tcpz64.exe

TCP-Z

deepxw Software

The application tcpz64.exe, “TCP-Z, TCP/IP Connection Patch and Monitor.” by deepxw Software has been detected as a potentially unwanted program by 6 anti-malware scanners.
Publisher:
deepxw  (signed by deepxw Software)

Product:
TCP-Z

Description:
TCP-Z, TCP/IP Connection Patch and Monitor.

Version:
2.5.1.50

MD5:
4a11e5043e5f9a7b1f6ae325f2a8c83c

SHA-1:
9ae191816263783a09340bb7f459c30d5a765db5

Scanner detections:
6 / 68

Status:
Potentially unwanted

Analysis date:
4/18/2024 7:20:50 PM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Trojan.Agent
7.1.1

avast!
Win32:Tcpz-B [PUP]
2014.9-140922

ESET NOD32
Win32/TCPZ (variant)
8.10348

McAfee
Artemis!4A11E5043E5F
5600.7000

NANO AntiVirus
Trojan.Win32.TCPZ.cstlsp
0.28.2.61861

Sophos
TCP-Z TCP Patch and Monitor
4.98

File size:
777.4 KB (796,008 bytes)

Product version:
2.5.1.50

Copyright:
(c) deepxw. All rights reserved.

Original file name:
TCPZ.exe

File type:
Executable application (Win64 EXE)

Common path:
C:\Program Files\00000000\portal-client\tcpip.sys patcher for vista\variant 1\tcpz64.exe

Digital Signature
Signed by:

Authority:
deepxw Software

Valid from:
1/18/2008 8:00:00 PM

Valid to:
12/31/2011 8:00:00 PM

Subject:
CN=deepxw Software, E=deepxw, O=deepxw Software

Issuer:
CN=deepxw Software, E=deepxw, O=deepxw Software

Serial number:
18232ACE5210A6B04D8617A50040AF4C

File PE Metadata
Compilation timestamp:
2/5/2009 11:00:48 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
12288:PbgXwxbrddZrBjFCzZo0zJ/lsx3vNPSO4a8BRtoe/:TYwxbrx2W0zo3vNPStBRv/

Entry address:
0x43180

Entry point:
48, 83, EC, 28, E8, D7, 5D, 00, 00, 48, 83, C4, 28, E9, 0E, FD, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 66, 66, 66, 90, 66, 66, 66, 90, 66, 90, 48, 3B, 0D, A9, 29, 04, 00, 75, 11, 48, C1, C1, 10, 66, F7, C1, FF, FF, 75, 02, F3, C3, 48, C1, C9, 10, E9, 61, 5E, 00, 00, CC, 48, 83, EC, 38, 4D, 85, C9, 49, 8B, C0, 74, 74, 48, 85, C9, 75, 2D, E8, BA, 25, 00, 00, 45, 33, C9, 45, 33, C0, 33, D2, 33, C9, 48, C7, 44, 24, 20, 00, 00, 00, 00, C7, 00, 16, 00, 00, 00, E8...
 
[+]

Code size:
377 KB (386,048 bytes)

Remove tcpz64.exe - Powered by Reason Core Security