× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 1b09204b1d22f20adca1c505e8f407938ad5382a095b8b0dd26cb1f626e9ee7c
File name: tightvnc-2.7.10-setup-32bit.msi
Detection ratio: 1 / 60
Analysis date: 2018-02-09 05:48:03 UTC ( 5 months, 1 week ago ) View latest
Antivirus Result Update
Tencent Win32.Trojan.Qqthief.Auto 20180209
Ad-Aware 20180209
AegisLab 20180209
AhnLab-V3 20180208
Alibaba 20180208
ALYac 20180209
Antiy-AVL 20180209
Arcabit 20180209
Avast 20180209
Avast-Mobile 20180209
AVG 20180209
Avira (no cloud) 20180208
AVware 20180209
Baidu 20180208
BitDefender 20180209
Bkav 20180208
CAT-QuickHeal 20180209
ClamAV 20180209
CMC 20180209
Comodo 20180209
CrowdStrike Falcon (ML) 20170201
Cybereason 20180205
Cylance 20180209
Cyren 20180209
DrWeb 20180209
eGambit 20180209
Emsisoft 20180209
Endgame 20171130
ESET-NOD32 20180209
F-Prot 20180209
F-Secure 20180209
Fortinet 20180209
GData 20180209
Ikarus 20180208
Sophos ML 20180121
Jiangmin 20180209
K7AntiVirus 20180208
K7GW 20180209
Kaspersky 20180209
Kingsoft 20180209
Malwarebytes 20180209
MAX 20180209
McAfee 20180209
McAfee-GW-Edition 20180209
Microsoft 20180209
eScan 20180209
NANO-Antivirus 20180209
nProtect 20180208
Palo Alto Networks (Known Signatures) 20180209
Panda 20180208
Qihoo-360 20180209
Rising 20180209
SentinelOne (Static ML) 20180115
Sophos AV 20180209
SUPERAntiSpyware 20180209
Symantec 20180209
Symantec Mobile Insight 20180209
TheHacker 20180208
TotalDefense 20180208
TrendMicro 20180209
TrendMicro-HouseCall 20180209
Trustlook 20180209
VBA32 20180208
VIPRE 20180209
ViRobot 20180209
Webroot 20180209
WhiteArmor 20180205
Yandex 20180207
Zillya 20180208
ZoneAlarm by Check Point 20180209
Zoner 20180209
The file being studied is a Windows Installer file! These types of files are software components used for the installation, maintenance, and removal of software on modern Microsoft Windows systems.
Authenticode signature block
Signature verification Signed file, verified signature
Signing date 5:21 AM 7/19/2013
Signers
[+] GlavSoft LLC.
Status This certificate or one of the certificates in the certificate chain is not time valid.
Valid from 12:00 AM 3/27/2013
Valid to 11:59 PM 3/29/2014
Valid usage Code Signing, 1.3.6.1.4.1.311.2.1.22
Algorithm sha1RSA
Thumbrint 3F09B5BADDA5DC08DA370BBB6ECA059325FD2E06
Serial number 2E F2 BE 0C 29 BD 08 B9 57 17 2F ED 0B E6 A0 36
[+] Thawte Code Signing CA - G2
Status Valid
Valid from 12:00 AM 2/8/2010
Valid to 11:59 PM 2/7/2020
Valid usage Client Auth, Code Signing
Algorithm sha1RSA
Thumbrint 808D62642B7D1C4A9A83FD667F7A2A9D243FB1C7
Serial number 47 97 4D 78 73 A5 BC AB 0D 2F B3 70 19 2F CE 5E
[+] thawte
Status Valid
Valid from 12:00 AM 11/17/2006
Valid to 11:59 PM 7/16/2036
Valid usage Server Auth, Client Auth, Email Protection, Code Signing
Algorithm sha1RSA
Thumbrint 91C6D6EE3E8AC86384E548C299295C756C817B81
Serial number 34 4E D5 57 20 D5 ED EC 49 F4 2F CE 37 DB 2B 6D
Counter signers
[+] Symantec Time Stamping Services Signer - G4
Status Valid
Valid from 12:00 AM 10/18/2012
Valid to 11:59 PM 12/29/2020
Valid usage Timestamp Signing
Algorithm sha1RSA
Thumbrint 65439929B67973EB192D6FF243E6767ADF0834E4
Serial number 0E CF F4 38 C8 FE BF 35 6E 04 D8 6A 98 1B 1A 50
[+] Symantec Time Stamping Services CA - G2
Status Valid
Valid from 12:00 AM 12/21/2012
Valid to 11:59 PM 12/30/2020
Valid usage Timestamp Signing
Algorithm sha1RSA
Thumbrint 6C07453FFDDA08B83707C09B82FB3D15F35336B1
Serial number 7E 93 EB FB 7C C6 4E 59 EA 4B 9A 77 D4 06 FC 3B
[+] Thawte Timestamping CA
Status Valid
Valid from 12:00 AM 1/1/1997
Valid to 11:59 PM 12/31/2020
Valid usage Timestamp Signing
Algorithm md5RSA
Thumbrint BE36A4562FB2EE05DBB3D32323ADF445084ED656
Serial number 00
OLE structured storage summary
creation_datetime
2013-07-19 05:21:18
author
GlavSoft LLC.
title
Installation Database
page_count
200
word_count
2
keywords
Installer
last_saved
2013-07-19 05:21:18
revision_number
{082A4887-6A18-43A9-95CD-C150FDE91456}
application_name
Windows Installer XML (3.5.2519.0)
security
2
subject
TightVNC
template
Intel;1033
code_page
Latin I
comments
This installer database contains the logic and data required to install TightVNC.
OLE Streams
name
Root Entry
clsid
000c1084-0000-0000-c000-000000000046
type_literal
root
clsid_literal
on
sid
0
size
23104
type_literal
stream
sid
58
name
\x05DigitalSignature
size
5701
type_literal
stream
sid
2
name
\x05SummaryInformation
size
524
type_literal
stream
sid
34
name
\u4192\u4472\u45fe\u4479\u4236\u4675\u4568\u433e\u44a6
size
1078
type_literal
stream
sid
35
name
\u4192\u4472\u467e\u422c\u423a\u47b5\u41ac\u4832
size
1078
type_literal
stream
sid
1
name
\u4236\u4637\u47b3\u4126\u4825
size
1448782
type_literal
stream
sid
18
name
\u430b\u4131\u4735\u3f3e\u45e8\u44f8\u4211\u44ef\u4568\u430b\u4831
size
114672
type_literal
stream
sid
10
name
\u430b\u4131\u4735\u403e\u46ec\u3a8c
size
159232
type_literal
stream
sid
12
name
\u430b\u4131\u4735\u403e\u46ec\u3c9e\u3aff\u44f0\u3aff\u4464\u4231\u4835
size
2746
type_literal
stream
sid
13
name
\u430b\u4131\u4735\u403e\u46ec\u3c9e\u3aff\u44f0\u3b7f\u412c\u44af\u482a
size
68468
type_literal
stream
sid
16
name
\u430b\u4131\u4735\u403e\u46ec\u3c9e\u3aff\u44f0\u3dff\u46a8
size
318
type_literal
stream
sid
17
name
\u430b\u4131\u4735\u403e\u46ec\u3c9e\u3aff\u44f0\u3fbf\u4833
size
318
type_literal
stream
sid
14
name
\u430b\u4131\u4735\u403e\u46ec\u3c9e\u3cbf\u44a6\u3bbf\u41bb\u412f\u4830
size
766
type_literal
stream
sid
15
name
\u430b\u4131\u4735\u403e\u46ec\u3c9e\u3cbf\u44a6\u3cbf\u4271\u4832
size
1078
type_literal
stream
sid
11
name
\u430b\u4131\u4735\u403e\u46ec\u3c9e\u4320\u41bb\u4824
size
68608
type_literal
stream
sid
9
name
\u430b\u4131\u4735\u403e\u46ec\u430f\u4235\u413a\u43ef\u3a8c
size
80896
type_literal
stream
sid
55
name
\u4840\u3b3f\u43f2\u4438\u45b1
size
1656
type_literal
stream
sid
51
name
\u4840\u3c9e\u421d\u45fb
size
204
type_literal
stream
sid
57
name
\u4840\u3f3f\u4577\u446c\u3b6a\u45e4\u4824
size
81712
type_literal
stream
sid
56
name
\u4840\u3f3f\u4577\u446c\u3e6a\u44b2\u482f
size
6944
type_literal
stream
sid
54
name
\u4840\u3f7f\u4164\u422f\u4836
size
80
type_literal
stream
sid
3
name
\u4840\u3fff\u43e4\u41ec\u45e4\u44ac\u4831
size
5016
type_literal
stream
sid
38
name
\u4840\u4115\u4478\u42e6\u448c\u41f1\u45ec\u44ac\u4831
size
4
type_literal
stream
sid
43
name
\u4840\u411b\u4327\u3af2\u45f8\u44b7\u4831
size
36
type_literal
stream
sid
4
name
\u4840\u418a\u4337\u4472\u421d\u45fb
size
456
type_literal
stream
sid
33
name
\u4840\u4192\u4472
size
8
type_literal
stream
sid
5
name
\u4840\u41ca\u4330\u3bb1\u423b\u4626\u4237\u421c\u4634\u4468\u4226
size
48
type_literal
stream
sid
6
name
\u4840\u41ca\u4330\u3fb1\u3f12\u4528\u4238\u41b1\u4828
size
42
type_literal
stream
sid
7
name
\u4840\u41ca\u45f9\u46ce\u41a8\u45f8\u3f28\u4528\u4238\u41b1\u4828
size
48
type_literal
stream
sid
31
name
\u4840\u420f\u45e4\u4578\u3b28\u4432\u44b3\u4231\u45f1\u4836
size
300
type_literal
stream
sid
30
name
\u4840\u420f\u45e4\u4578\u4828
size
48
type_literal
stream
sid
40
name
\u4840\u4216\u4327\u4824
size
14
type_literal
stream
sid
44
name
\u4840\u421b\u432a\u45f6\u4735
size
444
type_literal
stream
sid
46
name
\u4840\u421b\u44b0\u4239\u421b\u432a\u45f6\u4735
size
330
type_literal
stream
sid
45
name
\u4840\u421b\u44b0\u4239\u430f\u422f
size
30
type_literal
stream
sid
47
name
\u4840\u421c\u4626\u4235\u4158\u422d\u45e6\u4836
size
14
type_literal
stream
sid
48
name
\u4840\u421c\u4675\u41ac\u3b28\u4472\u4577\u43f2
size
12
type_literal
stream
sid
50
name
\u4840\u421d\u45fb\u45dc\u43fc\u4828
size
36
type_literal
stream
sid
19
name
\u4840\u42cc\u41a8\u3aee\u46f2
size
24
type_literal
stream
sid
49
name
\u4840\u42dc\u4572\u41b7\u45f8
size
352
type_literal
stream
sid
8
name
\u4840\u430b\u4131\u4735
size
40
type_literal
stream
sid
27
name
\u4840\u430d\u4235\u45e6\u4572\u483c
size
60
type_literal
stream
sid
26
name
\u4840\u430d\u43e4\u42b2
size
506
type_literal
stream
sid
32
name
\u4840\u430f\u422f
size
120
type_literal
stream
sid
53
name
\u4840\u4320\u3bfb\u456c\u46a8\u43e4\u3baf\u41bb\u44e8\u4337\u4472
size
44
type_literal
stream
sid
36
name
\u4840\u4452\u45f6\u43e4\u3baf\u423b\u4626\u4237\u421c\u4634\u4468\u4226
size
270
type_literal
stream
sid
37
name
\u4840\u4452\u45f6\u43e4\u3faf\u3f12\u4528\u4238\u41b1\u4828
size
102
type_literal
stream
sid
20
name
\u4840\u448c\u44f0\u4472\u4468\u4837
size
900
type_literal
stream
sid
22
name
\u4840\u448c\u45f1\u44b5\u3b2f\u4472\u4327\u4337\u4472
size
592
type_literal
stream
sid
23
name
\u4840\u448c\u45f1\u44b5\u3baf\u4239\u45f1
size
1764
type_literal
stream
sid
21
name
\u4840\u448c\u45f1\u44b5\u482f
size
6474
type_literal
stream
sid
39
name
\u4840\u4495\u43a6\u4219\u4435\u45ac\u4336\u4472\u4836
size
720
type_literal
stream
sid
52
name
\u4840\u44de\u456a\u41e4\u4828
size
48
type_literal
stream
sid
24
name
\u4840\u454c\u4128\u4237\u448f\u41ef\u4568
size
4
type_literal
stream
sid
28
name
\u4840\u454e\u44b5\u4835
size
668
type_literal
stream
sid
42
name
\u4840\u4559\u44f2\u4568\u4737
size
340
type_literal
stream
sid
41
name
\u4840\u4596\u3bec\u43ec\u3c68\u45a4\u482b
size
40
type_literal
stream
sid
25
name
\u4840\u460c\u45f6\u4432\u418a\u4337\u4472
size
300
type_literal
stream
sid
29
name
\u4840\u464e\u4468\u3db7\u44e4\u4333\u42b1
size
104
ExifTool file metadata
MIMEType
image/vnd.fpx

ModifyDate
2013:07:19 05:21:18

Template
Intel;1033

Title
Installation Database

FileType
FPX

Author
GlavSoft LLC.

Comments
This installer database contains the logic and data required to install TightVNC.

CodePage
Windows Latin 1 (Western European)

FileTypeExtension
fpx

Words
2

Keywords
Installer

CreateDate
2013:07:19 05:21:18

Security
Read-only recommended

Software
Windows Installer XML (3.5.2519.0)

Pages
200

RevisionNumber
{082A4887-6A18-43A9-95CD-C150FDE91456}

Subject
TightVNC

PE resource-wise parents
Compressed bundles
File identification
MD5 9f5e660c6bad014c8a0ce5eddf4bb50b
SHA1 f619e5c7fbc63744ad8606f20ac11d237eabb132
SHA256 1b09204b1d22f20adca1c505e8f407938ad5382a095b8b0dd26cb1f626e9ee7c
ssdeep
49152:HebyHhgZp69kYoMrEKv3jsRY8MJIxt6KVWBiJX2SS28cml+MX3j:HMyBgZpvYoQEKvTs68MmXhZ2S3ml

File size 2.0 MB ( 2105344 bytes )
File type Windows Installer
Magic literal
CDF V2 Document, Little Endian, Os: Windows, Version 6.1, Code page: 1252, Title: Installation Database, Subject: TightVNC, Author: GlavSoft LLC., Keywords: Installer, Comments: This installer database contains the logic and data required to install TightVNC., Template: Intel

TrID Microsoft Windows Installer (89.6%)
Windows Installer Patch (8.7%)
Generic OLE2 / Multistream Compound File (1.5%)
Tags
msi signed via-tor

VirusTotal metadata
First submission 2013-07-24 11:34:32 UTC ( 4 years, 11 months ago )
Last submission 2018-06-05 10:03:18 UTC ( 1 month, 1 week ago )
File names tightvnc.msi
tightvnc-2.7.10-setup-32bit.msi
Unconfirmed 558659.crdownload
9f801d.msi
tightvnc-2.7.10-setup-32bit.msi
tightvnc-2-7-10-en-win.msi
383578
TightVNC.msi
Unconfirmed 706031.crdownload
tightvnc-2.7.10-setup-32bit[1].msi
tightvnc-2.7.10-setup-32bit.msi
TightVNC_V2.7.10~2014-04-24.msi
tightvnc-2.7.10-setup-32bit (1).msi
filename
vnc32.msi
tightvnc-2.7.10-setup-32bit.msi
tightvnc-2.7.10-setup-32bit.msi
tightvnc-2.7.10.msi
tightvnc-2.7.10-setup-32bit (2).msi
TightVNC 2.7.10.exe
TightVNC32_setup.msi
tightvnc_32bit.msi
150b12.msi
TightVnc2.7.10setp-32bit_cnet-com_2013Jun_ChromeRefusesAnyOther2710-32b-ver-asMalicious_2014July.msi
tightvnc-2.7.10-setup-32bit (non capisco se...).msi
Advanced heuristic and reputation engines
Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!