paio.exe

360Play

VNG Corporation

This is a setup program which is used to install the application. The file has been seen being downloaded from download.zing.vcdn.vn.
Publisher:
VNG Corporation

Product:
360Play

Description:
360Play Updater

Version:
1.0.1.2

MD5:
621412b7540af522178290cb370c86ba

SHA-1:
1b8fcf08c8a3ef4ea1648e7b364742cdcf265d21

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 2:57:05 AM UTC  (today)

File size:
981.5 KB (1,005,096 bytes)

Product version:
1.0.1.2

Copyright:
Copyright © 2016 by VNG Corporation. All rights reserved.

Original file name:
paio.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\vng\360play\paio.exe

File PE Metadata
Compilation timestamp:
7/13/2016 4:59:06 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:NvG9zIjNGIX4atu48NPWZjyvfDhfdNbNvuLbc:kyjAtROjyXDNDNQc

Entry address:
0x1C93EE

Entry point:
60, F3, F7, D9, F3, 22, CB, 0F, AF, DB, 0F, CF, 3D, 44, 26, 00, 00, 78, 06, 0F, A5, C7, 0F, A3, F3, FE, C1, FF, C0, B6, BC, 0F, A4, C9, 58, 0F, AD, F7, 0F, BA, F2, A2, F6, D2, C1, F7, BA, 87, FF, 51, 5F, 33, D2, 33, D7, BF, 77, 30, 9A, 8B, 8B, CA, 1B, FA, C7, C7, 1D, 80, B5, 52, 8D, 01, 0A, F0, FF, CF, C7, C2, F9, 82, 9A, ED, 50, 29, FA, B9, 21, 65, 5A, 50, 5B, C6, C6, F6, 0F, A4, F1, 4B, F6, C2, 1B, 53, 0F, BF, FA, B1, 7D, C1, DA, 0C, 5E, 42, 1C, 3B, 0F, BB, D2, F7, C1, 6F, 91, 6D, 8B, 8B, D7, 29, DF, 56...
 
[+]

Entropy:
7.8355  (probably packed)

Code size:
2.1 MB (2,242,560 bytes)

The file paio.exe has been seen being distributed by the following URL.

Scan paio.exe - Powered by Reason Core Security