ngaokiem.exe 

AIVO VIET ONLINE SERVICE DEVELOPMENT JOINT STOCK COMPANY

Publisher:
AIVO  (signed by AIVO VIET ONLINE SERVICE DEVELOPMENT JOINT STOCK COMPANY)

Description:
Cổng Game AIVO

Version:
1.6.0.0

MD5:
cab0af4d3a9565d7007268e517518646

SHA-1:
b3f6186e4ee2f75ff246ad4ea7b745ce1651b300

SHA-256:
2af17b6e73aca0df127a5e49296bf71c82c79754d54991b8dbdc346a1b6af4a3

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 8:53:29 AM UTC  (today)

File size:
9 MB (9,431,552 bytes)

Product version:
1.6

Language:
English (United States)

Common path:
C:\users\{user}\downloads\programs\ngaokiem.exe 

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
11/9/2015 6:29:36 AM

Valid to:
11/9/2016 6:29:36 AM

Subject:
E=admin@aivo.vn, CN=AIVO VIET ONLINE SERVICE DEVELOPMENT JOINT STOCK COMPANY, OU=IT Department, O=AIVO VIET ONLINE SERVICE DEVELOPMENT JOINT STOCK COMPANY, L=Hanoi, S=Hanoi, C=VN

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121F39B013569C78821C95DD72CBC97B610

File PE Metadata
Compilation timestamp:
10/31/2015 2:53:09 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:M5KBpjn6Taz/0Dk8DdZoWLsO7LAjNxJWeQFTrpauCAMyfGda/Ui:ZjnqaZHWLsIsjAegZnMyfC

Entry address:
0x5E01A0

Entry point:
55, 8B, EC, 83, C4, F0, 53, B8, 24, D3, 9C, 00, E8, 93, FC, A2, FF, 8B, 1D, 5C, FC, 9E, 00, 8B, 03, E8, B6, 24, C1, FF, 8B, 03, 33, D2, E8, F9, 41, C1, FF, 8B, 0D, D0, 04, 9F, 00, 8B, 03, 8B, 15, 80, 29, 9C, 00, E8, B2, 24, C1, FF, 8B, 03, BA, 08, 02, 9E, 00, E8, 3E, 1E, C1, FF, 8B, 03, E8, 6F, 23, C1, FF, 8B, 03, E8, FC, 25, C1, FF, 5B, E8, 26, A1, A2, FF, 00, 00, B0, 04, 02, 00, FF, FF, FF, FF, 10, 00, 00, 00, 4E, 00, 67, 00, A1, 1E, 6F, 00, 20, 00, 4B, 00, 69, 00, BF, 1E, 6D, 00, 20, 00, 4B, 00, F3, 1E...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
5.9 MB (6,155,776 bytes)

The file ngaokiem.exe  has been seen being distributed by the following URL.

Scan ngaokiem.exe  - Powered by Reason Core Security