tcpz64.exe

TCP-Z

deepxw Software

The application tcpz64.exe, “TCP-Z, TCP/IP Connection Patch and Monitor.” by deepxw Software has been detected as a potentially unwanted program by 10 anti-malware scanners.
Publisher:
deepxw  (signed by deepxw Software)

Product:
TCP-Z

Description:
TCP-Z, TCP/IP Connection Patch and Monitor.

Version:
2.5.1.50

MD5:
1b4300aa2572a4f6821888a4a8ed05b4

SHA-1:
be4fbe97fb2397f49bd45782722a55ea042fd412

SHA-256:
02d3273d36434d92c97d37946a53aa86ed261722e8d2b764c3a0a5423da28717

Scanner detections:
10 / 68

Status:
Potentially unwanted

Analysis date:
5/8/2024 8:39:50 PM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Trojan.Agent
7.1.1

avast!
Win32:Tcpz-B [PUP]
2014.9-160103

ESET NOD32
Win32/TCPZ.F potentially unsafe (variant)
10.12362

G Data
Win64.Application.Agent.0ENICE
16.1.25

McAfee
Artemis!1B4300AA2572
5600.6531

NANO AntiVirus
Trojan.Win32.TCPZ.cstlsp
0.30.26.3725

Quick Heal
Trojan.ZAgent.r5
1.16.14.00

Sophos
TCP-Z TCP Patch and Monitor (PUA)
4.98

Trend Micro House Call
TROJ_GEN.R08JH0ALO13
7.2.3

VIPRE Antivirus
Trojan.Win32.Generic
44326

File size:
777.9 KB (796,520 bytes)

Product version:
2.5.1.50

Copyright:
(c) deepxw. All rights reserved.

Original file name:
TCPZ.exe

File type:
Executable application (Win64 EXE)

Digital Signature
Signed by:

Authority:
deepxw Software

Valid from:
1/19/2008 1:00:00 AM

Valid to:
1/1/2012 1:00:00 AM

Subject:
CN=deepxw Software, E=deepxw, O=deepxw Software

Issuer:
CN=deepxw Software, E=deepxw, O=deepxw Software

Serial number:
18232ACE5210A6B04D8617A50040AF4C

File PE Metadata
Compilation timestamp:
4/7/2009 2:07:03 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
12288:3W0Mc3C7PDstosyTGFdwp+Nct93Bb5toep:G3c3C3OJFC+Nct9Tvp

Entry address:
0x43270

Entry point:
48, 83, EC, 28, E8, D7, 5D, 00, 00, 48, 83, C4, 28, E9, 0E, FD, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 66, 66, 66, 90, 66, 66, 66, 90, 66, 90, 48, 3B, 0D, B9, 28, 04, 00, 75, 11, 48, C1, C1, 10, 66, F7, C1, FF, FF, 75, 02, F3, C3, 48, C1, C9, 10, E9, 61, 5E, 00, 00, CC, 48, 83, EC, 38, 4D, 85, C9, 49, 8B, C0, 74, 74, 48, 85, C9, 75, 2D, E8, BA, 25, 00, 00, 45, 33, C9, 45, 33, C0, 33, D2, 33, C9, 48, C7, 44, 24, 20, 00, 00, 00, 00, C7, 00, 16, 00, 00, 00, E8...
 
[+]

Entropy:
6.4258

Code size:
377 KB (386,048 bytes)

Remove tcpz64.exe - Powered by Reason Core Security