× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 1b09204b1d22f20adca1c505e8f407938ad5382a095b8b0dd26cb1f626e9ee7c
File name: tightvnc-2.7.10-setup-32bit.msi
Detection ratio: 1 / 60
Analysis date: 2018-06-09 16:24:02 UTC ( 5 months, 2 weeks ago ) View latest
Antivirus Result Update
Tencent Win32.Trojan.Qqthief.Auto 20180609
Ad-Aware 20180609
AegisLab 20180609
AhnLab-V3 20180609
Alibaba 20180608
ALYac 20180609
Antiy-AVL 20180609
Arcabit 20180609
Avast 20180609
Avast-Mobile 20180609
AVG 20180609
Avira (no cloud) 20180609
AVware 20180609
Babable 20180406
Baidu 20180608
BitDefender 20180609
Bkav 20180609
CAT-QuickHeal 20180609
ClamAV 20180609
CMC 20180609
Comodo 20180609
CrowdStrike Falcon (ML) 20180530
Cybereason 20180225
Cylance 20180609
Cyren 20180609
DrWeb 20180609
eGambit 20180609
Emsisoft 20180609
Endgame 20180507
ESET-NOD32 20180609
F-Prot 20180609
F-Secure 20180609
Fortinet 20180609
GData 20180609
Ikarus 20180609
Sophos ML 20180601
Jiangmin 20180609
K7AntiVirus 20180609
K7GW 20180609
Kaspersky 20180609
Kingsoft 20180609
Malwarebytes 20180609
MAX 20180609
McAfee 20180609
McAfee-GW-Edition 20180609
Microsoft 20180609
eScan 20180609
NANO-Antivirus 20180609
Palo Alto Networks (Known Signatures) 20180609
Panda 20180609
Qihoo-360 20180609
Rising 20180609
SentinelOne (Static ML) 20180225
Sophos AV 20180609
SUPERAntiSpyware 20180609
Symantec 20180609
Symantec Mobile Insight 20180605
TACHYON 20180608
TheHacker 20180608
TotalDefense 20180609
TrendMicro 20180609
TrendMicro-HouseCall 20180609
Trustlook 20180609
VBA32 20180608
VIPRE 20180609
ViRobot 20180609
Webroot 20180609
Yandex 20180609
Zillya 20180608
ZoneAlarm by Check Point 20180609
Zoner 20180608
The file being studied is a Windows Installer file! These types of files are software components used for the installation, maintenance, and removal of software on modern Microsoft Windows systems.
Authenticode signature block
Signature verification Signed file, verified signature
Signing date 6:21 AM 7/19/2013
Signers
[+] GlavSoft LLC.
Status This certificate or one of the certificates in the certificate chain is not time valid.
Valid from 1:00 AM 3/27/2013
Valid to 12:59 AM 3/30/2014
Valid usage Code Signing, 1.3.6.1.4.1.311.2.1.22
Algorithm sha1RSA
Thumbrint 3F09B5BADDA5DC08DA370BBB6ECA059325FD2E06
Serial number 2E F2 BE 0C 29 BD 08 B9 57 17 2F ED 0B E6 A0 36
[+] Thawte Code Signing CA - G2
Status Valid
Valid from 1:00 AM 2/8/2010
Valid to 12:59 AM 2/8/2020
Valid usage Client Auth, Code Signing
Algorithm sha1RSA
Thumbrint 808D62642B7D1C4A9A83FD667F7A2A9D243FB1C7
Serial number 47 97 4D 78 73 A5 BC AB 0D 2F B3 70 19 2F CE 5E
[+] thawte
Status Valid
Valid from 1:00 AM 11/17/2006
Valid to 12:59 AM 7/17/2036
Valid usage Server Auth, Client Auth, Email Protection, Code Signing
Algorithm sha1RSA
Thumbrint 91C6D6EE3E8AC86384E548C299295C756C817B81
Serial number 34 4E D5 57 20 D5 ED EC 49 F4 2F CE 37 DB 2B 6D
Counter signers
[+] Symantec Time Stamping Services Signer - G4
Status Valid
Valid from 1:00 AM 10/18/2012
Valid to 12:59 AM 12/30/2020
Valid usage Timestamp Signing
Algorithm sha1RSA
Thumbrint 65439929B67973EB192D6FF243E6767ADF0834E4
Serial number 0E CF F4 38 C8 FE BF 35 6E 04 D8 6A 98 1B 1A 50
[+] Symantec Time Stamping Services CA - G2
Status Valid
Valid from 1:00 AM 12/21/2012
Valid to 12:59 AM 12/31/2020
Valid usage Timestamp Signing
Algorithm sha1RSA
Thumbrint 6C07453FFDDA08B83707C09B82FB3D15F35336B1
Serial number 7E 93 EB FB 7C C6 4E 59 EA 4B 9A 77 D4 06 FC 3B
[+] Thawte Timestamping CA
Status Valid
Valid from 1:00 AM 1/1/1997
Valid to 12:59 AM 1/1/2021
Valid usage Timestamp Signing
Algorithm md5RSA
Thumbrint BE36A4562FB2EE05DBB3D32323ADF445084ED656
Serial number 00
OLE structured storage summary
creation_datetime
2013-07-19 07:21:18
author
GlavSoft LLC.
comments
This installer database contains the logic and data required to install TightVNC.
title
Installation Database
page_count
200
word_count
2
application_name
Windows Installer XML (3.5.2519.0)
last_saved
2013-07-19 07:21:18
revision_number
{082A4887-6A18-43A9-95CD-C150FDE91456}
keywords
Installer
security
2
template
Intel;1033
code_page
Latin I
subject
TightVNC
OLE Streams
name
Root Entry
clsid
000c1084-0000-0000-c000-000000000046
type_literal
root
clsid_literal
on
sid
0
size
23104
type_literal
stream
size
5701
name
\x05DigitalSignature
sid
58
type_literal
stream
size
524
name
\x05SummaryInformation
sid
2
type_literal
stream
size
1078
name
\u4192\u4472\u45fe\u4479\u4236\u4675\u4568\u433e\u44a6
sid
34
type_literal
stream
size
1078
name
\u4192\u4472\u467e\u422c\u423a\u47b5\u41ac\u4832
sid
35
type_literal
stream
size
1448782
name
\u4236\u4637\u47b3\u4126\u4825
sid
1
type_literal
stream
size
114672
name
\u430b\u4131\u4735\u3f3e\u45e8\u44f8\u4211\u44ef\u4568\u430b\u4831
sid
18
type_literal
stream
size
159232
name
\u430b\u4131\u4735\u403e\u46ec\u3a8c
sid
10
type_literal
stream
size
2746
name
\u430b\u4131\u4735\u403e\u46ec\u3c9e\u3aff\u44f0\u3aff\u4464\u4231\u4835
sid
12
type_literal
stream
size
68468
name
\u430b\u4131\u4735\u403e\u46ec\u3c9e\u3aff\u44f0\u3b7f\u412c\u44af\u482a
sid
13
type_literal
stream
size
318
name
\u430b\u4131\u4735\u403e\u46ec\u3c9e\u3aff\u44f0\u3dff\u46a8
sid
16
type_literal
stream
size
318
name
\u430b\u4131\u4735\u403e\u46ec\u3c9e\u3aff\u44f0\u3fbf\u4833
sid
17
type_literal
stream
size
766
name
\u430b\u4131\u4735\u403e\u46ec\u3c9e\u3cbf\u44a6\u3bbf\u41bb\u412f\u4830
sid
14
type_literal
stream
size
1078
name
\u430b\u4131\u4735\u403e\u46ec\u3c9e\u3cbf\u44a6\u3cbf\u4271\u4832
sid
15
type_literal
stream
size
68608
name
\u430b\u4131\u4735\u403e\u46ec\u3c9e\u4320\u41bb\u4824
sid
11
type_literal
stream
size
80896
name
\u430b\u4131\u4735\u403e\u46ec\u430f\u4235\u413a\u43ef\u3a8c
sid
9
type_literal
stream
size
1656
name
\u4840\u3b3f\u43f2\u4438\u45b1
sid
55
type_literal
stream
size
204
name
\u4840\u3c9e\u421d\u45fb
sid
51
type_literal
stream
size
81712
name
\u4840\u3f3f\u4577\u446c\u3b6a\u45e4\u4824
sid
57
type_literal
stream
size
6944
name
\u4840\u3f3f\u4577\u446c\u3e6a\u44b2\u482f
sid
56
type_literal
stream
size
80
name
\u4840\u3f7f\u4164\u422f\u4836
sid
54
type_literal
stream
size
5016
name
\u4840\u3fff\u43e4\u41ec\u45e4\u44ac\u4831
sid
3
type_literal
stream
size
4
name
\u4840\u4115\u4478\u42e6\u448c\u41f1\u45ec\u44ac\u4831
sid
38
type_literal
stream
size
36
name
\u4840\u411b\u4327\u3af2\u45f8\u44b7\u4831
sid
43
type_literal
stream
size
456
name
\u4840\u418a\u4337\u4472\u421d\u45fb
sid
4
type_literal
stream
size
8
name
\u4840\u4192\u4472
sid
33
type_literal
stream
size
48
name
\u4840\u41ca\u4330\u3bb1\u423b\u4626\u4237\u421c\u4634\u4468\u4226
sid
5
type_literal
stream
size
42
name
\u4840\u41ca\u4330\u3fb1\u3f12\u4528\u4238\u41b1\u4828
sid
6
type_literal
stream
size
48
name
\u4840\u41ca\u45f9\u46ce\u41a8\u45f8\u3f28\u4528\u4238\u41b1\u4828
sid
7
type_literal
stream
size
300
name
\u4840\u420f\u45e4\u4578\u3b28\u4432\u44b3\u4231\u45f1\u4836
sid
31
type_literal
stream
size
48
name
\u4840\u420f\u45e4\u4578\u4828
sid
30
type_literal
stream
size
14
name
\u4840\u4216\u4327\u4824
sid
40
type_literal
stream
size
444
name
\u4840\u421b\u432a\u45f6\u4735
sid
44
type_literal
stream
size
330
name
\u4840\u421b\u44b0\u4239\u421b\u432a\u45f6\u4735
sid
46
type_literal
stream
size
30
name
\u4840\u421b\u44b0\u4239\u430f\u422f
sid
45
type_literal
stream
size
14
name
\u4840\u421c\u4626\u4235\u4158\u422d\u45e6\u4836
sid
47
type_literal
stream
size
12
name
\u4840\u421c\u4675\u41ac\u3b28\u4472\u4577\u43f2
sid
48
type_literal
stream
size
36
name
\u4840\u421d\u45fb\u45dc\u43fc\u4828
sid
50
type_literal
stream
size
24
name
\u4840\u42cc\u41a8\u3aee\u46f2
sid
19
type_literal
stream
size
352
name
\u4840\u42dc\u4572\u41b7\u45f8
sid
49
type_literal
stream
size
40
name
\u4840\u430b\u4131\u4735
sid
8
type_literal
stream
size
60
name
\u4840\u430d\u4235\u45e6\u4572\u483c
sid
27
type_literal
stream
size
506
name
\u4840\u430d\u43e4\u42b2
sid
26
type_literal
stream
size
120
name
\u4840\u430f\u422f
sid
32
type_literal
stream
size
44
name
\u4840\u4320\u3bfb\u456c\u46a8\u43e4\u3baf\u41bb\u44e8\u4337\u4472
sid
53
type_literal
stream
size
270
name
\u4840\u4452\u45f6\u43e4\u3baf\u423b\u4626\u4237\u421c\u4634\u4468\u4226
sid
36
type_literal
stream
size
102
name
\u4840\u4452\u45f6\u43e4\u3faf\u3f12\u4528\u4238\u41b1\u4828
sid
37
type_literal
stream
size
900
name
\u4840\u448c\u44f0\u4472\u4468\u4837
sid
20
type_literal
stream
size
592
name
\u4840\u448c\u45f1\u44b5\u3b2f\u4472\u4327\u4337\u4472
sid
22
type_literal
stream
size
1764
name
\u4840\u448c\u45f1\u44b5\u3baf\u4239\u45f1
sid
23
type_literal
stream
size
6474
name
\u4840\u448c\u45f1\u44b5\u482f
sid
21
type_literal
stream
size
720
name
\u4840\u4495\u43a6\u4219\u4435\u45ac\u4336\u4472\u4836
sid
39
type_literal
stream
size
48
name
\u4840\u44de\u456a\u41e4\u4828
sid
52
type_literal
stream
size
4
name
\u4840\u454c\u4128\u4237\u448f\u41ef\u4568
sid
24
type_literal
stream
size
668
name
\u4840\u454e\u44b5\u4835
sid
28
type_literal
stream
size
340
name
\u4840\u4559\u44f2\u4568\u4737
sid
42
type_literal
stream
size
40
name
\u4840\u4596\u3bec\u43ec\u3c68\u45a4\u482b
sid
41
type_literal
stream
size
300
name
\u4840\u460c\u45f6\u4432\u418a\u4337\u4472
sid
25
type_literal
stream
size
104
name
\u4840\u464e\u4468\u3db7\u44e4\u4333\u42b1
sid
29
ExifTool file metadata
MIMEType
image/vnd.fpx

ModifyDate
2013:07:19 05:21:18

Words
2

Author
GlavSoft LLC.

FileType
FPX

Title
Installation Database

Comments
This installer database contains the logic and data required to install TightVNC.

Pages
200

FileTypeExtension
fpx

Template
Intel;1033

Keywords
Installer

CreateDate
2013:07:19 05:21:18

Security
Read-only recommended

Subject
TightVNC

CodePage
Windows Latin 1 (Western European)

RevisionNumber
{082A4887-6A18-43A9-95CD-C150FDE91456}

Software
Windows Installer XML (3.5.2519.0)

Execution parents
PE resource-wise parents
Compressed bundles
File identification
MD5 9f5e660c6bad014c8a0ce5eddf4bb50b
SHA1 f619e5c7fbc63744ad8606f20ac11d237eabb132
SHA256 1b09204b1d22f20adca1c505e8f407938ad5382a095b8b0dd26cb1f626e9ee7c
ssdeep
49152:HebyHhgZp69kYoMrEKv3jsRY8MJIxt6KVWBiJX2SS28cml+MX3j:HMyBgZpvYoQEKvTs68MmXhZ2S3ml

File size 2.0 MB ( 2105344 bytes )
File type Windows Installer
Magic literal
CDF V2 Document, Little Endian, Os: Windows, Version 6.1, Code page: 1252, Title: Installation Database, Subject: TightVNC, Author: GlavSoft LLC., Keywords: Installer, Comments: This installer database contains the logic and data required to install TightVNC., Template: Intel

TrID Microsoft Windows Installer (89.6%)
Windows Installer Patch (8.7%)
Generic OLE2 / Multistream Compound File (1.5%)
Tags
msi signed via-tor

VirusTotal metadata
First submission 2013-07-24 11:34:32 UTC ( 5 years, 4 months ago )
Last submission 2018-09-05 15:48:59 UTC ( 2 months, 2 weeks ago )
File names tightvnc.msi
tightvnc-2.7.10-setup-32bit.msi
Unconfirmed 558659.crdownload
9f801d.msi
tightvnc-2.7.10-setup-32bit.msi
tightvnc-2-7-10-en-win.msi
383578
TightVNC.msi
Unconfirmed 706031.crdownload
tightvnc-2.7.10-setup-32bit[1].msi
tightvnc-2.7.10-setup-32bit.msi
TightVNC_V2.7.10~2014-04-24.msi
tightvnc-2.7.10-setup-32bit (1).msi
filename
vnc32.msi
tightvnc-2.7.10-setup-32bit.msi
tightvnc-2.7.10-setup-32bit.msi
tightvnc-2.7.10.msi
tightvnc-2.7.10-setup-32bit (2).msi
TightVNC 2.7.10.exe
TightVNC32_setup.msi
tightvnc_32bit.msi
150b12.msi
TightVnc2.7.10setp-32bit_cnet-com_2013Jun_ChromeRefusesAnyOther2710-32b-ver-asMalicious_2014July.msi
tightvnc-2.7.10-setup-32bit.msi
Advanced heuristic and reputation engines
Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!