thienha.exe

AIVO VIET ONLINE SERVICE DEVELOPMENT JOINT STOCK COMPANY

This is a setup program which is used to install the application. The file has been seen being downloaded from taigame.aivo.vn.
Publisher:
AIVO  (signed by AIVO VIET ONLINE SERVICE DEVELOPMENT JOINT STOCK COMPANY)

Description:
Cổng Game AIVO

Version:
1.0.0.0

MD5:
6b4d61ee40e67df14ef15571576c32b5

SHA-1:
2f49e91d4ded448b33f76dec2b6322be93f6a34f

SHA-256:
8170e8cdf542a0c523eb2bbafcb295ad3bcfcf53ccdc1b8638317906f70a0c5a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 8:57:04 AM UTC  (today)

File size:
9.3 MB (9,711,352 bytes)

Product version:
1.0

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
11/9/2015 6:29:36 AM

Valid to:
11/9/2016 6:29:36 AM

Subject:
E=admin@aivo.vn, CN=AIVO VIET ONLINE SERVICE DEVELOPMENT JOINT STOCK COMPANY, OU=IT Department, O=AIVO VIET ONLINE SERVICE DEVELOPMENT JOINT STOCK COMPANY, L=Hanoi, S=Hanoi, C=VN

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121F39B013569C78821C95DD72CBC97B610

File PE Metadata
Compilation timestamp:
6/23/2016 10:04:43 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:3eKi8QnPIxM+fxseZmttoEiLn/pTZmPEGAnXWeQFTrpauCAMytvKW2EZbc:BQpbInmxomegZnMytv3c

Entry address:
0x615438

Entry point:
55, 8B, EC, 83, C4, F0, 53, B8, 84, FA, 9F, 00, E8, 7B, B3, 9F, FF, 8B, 1D, DC, 70, A2, 00, 8B, 03, E8, A2, 73, BF, FF, 8B, 03, 33, D2, E8, E1, 90, BF, FF, 8B, 0D, 80, 79, A2, 00, 8B, 03, 8B, 15, E0, 22, 9F, 00, E8, 9E, 73, BF, FF, 8B, 03, BA, A0, 54, A1, 00, E8, AA, 6D, BF, FF, 8B, 03, E8, 5B, 72, BF, FF, 8B, 03, E8, E0, 74, BF, FF, 5B, E8, B2, 51, 9F, FF, 00, 00, B0, 04, 02, 00, FF, FF, FF, FF, 12, 00, 00, 00, 54, 00, 68, 00, 69, 00, EA, 00, 6E, 00, 20, 00, 48, 00, A1, 1E, 20, 00, 43, 00, 68, 00, 69, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
6.1 MB (6,374,400 bytes)

The file thienha.exe has been seen being distributed by the following URL.

Scan thienha.exe - Powered by Reason Core Security