setupcasino.exe

Playtech Software Installer

PLAYTECH LIMITED

This is a self-extracting archive and installer. The file has been seen being downloaded from banner.casino.titanbet.it.
Publisher:
Playtech  (signed by PLAYTECH LIMITED)

Product:
Playtech Software Installer

Description:
Titanbet.it Casino

Version:
13.2.11.0

MD5:
024940e04de106065587e14afe7baf82

SHA-1:
a8d62b0f4be2089dd9d316178d2b83b4ef879809

SHA-256:
d07299d53eb0c20604a7448258177efe16b222964d9fa72526a50f3206df8293

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 2:44:41 AM UTC  (today)

File size:
229.7 KB (235,216 bytes)

Product version:
13.2.11.0

Copyright:
Copyright (C) 2001-2009 Playtech

Original file name:
CasinoDownloader2.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\setupcasino.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
3/4/2015 1:00:00 AM

Valid to:
4/3/2018 1:59:59 AM

Subject:
CN=PLAYTECH LIMITED, O=PLAYTECH LIMITED, L=Douglas, S=Isle of Man, C=IM

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
41DE65AB6CE64F53DF33BDC37E67E284

File PE Metadata
Compilation timestamp:
1/17/2014 11:14:13 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
6144:1Cv889gvgQ33+UiKRXuJ1QDLLugfp01lbHfsBLz:4v/gg6zhXiQDfXwb/sNz

Entry address:
0x1000

Entry point:
B8, 30, 82, 52, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, 73, 7C, 8E, F6, 11, BD, 32, 60, DD, 0B, 00, 43, A6, 07, C7, 67, 99, 75, A2, 41, 2F, 08, FC, 27, 60, F5, 7C, 5E, 94, B8, 93, 9D, F6, DB, 7D, 06, FA, D2, 25, 92, 44, 4A, FD, 43, 34, F5, F5, 60, DB, B6, B1, 4C, 41, 6D, B0, CF, 72, AE, 63, 94, 17, DE, 57, 19, E8, A0, 1B, 38, 79, 00, 60, F9, 79, 9B, BF, A3, D4, AC, 07, E9, E9, 68, 12, DB, 9F, 35, 73, DF, 75, E2, 06, 5D, 48...
 
[+]

Packer / compiler:
PECompact v2

Code size:
338 KB (346,112 bytes)

The file setupcasino.exe has been seen being distributed by the following URL.

Scan setupcasino.exe - Powered by Reason Core Security