ktp.exe

Kurupira NT Protocol

KURUPIRA.NET

Publisher:
KURUPIRA.NET  (signed and verified)

Product:
Kurupira NT Protocol

Version:
1.00

MD5:
ddad34081c49acd600d1498a3581b779

SHA-1:
ceaa627abaa72b74a0670f0d5f0a0d700c9ffb9a

SHA-256:
e9d9b37498f4d7cb4b8f8f50e3c762cb89d5c2c5f96f0c53a5a6e69fc80d00d7

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/19/2024 1:00:40 AM UTC  (today)

Scan engine
Detection
Engine version

Rising Antivirus
PE:Trojan.VBInject!1.64FA
23.00.65.16210

Trend Micro House Call
Suspicious_GEN.F47V1111
7.2.43

File size:
138.2 KB (141,496 bytes)

Product version:
1.00

Copyright:
Kurupira.NET (c)

Trademarks:
Kurupira.NET (c)

Original file name:
ktp.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\ProgramData\kurupira\webfilter\ktp.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
5/22/2012 1:00:00 AM

Valid to:
5/23/2015 12:59:59 AM

Subject:
CN=KURUPIRA.NET, O=KURUPIRA.NET, STREET="R. CRISTIANO OTONI, 275, SL 113", L=PEDRO LEOPOLDO, S=MG, PostalCode=33600-000, C=BR

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
05F4AEE4F7D8C03989A29984E7DA6B83

File PE Metadata
Compilation timestamp:
5/17/2011 3:17:07 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
1536:fNnBk/y6fmI7JwTEuWuwh069RKv56rwv55NV18sliAFJpFmhYJ4:fNnBgySzk5I0sE5HhHnvlhrP6

Entry address:
0x2F74

Entry point:
68, 5C, 35, 40, 00, E8, EE, FF, FF, FF, 00, 00, 40, 00, 00, 00, 30, 00, 00, 00, 38, 00, 00, 00, 00, 00, 00, 00, C4, 6D, 6C, A0, FA, AC, B4, 45, B7, BF, 75, 13, AC, A5, B3, 5D, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 69, 6F, 6E, 20, 20, 20, 6B, 6E, 74, 70, 00, 3D, 20, 20, 00, 33, 39, 33, 32, 31, 36, 0D, 00, 00, 00, 00, 88, 00, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 01, 00, 00, 00, 02, 01, 7F, 95, 28, C3, 0E, 44, 86, BA, 6E, 82, DF, 1B, B3, 92, 01, 00, 00, 00, 98, 00, 00, 00, A8, 00, 00, 00, 01, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
120 KB (122,880 bytes)

Scan ktp.exe - Powered by Reason Core Security