PUP.Gamehack.YD

Analysis Report

General information

Family Name: PUP.Gamehack.YD
Signature status: No Signature

Known Samples

MD5: 7561064b69b63ea073e122e87441c1ed
SHA1: a76646d9671e2192c3da851f8e97d580ed8fb03a
SHA256: 74F4D1C4EFE43CC8353418605A6B68BF7C6B78212FEF9EE79E1766D1A2226574
File Size: 574.98 KB, 574976 bytes
MD5: 845dcf21caf1fe8f1cacc717a8fcdb15
SHA1: ff502cc4e8ed626f31e50a78f73ee58b10f6a512
SHA256: 55EEB03AF5EE2E400052FC055B1F12A6FABD0E0E52439F8E40882D436F81A221
File Size: 574.98 KB, 574976 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have exports table
  • File doesn't have security information
  • File is .NET application
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Assembly Version
  • 1.7.0.4
  • 1.4.0.6
Comments RPG Developer Bakin Game Launcher
Company Name SmileBoom Co.Ltd.
File Description BAKIN Game Launcher
File Version
  • 1.7.0.4
  • 1.4.0.6
Internal Name bakinplayer_launcher.exe
Legal Copyright Copyright © 2022-2023 SmileBoom Co.Ltd. All Rights Reserved.
Original Filename bakinplayer_launcher.exe
Product Name RPG Developer Bakin
Product Version
  • 1.7.0.4
  • 1.4.0.6

File Traits

  • .NET
  • x86

Block Information

Total Blocks: 28
Potentially Malicious Blocks: 17
Whitelisted Blocks: 10
Unknown Blocks: 1

Visual Map

x ? 0 x x x x x x x 0 x x 0 x x 0 x 0 x 0 x 0 0 x 0 0 x
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Gamehack.YD
  • Gamehack.YDA

Windows API Usage

Category API
User Data Access
  • GetUserDefaultLocaleName
  • GetUserObjectInformation
Anti Debug
  • IsDebuggerPresent
  • NtQuerySystemInformation

Related Posts

Trending

Most Viewed

Loading...