Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

3.7.0.333 37.50%
3.7.0.328 12.50%
3.03.0.199 12.50%
3.03.0.199 12.50%
1.0.0.154 12.50%
1.0.0.152 12.50%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegCreateKeyExA, RegOpenKeyExW, RegQueryInfoKeyW, RegEnumKeyExA, RegQueryValueExW, RegOpenKeyExA, RegQueryValueExA, RegCloseKey, RegSetValueExA
cg.dll
cgCreateProgram, cgGetLastErrorString, cgGetError, cgCreateContext, cgGetProgramString, cgDestroyProgram, cgDestroyContext, cgSetParameterSettingMode
cgd3d9.dll
cgD3D9SetDevice, cgD3D9BindProgram, cgD3D9LoadProgram
cggl.dll
cgGLEnableProfile
d3d9.dll
D3DPERF_BeginEvent, D3DPERF_EndEvent, Direct3DCreate9
d3dx9_39.dll
D3DXCompileShader, D3DXGetShaderConstantTable, D3DXCreateSprite, D3DXVec4Transform, D3DXVec3Project, D3DXCreateFontW, D3DXSaveSurfaceToFileA, D3DXGetImageInfoFromFileInMemory, D3DXLoadSurfaceFromMemory
dbghelp.dll
SymGetTypeInfo, SymSetOptions, MiniDumpWriteDump, SymFunctionTableAccess64, SymFromAddr, SymGetLineFromAddr64, SymSetContext, SymEnumSymbols, StackWalk64, SymCleanup, SymInitialize, SymGetOptions, SymGetModuleBase64
dinput8.dll
DirectInput8Create
fmod_event.dll
_FMOD_Debug_SetLevel@4, _FMOD_Event_GetChannelGroup@8, _FMOD_EventSystem_Create@4
fmodex.dll
FMOD_Channel_Stop, FMOD_Channel_GetMode, FMOD_Channel_SetPosition, FMOD_ChannelGroup_GetChannel, FMOD_Memory_Initialize, FMOD_Memory_GetStats, FMOD_ChannelGroup_GetNumChannels
gdi32.dll
ChoosePixelFormat, CreateBitmap, GetDeviceCaps, SwapBuffers, ExtEscape, SetPixelFormat, CreateICW, GetStockObject, AddFontMemResourceEx, RemoveFontMemResourceEx, DeleteDC, DeleteObject, GetObjectA, CreateDIBSection, CreateCompatibleDC, SelectObject, CreateFontIndirectA, CreateDCA
imm32.dll
ImmIsUIMessageA, ImmGetContext, ImmReleaseContext, ImmAssociateContext, ImmGetOpenStatus, ImmIsUIMessageW, ImmGetVirtualKey, ImmSetCompositionStringW, ImmAssociateContextEx, ImmGetCandidateListW, ImmGetProperty, ImmSetCompositionWindow, ImmSetCandidateWindow, ImmGetCompositionStringW, ImmNotifyIME, ImmSetOpenStatus, ImmSetConversionStatus, ImmGetConversionStatus, ImmGetIMEFileNameA
kernel32.dll
GetFullPathNameA, OpenEventA, GetCommandLineA, WaitForSingleObject, OpenProcess, GetProcessHeap, IsDebuggerPresent, UnhandledExceptionFilter, GetSystemTimeAsFileTime, GetTickCount, GetStartupInfoA, GetExitCodeThread, GetTimeZoneInformation, GetLocaleInfoW, GetVersionExW, SetErrorMode, SuspendThread, InterlockedCompareExchange, ReleaseMutex, CreateMutexA, CreatePipe, HeapFree, HeapCreate, HeapAlloc, Process32Next, GetSystemDirectoryA, InterlockedDecrement, SetProcessAffinityMask, CreateThread, lstrlenA, GetCommandLineW, SetPriorityClass, GetThreadPriority, GetPriorityClass, RtlCaptureContext, IsBadStringPtrW, IsBadStringPtrA, WriteFile, GetVersionExA, Process32First, CreateToolhelp32Snapshot, FormatMessageA, SizeofResource, LockResource, LoadResource, FindResourceA, TerminateProcess, InterlockedExchangeAdd, GetModuleHandleW, SetThreadAffinityMask, GetCurrentThread, GetProcessAffinityMask, lstrlenW, GetModuleHandleA, LocalUnlock, LocalFree, LocalLock, LocalAlloc, GetCurrentProcess, GlobalFree, FoldStringA, FindNextFileA, FindFirstFileA, FindFirstFileExA, FindClose, GetExitCodeProcess, CreateProcessA, SetEvent, CreateEventA, WaitForMultipleObjects, ResetEvent, WideCharToMultiByte, MultiByteToWideChar, OpenSemaphoreA, CreateSemaphoreA, LeaveCriticalSection, EnterCriticalSection, DeleteCriticalSection, InitializeCriticalSection, ReleaseSemaphore, QueryPerformanceCounter, QueryPerformanceFrequency, Sleep, DeleteFileA, CreateDirectoryA, OutputDebugStringA, VirtualQueryEx, SetThreadPriority, TerminateThread, GetEnvironmentVariableA, CopyFileA, GetCurrentProcessId, GetCurrentThreadId, GetModuleFileNameA, GetCurrentDirectoryA, SetUnhandledExceptionFilter, DuplicateHandle, GlobalMemoryStatusEx, GetSystemInfo, FreeLibrary, GlobalUnlock, GlobalLock, GlobalAlloc, LoadLibraryA, GetProcAddress, InterlockedExchange, GetFileAttributesA, GetLastError, CloseHandle, CreateFileA, HeapDestroy
msvcp80.dll
DllMain
msvcr80.dll
DllMain
ole32.dll
CoTaskMemFree, CoCreateInstance, CoSetProxyBlanket, CoUninitialize, CoCreateGuid, CoInitialize
opengl32.dll
glAlphaFunc, glStencilOp, glStencilFunc, glDepthFunc, glDisable, wglMakeCurrent, wglCreateContext, wglGetProcAddress, glPolygonMode, glEnable, glClear, glFrontFace, glCullFace, glColorMask, glDepthMask, glStencilMask, glGetFloatv, glBlendFunc, glGetString, glPixelStorei, glGetTexLevelParameteriv, glGetTexParameteriv, glTexSubImage2D, glGetTexImage, glDeleteTextures, glTexParameterfv, glGetError, wglDeleteContext, glClearStencil, glClearColor, glClearDepth, glDrawElements, glDrawArrays, glLoadMatrixf, glLoadIdentity, glMatrixMode, glFinish, glScissor, glTexParameteri, glTexImage2D, glBindTexture, glGenTextures, glGetIntegerv, glViewport, glDrawBuffer, glFogfv
psapi.dll
GetProcessImageFileNameA, EnumProcesses, GetModuleBaseNameA, EnumProcessModules, GetProcessMemoryInfo
riotlauncher.dll
MaestroGameController_AreProcessesHung, MaestroGameController_SendGameAbandonedMessage, MaestroGameController_SendShutdownMessage, MaestroGameController_SendGameVersionMismatchMessage, MaestroGameController_SendGameConnectedToServerMessage, MaestroGameController_SendChatMessage, MaestroGameController_SetReceiveChatMessageCallback, MaestroGameController_SendGameLaunchedMessage, MaestroGameController_Start, MaestroGameController_SetExitCallback, MaestroGameController_Init, Maestro_Init, Maestro_Remove, MaestroGameController_Remove, MaestroGameController_KillProcesses
shell32.dll
SHCreateDirectoryExA, ShellExecuteA, CommandLineToArgvW
user32.dll
DispatchMessageA, SendInput, DefWindowProcW, PostQuitMessage, FindWindowA, GetWindowThreadProcessId, PostMessageA, GetLastActivePopup, RedrawWindow, MessageBoxA, GetWindowTextA, WinHelpA, EndDialog, SetWindowPlacement, GetMonitorInfoA, UpdateLayeredWindow, DefWindowProcA, LoadCursorA, GetDialogBaseUnits, DialogBoxIndirectParamA, MessageBeep, RegisterClassA, CreateWindowExA, DestroyWindow, GetDC, ReleaseDC, MonitorFromPoint, PeekMessageW, GetMessageW, TranslateMessage, ShowWindow, GetMessageA, PeekMessageA, MessageBoxW, GetKeyboardState, LoadIconA, GetParent, MoveWindow, DrawTextA, GetWindowRect, GetSystemMetrics, SetForegroundWindow, SetWindowPos, SetFocus, SystemParametersInfoA, GetKeyboardLayout, MapVirtualKeyExA, ToAsciiEx, SetTimer, KillTimer, SetRect, SetWindowTextA, ClientToScreen, OpenClipboard, EmptyClipboard, SetClipboardData, CloseClipboard, GetClipboardData, IntersectRect, PtInRect, InflateRect, SetCapture, ReleaseCapture, OffsetRect, DestroyIcon, BeginPaint, DrawIcon, GetWindowLongA, EnumDisplaySettingsA, GetKeyState, GetActiveWindow, SetWindowLongA, EndPaint, GetDlgItem, IsWindow, SendMessageA, GetClassNameA, LoadStringA, EnableMenuItem, GetSystemMenu, CheckDlgButton, ToUnicodeEx, GetWindowInfo, MapVirtualKeyW, GetKeyboardLayoutList, ActivateKeyboardLayout, GetKeyboardLayoutNameA, CreateIconIndirect, SetCursor, DestroyCursor, GetMonitorInfoW, CreateWindowExW, EnumDisplayMonitors, UpdateWindow, InvalidateRect, GetForegroundWindow, GetClientRect, DispatchMessageW, UnregisterClassW, AdjustWindowRectEx, SetWindowLongW, RegisterClassW, LoadIconW, EnumDisplaySettingsW, EnumDisplayDevicesW, ClipCursor, ShowCursor, ScreenToClient, GetCursorPos, SetCursorPos, ToAscii
version.dll
GetFileVersionInfoA, VerQueryValueA, GetFileVersionInfoSizeA
winmm.dll
timeGetTime, timeEndPeriod, timeBeginPeriod
ws2_32.dll
WSASocketA, WSAConnect, freeaddrinfo, getaddrinfo, WSAAddressToStringA, WSASendTo, WSARecvFrom

League of Legends.exe

League of Legends Client by Riot Games (Signed)

Remove League of Legends.exe
Version:   3.7.0.333
MD5:   1240e756bada780e9fc9aa945384d0ce
SHA1:   3453343bf4061d2ff78676a1e8040aa1bd3d64ae
SHA256:   f67a8a6304682821cead96cfef87e89b2ef909166c0f413567c0705728bff6d7

Overview

league of legends.exe executes as a process with the local user's privileges. It has been configured with a firewall exception which allows both inbound and outbound network communication without being blocked. The file is digitally signed by Riot Games which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:league of legends.exe
Product name:League of Legends (TM) Client
Typical file path:C:\riot games\league of legends\rads\solutions\lol_game_client_sln\releases\0.0.0.204\deploy\league of legends.exe
File version:3.7.0.333
Size:23.01 MB (24,126,312 bytes)
Build date:5/24/2013 10:43 AM
Certificate
Issued to:Riot Games
Authority (CA):VeriSign
Effective date:Tuesday, March 20, 2012
Expiration date:Thursday, March 21, 2013
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++ 8.0
.NET CLR:No
More details

BehaviorsBehaviors

Windows firewall allowed programs
Exceptions allow programs to access to the Internet through an outbound connections
  • Firewall exception for 'C:\LOL TW\GameData\Apps\LoLTW\Game\League of Legends.exe'
  • Firewall exception for 'C:\lol\GameData\Apps\LoLTW\Game\League of Legends.exe'
  • Firewall exception for 'C:\lol.tw\GameData\Apps\LoLTW\Game\League of Legends.exe'
  • Firewall exception for 'C:\lol\GameData\Apps\LoLTH\Game\League of Legends.exe'

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 50.00%
Windows 7 Ultimate 25.00%
Windows 7 Home Premium 25.00%

Distribution by countryDistribution by country

Hong Kong installs about 37.50% of League of Legends (TM) Client.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
GIGABYTE 40.00%
American Megatrends 20.00%
Hewlett-Packard 20.00%
Acer 20.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE