTY)
GlobalFlagsSet (EMPTY)
CriticalSectionDefaultTimeout 0
DeCommitFreeBlockThreshold 0
DeCommitTotalFreeThreshold 0
LockPrefixTable 0
MaximumAllocationSize 0
VirtualMemoryThreshold 0
ProcessAffinityMask 0
ProcessHeapFlags (EMPTY)
CSDVersion 0
Reserved1 0
EditList 0
SecurityCookie 0x1888180
SEHandlerTable 0
SEHandlerCount 0

RICH Header

Errors

Leave a comment

No comments yet.