× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 1b09204b1d22f20adca1c505e8f407938ad5382a095b8b0dd26cb1f626e9ee7c
File name: tightvnc-2.7.10-setup-32bit.msi
Detection ratio: 1 / 60
Analysis date: 2018-06-09 16:24:02 UTC ( 1 week, 1 day ago ) View latest
Antivirus Result Update
Tencent Win32.Trojan.Qqthief.Auto 20180609
Ad-Aware 20180609
AegisLab 20180609
AhnLab-V3 20180609
Alibaba 20180608
ALYac 20180609
Antiy-AVL 20180609
Arcabit 20180609
Avast 20180609
Avast-Mobile 20180609
AVG 20180609
Avira (no cloud) 20180609
AVware 20180609
Babable 20180406
Baidu 20180608
BitDefender 20180609
Bkav 20180609
CAT-QuickHeal 20180609
ClamAV 20180609
CMC 20180609
Comodo 20180609
CrowdStrike Falcon (ML) 20180530
Cybereason 20180225
Cylance 20180609
Cyren 20180609
DrWeb 20180609
eGambit 20180609
Emsisoft 20180609
Endgame 20180507
ESET-NOD32 20180609
F-Prot 20180609
F-Secure 20180609
Fortinet 20180609
GData 20180609
Ikarus 20180609
Sophos ML 20180601
Jiangmin 20180609
K7AntiVirus 20180609
K7GW 20180609
Kaspersky 20180609
Kingsoft 20180609
Malwarebytes 20180609
MAX 20180609
McAfee 20180609
McAfee-GW-Edition 20180609
Microsoft 20180609
eScan 20180609
NANO-Antivirus 20180609
Palo Alto Networks (Known Signatures) 20180609
Panda 20180609
Qihoo-360 20180609
Rising 20180609
SentinelOne (Static ML) 20180225
Sophos AV 20180609
SUPERAntiSpyware 20180609
Symantec 20180609
Symantec Mobile Insight 20180605
TACHYON 20180608
TheHacker 20180608
TotalDefense 20180609
TrendMicro 20180609
TrendMicro-HouseCall 20180609
Trustlook 20180609
VBA32 20180608
VIPRE 20180609
ViRobot 20180609
Webroot 20180609
Yandex 20180609
Zillya 20180608
ZoneAlarm by Check Point 20180609
Zoner 20180608
The file being studied is a Windows Installer file! These types of files are software components used for the installation, maintenance, and removal of software on modern Microsoft Windows systems.
Authenticode signature block
Signature verification Signed file, verified signature
Signing date 6:21 AM 7/19/2013
Signers
[+] GlavSoft LLC.
Status This certificate or one of the certificates in the certificate chain is not time valid.
Valid from 1:00 AM 3/27/2013
Valid to 12:59 AM 3/30/2014
Valid usage Code Signing, 1.3.6.1.4.1.311.2.1.22
Algorithm sha1RSA
Thumbrint 3F09B5BADDA5DC08DA370BBB6ECA059325FD2E06
Serial number 2E F2 BE 0C 29 BD 08 B9 57 17 2F ED 0B E6 A0 36
[+] Thawte Code Signing CA - G2
Status Valid
Valid from 1:00 AM 2/8/2010
Valid to 12:59 AM 2/8/2020
Valid usage Client Auth, Code Signing
Algorithm sha1RSA
Thumbrint 808D62642B7D1C4A9A83FD667F7A2A9D243FB1C7
Serial number 47 97 4D 78 73 A5 BC AB 0D 2F B3 70 19 2F CE 5E
[+] thawte
Status Valid
Valid from 1:00 AM 11/17/2006
Valid to 12:59 AM 7/17/2036
Valid usage Server Auth, Client Auth, Email Protection, Code Signing
Algorithm sha1RSA
Thumbrint 91C6D6EE3E8AC86384E548C299295C756C817B81
Serial number 34 4E D5 57 20 D5 ED EC 49 F4 2F CE 37 DB 2B 6D
Counter signers
[+] Symantec Time Stamping Services Signer - G4
Status Valid
Valid from 1:00 AM 10/18/2012
Valid to 12:59 AM 12/30/2020
Valid usage Timestamp Signing
Algorithm sha1RSA
Thumbrint 65439929B67973EB192D6FF243E6767ADF0834E4
Serial number 0E CF F4 38 C8 FE BF 35 6E 04 D8 6A 98 1B 1A 50
[+] Symantec Time Stamping Services CA - G2
Status Valid
Valid from 1:00 AM 12/21/2012
Valid to 12:59 AM 12/31/2020
Valid usage Timestamp Signing
Algorithm sha1RSA
Thumbrint 6C07453FFDDA08B83707C09B82FB3D15F35336B1
Serial number 7E 93 EB FB 7C C6 4E 59 EA 4B 9A 77 D4 06 FC 3B
[+] Thawte Timestamping CA
Status Valid
Valid from 1:00 AM 1/1/1997
Valid to 12:59 AM 1/1/2021
Valid usage Timestamp Signing
Algorithm md5RSA
Thumbrint BE36A4562FB2EE05DBB3D32323ADF445084ED656
Serial number 00
OLE structured storage summary
creation_datetime
2013-07-19 06:21:18
author
GlavSoft LLC.
title
Installation Database
page_count
200
word_count
2
keywords
Installer
last_saved
2013-07-19 06:21:18
revision_number
{082A4887-6A18-43A9-95CD-C150FDE91456}
application_name
Windows Installer XML (3.5.2519.0)
security
2
subject
TightVNC
template
Intel;1033
code_page
Latin I
comments
This installer database contains the logic and data required to install TightVNC.
OLE Streams
name
Root Entry
clsid
000c1084-0000-0000-c000-000000000046
type_literal
root
clsid_literal
on
sid
0
size
23104
type_literal
stream
sid
58
name
\x05DigitalSignature
size
5701
type_literal
stream
sid
2
name
\x05SummaryInformation
size
524
type_literal
stream
sid
34
name
\u4192\u4472\u45fe\u4479\u4236\u4675\u4568\u433e\u44a6
size
1078
type_literal
stream
sid
35
name
\u4192\u4472\u467e\u422c\u423a\u47b5\u41ac\u4832
size
1078
type_literal
stream
sid
1
name
\u4236\u4637\u47b3\u4126\u4825
size
1448782
type_literal
stream
sid
18
name
\u430b\u4131\u4735\u3f3e\u45e8\u44f8\u4211\u44ef\u4568\u430b\u4831
size
114672
type_literal
stream
sid
10
name
\u430b\u4131\u4735\u403e\u46ec\u3a8c
size
159232
type_literal
stream
sid
12
name
\u430b\u4131\u4735\u403e\u46ec\u3c9e\u3aff\u44f0\u3aff\u4464\u4231\u4835
size
2746
type_literal
stream
sid
13
name
\u430b\u4131\u4735\u403e\u46ec\u3c9e\u3aff\u44f0\u3b7f\u412c\u44af\u482a
size
68468
type_literal
stream
sid
16
name
\u430b\u4131\u4735\u403e\u46ec\u3c9e\u3aff\u44f0\u3dff\u46a8
size
318
type_literal
stream
sid
17
name
\u430b\u4131\u4735\u403e\u46ec\u3c9e\u3aff\u44f0\u3fbf\u4833
size
318
type_literal
stream
sid
14
name
\u430b\u4131\u4735\u403e\u46ec\u3c9e\u3cbf\u44a6\u3bbf\u41bb\u412f\u4830
size
766
type_literal
stream
sid
15
name
\u430b\u4131\u4735\u403e\u46ec\u3c9e\u3cbf\u44a6\u3cbf\u4271\u4832
size
1078
type_literal
stream
sid
11
name
\u430b\u4131\u4735\u403e\u46ec\u3c9e\u4320\u41bb\u4824
size
68608
type_literal
stream
sid
9
name
\u430b\u4131\u4735\u403e\u46ec\u430f\u4235\u413a\u43ef\u3a8c
size
80896
type_literal
stream
sid
55
name
\u4840\u3b3f\u43f2\u4438\u45b1
size
1656
type_literal
stream
sid
51
name
\u4840\u3c9e\u421d\u45fb
size
204
type_literal
stream
sid
57
name
\u4840\u3f3f\u4577\u446c\u3b6a\u45e4\u4824
size
81712
type_literal
stream
sid
56
name
\u4840\u3f3f\u4577\u446c\u3e6a\u44b2\u482f
size
6944
type_literal
stream
sid
54
name
\u4840\u3f7f\u4164\u422f\u4836
size
80
type_literal
stream
sid
3
name
\u4840\u3fff\u43e4\u41ec\u45e4\u44ac\u4831
size
5016
type_literal
stream
sid
38
name
\u4840\u4115\u4478\u42e6\u448c\u41f1\u45ec\u44ac\u4831
size
4
type_literal
stream
sid
43
name
\u4840\u411b\u4327\u3af2\u45f8\u44b7\u4831
size
36
type_literal
stream
sid
4
name
\u4840\u418a\u4337\u4472\u421d\u45fb
size
456
type_literal
stream
sid
33
name
\u4840\u4192\u4472
size
8
type_literal
stream
sid
5
name
\u4840\u41ca\u4330\u3bb1\u423b\u4626\u4237\u421c\u4634\u4468\u4226
size
48
type_literal
stream
sid
6
name
\u4840\u41ca\u4330\u3fb1\u3f12\u4528\u4238\u41b1\u4828
size
42
type_literal
stream
sid
7
name
\u4840\u41ca\u45f9\u46ce\u41a8\u45f8\u3f28\u4528\u4238\u41b1\u4828
size
48
type_literal
stream
sid
31
name
\u4840\u420f\u45e4\u4578\u3b28\u4432\u44b3\u4231\u45f1\u4836
size
300
type_literal
stream
sid
30
name
\u4840\u420f\u45e4\u4578\u4828
size
48
type_literal
stream
sid
40
name
\u4840\u4216\u4327\u4824
size
14
type_literal
stream
sid
44
name
\u4840\u421b\u432a\u45f6\u4735
size
444
type_literal
stream
sid
46
name
\u4840\u421b\u44b0\u4239\u421b\u432a\u45f6\u4735
size
330
type_literal
stream
sid
45
name
\u4840\u421b\u44b0\u4239\u430f\u422f
size
30
type_literal
stream
sid
47
name
\u4840\u421c\u4626\u4235\u4158\u422d\u45e6\u4836
size
14
type_literal
stream
sid
48
name
\u4840\u421c\u4675\u41ac\u3b28\u4472\u4577\u43f2
size
12
type_literal
stream
sid
50
name
\u4840\u421d\u45fb\u45dc\u43fc\u4828
size
36
type_literal
stream
sid
19
name
\u4840\u42cc\u41a8\u3aee\u46f2
size
24
type_literal
stream
sid
49
name
\u4840\u42dc\u4572\u41b7\u45f8
size
352
type_literal
stream
sid
8
name
\u4840\u430b\u4131\u4735
size
40
type_literal
stream
sid
27
name
\u4840\u430d\u4235\u45e6\u4572\u483c
size
60
type_literal
stream
sid
26
name
\u4840\u430d\u43e4\u42b2
size
506
type_literal
stream
sid
32
name
\u4840\u430f\u422f
size
120
type_literal
stream
sid
53
name
\u4840\u4320\u3bfb\u456c\u46a8\u43e4\u3baf\u41bb\u44e8\u4337\u4472
size
44
type_literal
stream
sid
36
name
\u4840\u4452\u45f6\u43e4\u3baf\u423b\u4626\u4237\u421c\u4634\u4468\u4226
size
270
type_literal
stream
sid
37
name
\u4840\u4452\u45f6\u43e4\u3faf\u3f12\u4528\u4238\u41b1\u4828
size
102
type_literal
stream
sid
20
name
\u4840\u448c\u44f0\u4472\u4468\u4837
size
900
type_literal
stream
sid
22
name
\u4840\u448c\u45f1\u44b5\u3b2f\u4472\u4327\u4337\u4472
size
592
type_literal
stream
sid
23
name
\u4840\u448c\u45f1\u44b5\u3baf\u4239\u45f1
size
1764
type_literal
stream
sid
21
name
\u4840\u448c\u45f1\u44b5\u482f
size
6474
type_literal
stream
sid
39
name
\u4840\u4495\u43a6\u4219\u4435\u45ac\u4336\u4472\u4836
size
720
type_literal
stream
sid
52
name
\u4840\u44de\u456a\u41e4\u4828
size
48
type_literal
stream
sid
24
name
\u4840\u454c\u4128\u4237\u448f\u41ef\u4568
size
4
type_literal
stream
sid
28
name
\u4840\u454e\u44b5\u4835
size
668
type_literal
stream
sid
42
name
\u4840\u4559\u44f2\u4568\u4737
size
340
type_literal
stream
sid
41
name
\u4840\u4596\u3bec\u43ec\u3c68\u45a4\u482b
size
40
type_literal
stream
sid
25
name
\u4840\u460c\u45f6\u4432\u418a\u4337\u4472
size
300
type_literal
stream
sid
29
name
\u4840\u464e\u4468\u3db7\u44e4\u4333\u42b1
size
104
ExifTool file metadata
MIMEType
image/vnd.fpx

ModifyDate
2013:07:19 05:21:18

Template
Intel;1033

Title
Installation Database

FileType
FPX

Author
GlavSoft LLC.

Comments
This installer database contains the logic and data required to install TightVNC.

CodePage
Windows Latin 1 (Western European)

FileTypeExtension
fpx

Words
2

Keywords
Installer

CreateDate
2013:07:19 05:21:18

Security
Read-only recommended

Software
Windows Installer XML (3.5.2519.0)

Pages
200

RevisionNumber
{082A4887-6A18-43A9-95CD-C150FDE91456}

Subject
TightVNC

PE resource-wise parents
Compressed bundles
File identification
MD5 9f5e660c6bad014c8a0ce5eddf4bb50b
SHA1 f619e5c7fbc63744ad8606f20ac11d237eabb132
SHA256 1b09204b1d22f20adca1c505e8f407938ad5382a095b8b0dd26cb1f626e9ee7c
ssdeep
49152:HebyHhgZp69kYoMrEKv3jsRY8MJIxt6KVWBiJX2SS28cml+MX3j:HMyBgZpvYoQEKvTs68MmXhZ2S3ml

File size 2.0 MB ( 2105344 bytes )
File type Windows Installer
Magic literal
CDF V2 Document, Little Endian, Os: Windows, Version 6.1, Code page: 1252, Title: Installation Database, Subject: TightVNC, Author: GlavSoft LLC., Keywords: Installer, Comments: This installer database contains the logic and data required to install TightVNC., Template: Intel

TrID Microsoft Windows Installer (89.6%)
Windows Installer Patch (8.7%)
Generic OLE2 / Multistream Compound File (1.5%)
Tags
msi signed via-tor

VirusTotal metadata
First submission 2013-07-24 11:34:32 UTC ( 4 years, 10 months ago )
Last submission 2018-06-05 10:03:18 UTC ( 1 week, 5 days ago )
File names tightvnc.msi
tightvnc-2.7.10-setup-32bit.msi
Unconfirmed 558659.crdownload
9f801d.msi
tightvnc-2.7.10-setup-32bit.msi
tightvnc-2-7-10-en-win.msi
383578
TightVNC.msi
Unconfirmed 706031.crdownload
tightvnc-2.7.10-setup-32bit[1].msi
tightvnc-2.7.10-setup-32bit.msi
TightVNC_V2.7.10~2014-04-24.msi
tightvnc-2.7.10-setup-32bit (1).msi
filename
vnc32.msi
tightvnc-2.7.10-setup-32bit.msi
tightvnc-2.7.10-setup-32bit.msi
tightvnc-2.7.10.msi
tightvnc-2.7.10-setup-32bit (2).msi
TightVNC 2.7.10.exe
TightVNC32_setup.msi
tightvnc_32bit.msi
150b12.msi
TightVnc2.7.10setp-32bit_cnet-com_2013Jun_ChromeRefusesAnyOther2710-32b-ver-asMalicious_2014July.msi
tightvnc-2.7.10-setup-32bit (non capisco se...).msi
Advanced heuristic and reputation engines
Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!