XichBich.exe

XichBich Application

AIVO VIET ONLINE SERVICE DEVELOPMENT JOINT STOCK COMPANY

This is a setup program which is used to install the application. The file has been seen being downloaded from xichbich.gsscdn.com.
Product:
XichBich Application

Description:
XichBich Game Loader

Version:
1, 0, 100, 13

MD5:
62ffdfa7b56a3a45b7516031936ec22d

SHA-1:
5d7cdb265887ebc1247420eef895d6df5882d857

SHA-256:
30be4f8bda34103eed8f587db8780a47264a4cabb98f9f173a4340fa076e957c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 12:50:29 PM UTC  (today)

File size:
1.7 MB (1,732,368 bytes)

Product version:
1, 0, 100, 13

Copyright:
Copyright (C)AIVO VIET ONLINE SERVICE DEVELOPMENT JOINT STOCK COMPANY. All rights reserved.

Original file name:
XichBich.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\julegame\shenzhanchibi_vietnam\xichbich.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
11/9/2015 6:29:36 AM

Valid to:
11/9/2016 6:29:36 AM

Subject:
E=admin@aivo.vn, CN=AIVO VIET ONLINE SERVICE DEVELOPMENT JOINT STOCK COMPANY, OU=IT Department, O=AIVO VIET ONLINE SERVICE DEVELOPMENT JOINT STOCK COMPANY, L=Hanoi, S=Hanoi, C=VN

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121F39B013569C78821C95DD72CBC97B610

File PE Metadata
Compilation timestamp:
4/15/2016 12:48:12 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
49152:45kieLeQI180L1fzrTKZSAGZSAXueolFAl6:45kQf1eZmZeeQF46

Entry address:
0x8BC18

Entry point:
E8, E9, 75, 00, 00, E9, 17, FE, FF, FF, 51, C7, 01, B0, F0, 4A, 00, E8, 6C, 76, 00, 00, 59, C3, 56, 8B, F1, E8, EA, FF, FF, FF, F6, 44, 24, 08, 01, 74, 07, 56, E8, 31, 00, 00, 00, 59, 8B, C6, 5E, C2, 04, 00, 8B, 44, 24, 04, 83, C1, 09, 51, 83, C0, 09, 50, E8, B3, 76, 00, 00, F7, D8, 59, 1B, C0, 59, 40, C2, 04, 00, 3B, 0D, 10, D3, 4B, 00, 75, 02, F3, C3, E9, 22, 77, 00, 00, E9, B7, 28, 00, 00, 55, 8B, EC, 56, 8B, 75, 14, 57, 33, FF, 3B, F7, 75, 04, 33, C0, EB, 65, 39, 7D, 08, 75, 1B, E8, 96, 42, 00, 00, 6A...
 
[+]

Code size:
660 KB (675,840 bytes)

The file XichBich.exe has been seen being distributed by the following URL.

Scan XichBich.exe - Powered by Reason Core Security