× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: df4050b3307ef3b1f7082217516827e705e8b26324591966e617e169a84156da
File name: 020ca266590baa42dc9254e13b83f50c
Detection ratio: 11 / 55
Analysis date: 2014-09-13 16:09:31 UTC ( 4 years, 6 months ago )
Antivirus Result Update
Ad-Aware Gen:Trojan.Heur2.FU.yq0@a80j33ii 20140913
AhnLab-V3 Spyware/Win32.Zbot 20140913
BitDefender Gen:Trojan.Heur2.FU.yq0@a80j33ii 20140913
Emsisoft Gen:Trojan.Heur2.FU.yq0@a80j33ii (B) 20140913
GData Gen:Trojan.Heur2.FU.yq0@a80j33ii 20140913
Malwarebytes Spyware.Zbot.FWED 20140913
McAfee PWSZbot-FABY!020CA266590B 20140913
McAfee-GW-Edition PWSZbot-FABY!020CA266590B 20140913
eScan Gen:Trojan.Heur2.FU.yq0@a80j33ii 20140913
TrendMicro TROJ_FORUCON.BMC 20140913
TrendMicro-HouseCall TROJ_FORUCON.BMC 20140913
AegisLab 20140913
Yandex 20140913
Antiy-AVL 20140913
Avast 20140913
AVG 20140913
Avira (no cloud) 20140913
AVware 20140913
Baidu-International 20140913
Bkav 20140913
ByteHero 20140913
CAT-QuickHeal 20140913
ClamAV 20140913
CMC 20140913
Comodo 20140913
Cyren 20140913
DrWeb 20140913
ESET-NOD32 20140913
F-Prot 20140913
F-Secure 20140913
Fortinet 20140913
Ikarus 20140913
Jiangmin 20140912
K7AntiVirus 20140912
K7GW 20140912
Kaspersky 20140913
Kingsoft 20140913
Microsoft 20140913
NANO-Antivirus 20140913
Norman 20140913
nProtect 20140912
Panda 20140913
Qihoo-360 20140913
Rising 20140913
Sophos AV 20140913
SUPERAntiSpyware 20140913
Symantec 20140913
Tencent 20140913
TheHacker 20140912
TotalDefense 20140913
VBA32 20140911
VIPRE 20140913
ViRobot 20140913
Zillya 20140913
Zoner 20140912
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file.
FileVersionInfo properties
Copyright
Copyright (c) 2000-2012 Cortado AG

Publisher Cortado AG
Product ThinPrint Virtual Channel Gateway
Original name TPVCGateway.exe
Internal name TPVCGateway
File version 8,6,239,1
Description ThinPrint Virtual Channel Gateway Service
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2014-09-10 06:10:41
Entry Point 0x00001240
Number of sections 4
PE sections
Number of PE resources by type
RT_CURSOR 16
RT_GROUP_CURSOR 15
RT_STRING 13
RT_ICON 12
RT_DIALOG 4
RT_BITMAP 2
RT_GROUP_ICON 2
RT_MESSAGETABLE 1
MOF 1
RT_VERSION 1
Number of PE resources by language
ENGLISH US 52
NEUTRAL 15
PE resources
File identification
MD5 020ca266590baa42dc9254e13b83f50c
SHA1 c8321f9587350126073a1c79d012181e8a4f81ff
SHA256 df4050b3307ef3b1f7082217516827e705e8b26324591966e617e169a84156da
ssdeep
6144:B9hUKVDSIEeciVRDxTmJPW7Sx+n72unQAbGU9:B9hBdStIV4s2unx

authentihash 8b27b70540a547e11bd51d83a4a46f2af742161210c5005a360f6553e0bc96b8
imphash a5fe2ad43730e60cd112b7f9d4b8e77c
File size 387.5 KB ( 396800 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID Win32 Executable MS Visual C++ (generic) (67.3%)
Win32 Dynamic Link Library (generic) (14.2%)
Win32 Executable (generic) (9.7%)
Generic Win/DOS Executable (4.3%)
DOS Executable Generic (4.3%)
Tags
peexe

VirusTotal metadata
First submission 2014-09-13 16:09:31 UTC ( 4 years, 6 months ago )
Last submission 2014-09-13 16:09:31 UTC ( 4 years, 6 months ago )
File names df4050b3307ef3b1f7082217516827e705e8b26324591966e617e169a84156da.exe
TPVCGateway.exe
TPVCGateway
020ca266590baa42dc9254e13b83f50c
Advanced heuristic and reputation engines
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!