vfdrv32.exe

VentaFax/Venta4Net

Venta Association

It runs as a windows Service named “VentaFax Engine”.
Publisher:
Venta Association  (signed and verified)

Product:
VentaFax/Venta4Net

Description:
VentaFax Engine

Version:
7, 1, 0, 4

MD5:
60d595bd27d261c6d33af7339fa9aecf

SHA-1:
8609caff45b619b32782a9837560b2946465bdad

SHA-256:
682d9c8566a13797a464c94d084aa0cc3208999f31833a8ac41576cc08e23e22

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 9:47:22 AM UTC  (today)

File size:
1.1 MB (1,189,880 bytes)

Product version:
7, 1, 0, 1

Copyright:
Copyright 2013 Venta Association

Original file name:
vfdrv32.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\venta\ventafax & voice\vfdrv32.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
11/30/2012 3:00:00 AM

Valid to:
12/1/2013 2:59:59 AM

Subject:
CN=Venta Association, O=Venta Association, STREET="of. 503, 29A Bolshoi pr. P.S.", L=St. Petersburg, S=n/a, PostalCode=197198, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
0099CB4F65BBA41E3C430CCE70D21507C7

File PE Metadata
Compilation timestamp:
9/4/2013 12:56:43 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:hXCIeb/e1G42jsq3R/WXhcO7NgKvoF/s7D/Z5Og+JbX:hSE1G4K/WXh2goeD/Z5Og+JbX

Entry address:
0x894C3

Entry point:
E8, D8, 6F, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 38, 53, 57, FF, 75, 08, 8D, 4D, C8, E8, B1, DA, FF, FF, 8B, 45, 10, 8B, 7D, 0C, 33, DB, 3B, C3, 74, 02, 89, 38, 3B, FB, 75, 2D, E8, 25, 1A, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, 74, 1C, 00, 00, 83, C4, 14, 38, 5D, D4, 74, 07, 8B, 45, D0, 83, 60, 70, FD, 33, C0, 33, D2, E9, 3F, 02, 00, 00, 39, 5D, 14, 74, 0C, 83, 7D, 14, 02, 7C, C8, 83, 7D, 14, 24, 7F, C2, 56, 8B, 75, C8, 89, 5D, F0, 89, 5D, F4, 8A, 07, 47, 83, BE, AC, 00...
 
[+]

Code size:
600 KB (614,400 bytes)

Service
Display name:
VentaFax Engine

Service name:
VfDrv32

Type:
Win32OwnProcess, InteractiveProcess

Depends on:
TapiSrv


Scan vfdrv32.exe - Powered by Reason Core Security