fg729p.exe

Dynamic Internet Technology Inc.

This is a setup program which is used to install the application. The file has been seen being downloaded from download1uk.softpedia.com.
Publisher:
Dynamic Internet Technology, Inc.  (signed by Dynamic Internet Technology Inc.)

Description:
Fast and Secure Gateway to Internet Freedom

Version:
7, 2, 9, 0

MD5:
91a2ced09a357df31960363860cb1c83

SHA-1:
2e3003a97f76555c68d876a914f9139b9c04482f

SHA-256:
2eda8ec8fa13fce92959414246cfca00640aa6abeb26a97379215fa01d0954bf

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/20/2024 2:51:40 PM UTC  (today)

Scan engine
Detection
Engine version

IKARUS anti.virus
Trojan.Win32.Spy
t3scan.2.2.29

Rising Antivirus
PE:Malware.XPACK-HIE/Heur!1.9C48
23.00.65.131222

File size:
1.8 MB (1,870,616 bytes)

Product version:
0, 0, 0, 0

Copyright:
Copyright (C) 2003-2010

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\documents and settings\hofmen\mes documents\downloads\fg729p.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
7/27/2010 7:41:22 PM

Valid to:
7/27/2013 7:41:17 PM

Subject:
CN=Dynamic Internet Technology Inc., O=Dynamic Internet Technology Inc., C=US

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000012A154E407D

File PE Metadata
Compilation timestamp:
5/11/2012 12:55:13 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
49152:h2oTxVXc0NbTKFuEjRVom2jovvMuP1jcbcFZLfyrP4dWqe7:goB2jRn2uTP1fLfUIWf

Entry address:
0x52FD3

Entry point:
52, BA, 64, 00, 00, 00, 85, D2, 74, 1D, B9, 00, 10, 00, 00, 85, C9, 74, 07, 01, C8, 01, D8, 49, EB, F5, 52, 54, 54, FF, 15, 33, 10, 54, 00, 5A, 4A, EB, DF, 5A, E9, 00, 10, 3B, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 06, 00, 58, 12, 00, 80, 48, 00, 00, 80, 03, 00, 00, 00, 88, 00, 00, 80, 04, 00, 00, 00, E0, 00, 00, 80, 05, 00, 00, 00, F8, 00, 00, 80, 06, 00, 00, 00, D8, 01, 00, 80, 0E, 00, 00, 00, A8, 02, 00, 80, 10, 00, 00, 00, D0, 02, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Code size:
616 KB (630,784 bytes)

2 Windows Firewall Allowed Programs
Name:
C:\Documents and Settings\HoFmEn\Mes documents\Downloads\fg729p.exe

Name:
C:\Documents and Settings\HP\Desktop\VPN\fg729p.exe


The file fg729p.exe has been discovered within the following programs.

Cloob Messenger  by cloob.com
Cloob Messenger bundles a branded version of the Conduit Toolbar, which delivers search based advertising and results. During installation the user is presented in some cases with the option to install the toolbar. Once accepted, the packaged executable, ConduitInstaller.
www.cloob.com/etc/messenger
About 10% of users remove it
Wondershare PDF to Word Converter  by Wondershare PDF to Word Converter
About 9% of users remove it
 
Powered by Should I Remove It?

The file fg729p.exe has been seen being distributed by the following URL.

Scan fg729p.exe - Powered by Reason Core Security