postvar.exe

PostVerPDP

Zeataline Projects Limited

Publisher:
Zeataline Projects Limited  (signed and verified)

Product:
PostVerPDP

Version:
1.00

MD5:
d02fc07897f43f8e945a8798a06bc6e8

SHA-1:
1de86f04e084c5dcdb58a1f2bbeda03be403a0ae

SHA-256:
455bb251358346650f2d7971f5cac25d404104d33939015ca84d37de650fe108

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/26/2024 9:08:30 AM UTC  (today)

Scan engine
Detection
Engine version

SUPERAntiSpyware
Trojan.Agent/Gen-Downloader
9768

File size:
25.6 KB (26,176 bytes)

Product version:
1.00

Original file name:
postvar.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\pipedata pro 9.1\data\gensets\postvar.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
2/19/2013 3:00:00 AM

Valid to:
2/20/2015 2:59:59 AM

Subject:
CN=Zeataline Projects Limited, OU=Software, O=Zeataline Projects Limited, L=London, S=London, C=GB

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
69C76B70231FC3CB4D41642C8F4030FC

File PE Metadata
Compilation timestamp:
2/11/2014 12:46:47 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
192:1risohPuANLYrE+CaF06QI9DX4pwwrhnyb8uiEou7+wse+PjPuyQ/tgUoNd:UNcrE+jGe9DX4Owrhnyti3uSPLoS

Entry address:
0x128C

Entry point:
68, 70, 13, 40, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 7D, A4, 23, 47, DB, 2F, 1A, 45, BB, 12, E1, D4, C2, 30, 2C, 4D, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 50, 72, 6F, 6A, 65, 63, 74, 31, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 07, 00, 00, 00, B4, 19, 40, 00, 01, 00, 00, 00, B8, 18, 40, 00, 00, 00, 00, 00, FF, FF, FF, FF, FF, FF, FF, FF, 00, 00, 00, 00, 0C, 19, 40, 00, 08, 30, 40, 00, 01, 00, 00, 00, 1C, 13, 40, 00...
 
[+]

Entropy:
3.8992

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
8 KB (8,192 bytes)

Scan postvar.exe - Powered by Reason Core Security