tibup63.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www.tibia-client.net.
MD5:
23b564d530a79366515f2da8eea7f216

SHA-1:
4bdcb2c99b1013f7374ac8fb10f11817d7eb3749

SHA-256:
bdfe0657139c49e7fd95de6d9a7e0cc147076c9c4665ce19dd2df52484564738

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 6:27:56 AM UTC  (today)

File size:
103.9 KB (106,416 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\downloads\tibup63.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
3072:fDYmVL/MU62acbA4KKBWSwJYyC58z0WyS7q:fDYmJ/MX/6IKBFwJYx5md7q

Entry point:
4D, 5A, 5B, 00, 0F, 00, 00, 00, 02, 00, 43, 1C, FF, FF, 98, 04, 80, 00, 00, 00, 0E, 00, AE, 01, 1C, 00, 00, 00, 52, 53, 46, 58, D5, AA, 00, FF, F8, FC, FF, F8, FC, FF, F8, 2B, 41, 02, F8, FC, FF, F8, FC, FF, F8, FC, AA, AA, FF, F8, FC, FF, F8, FC, FF, F8, FC, FF, F8, FC, FF, F8, FC, FF, F8, FC, FF, F8, FC, FF, F8, FC, FE, FF, FF, F8, FC, FF, F8, DD, 0D, 0A, 52, 41, 52, 20, 53, 46, 58, 20, 41, 72, 63, 07, FA, 68, 69, 76, 65, EF, F3, 6D, 6F, 64, 75, C3, FF, 6C, 65, 20, F1, 72, 73, 69, 6F, 6E, 20, 31, 2E, 35...
 
[+]

Packer / compiler:
RAR-SFX Archive (1)

The file tibup63.exe has been seen being distributed by the following URL.

Scan tibup63.exe - Powered by Reason Core Security