DualDesk.exe

DualDesk

Advantig Corporation

It runs as a windows Service named “DD_Service”.
Publisher:
Advantig  (signed by Advantig Corporation)

Product:
DualDesk

Description:
Remote desktop server for Win32

Version:
20, 5, 0, 0

MD5:
82f331c236dec47ec97f082d55232d65

SHA-1:
49e837707dfc0a14168ad016e8ae6f37815b853d

SHA-256:
a179eca733acccad55d94c893d7df3debc8a364c2e5111c1bb65239e261e504a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/29/2024 10:12:40 PM UTC  (today)

File size:
680.5 KB (696,840 bytes)

Product version:
20, 5, 0, 0

Copyright:
Copyright © 2001-2016 Advantig

Trademarks:
DualDesk

Original file name:
DualDesk.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\dd20.5.0201611010918\dualdesk.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
3/23/2016 7:00:00 PM

Valid to:
3/24/2019 6:59:59 PM

Subject:
CN=Advantig Corporation, O=Advantig Corporation, STREET=801 Old Hollow Rd., L=Winston-Salem, S=NC, PostalCode=27105, C=US

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
669AFBF2854848D4324C08CC57599B1A

File PE Metadata
Compilation timestamp:
9/23/2016 2:25:53 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:ngTH1w5WkyV2mXhJuT5KOHuKhKSWSA2wrTPsXTnpiCBnsixl44yL7hLKOe/hqo3s:ngTH1w5W5VdroHb09joHu0V/j1OTZz8G

Entry address:
0x722FC

Entry point:
E8, 89, E5, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 18, 01, 00, 00, A1, 20, 16, 4A, 00, 33, C5, 89, 45, FC, 8B, 45, 08, 83, 8D, EC, FE, FF, FF, FF, 53, 33, DB, 56, 8D, B5, F4, FE, FF, FF, 89, 9D, E8, FE, FF, FF, 3B, C3, 75, 27, E8, 4A, 1F, 00, 00, 89, 18, E8, 30, 1F, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, 56, CE, FF, FF, 83, C4, 14, 83, C8, FF, E9, D0, 00, 00, 00, 57, 50, FF, 15, 78, A1, 48, 00, 85, C0, 0F, 84, 9D, 00, 00, 00, 8D, 85, F4, FE, FF, FF, 50, 68, 05, 01, 00, 00...
 
[+]

Entropy:
6.6393

Code size:
547.5 KB (560,640 bytes)

Service
Display name:
DD_Service

Description:
Provides secure remote desktop sharing

Type:
Win32OwnProcess, InteractiveProcess

Depends on:
Tcpip


Scan DualDesk.exe - Powered by Reason Core Security