GbpSv.exe

Gbp Service

Banco do Brasil S.A.

It runs as a separate (within the context of its own process) windows Service named “Gbp Service”.
Publisher:
GAS Tecnologia  (signed by Banco do Brasil S.A.)

Product:
Gbp Service

Description:
G-Buster Browser Defense - Service

Version:
3.2.2.0

MD5:
43b1125d14e8797fda9d5e167eb50ae3

SHA-1:
91f2afa18c6cd6e7a9f8517a257032f435b4f279

SHA-256:
403b5f1aa6deda4a492fa410256827ef41dc68003eee191cb622cb7fd2fcd722

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/23/2024 11:10:22 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Dropper.Gen
7.11.30.172

Rising Antivirus
PE:PUA.XPACK-RDM!5.1
23.00.65.16212

File size:
516 KB (528,424 bytes)

Product version:
3.2.2.0

Copyright:
Copyright © 2003-2014, ® GAS Tecnologia

Trademarks:
GbpSv

Original file name:
GbpSv.exe

File type:
Executable application (Win32 EXE)

Language:
Brazilian Portuguese

Common path:
C:\Program Files\gbplugin\gbpsv.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/29/2011 9:00:00 PM

Valid to:
10/1/2014 8:59:59 PM

Subject:
CN=Banco do Brasil S.A., OU=Diretoria de Tecnologia, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Banco do Brasil S.A., L=Brasilia, S=Distrito Federal, C=BR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7D3250B27E0547C77307030491B42802

File PE Metadata
Compilation timestamp:
3/14/2014 7:19:23 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:cWSL4vmzO6IJIhjaTj79l01J0+5rNQXmE+kWl+5GiU:ziO6cIhjiH01J0+5umKEz

Entry address:
0x1130F9

Entry point:
57, C7, 04, 24, BB, DD, 55, 7A, 9C, C7, 04, 24, 35, 08, EB, C4, 9C, C7, 44, 24, 04, 47, 2B, 1D, E0, C7, 04, 24, 20, EA, CC, 33, 52, 60, FF, 34, 24, 8D, 64, 24, 2C, E9, 7A, 74, 07, 00, F9, F9, F5, F6, C7, 0C, 80, FC, 05, E9, 47, 39, 07, 00, 00, 00, 47, 65, 74, 4D, 6F, 64, 75, 6C, 65, 48, 61, 6E, 64, 6C, 65, 57, 00, 9C, 84, E9, 83, C6, 02, E9, 12, D0, 04, 00, 00, 00, 47, 65, 74, 4C, 6F, 63, 61, 6C, 65, 49, 6E, 66, 6F, 41, 00, 66, C7, 44, 24, 08, 33, 1A, 8D, 64, 24, 0C, 0F, 86, 36, D0, 04, 00, C1, F7, 17, 8B...
 
[+]

Code size:
716.5 KB (733,696 bytes)

Service
Display name:
Gbp Service

Service name:
GbpSv

Description:
Service for G-Buster Browser Defense

Type:
Win32OwnProcess

Group:
GbPlugin Group


Scan GbpSv.exe - Powered by Reason Core Security