vfuninst.exe

VentaFax/Venta4Net

Venta Association

Publisher:
Venta Association  (signed and verified)

Product:
VentaFax/Venta4Net

Version:
7.7.248.516

MD5:
3b2740fcae4c9094246e5f57fc23f9be

SHA-1:
47fb964c4598700d7641b3f178224f272186fece

SHA-256:
d6ff836de5b6a9d60d41a33ef76a2024a5a216aeb23dd71cbbd6c2f127c59425

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 10:35:41 PM UTC  (today)

File size:
579.6 KB (593,528 bytes)

Product version:
7.7.248.604

Copyright:
Copyright 1997-2016 Venta Association. All rights reserved.

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\vfuninst.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
12/2/2013 2:00:00 AM

Valid to:
12/3/2018 1:59:59 AM

Subject:
CN=Venta Association, O=Venta Association, STREET="of. 503, 29a, Bolshoy pr. (P.S.)", L=St.Petersburg, S=n/a, PostalCode=197198, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
483D556CBC0F96A26313B4D3A6C4C870

File PE Metadata
Compilation timestamp:
1/18/2016 12:48:27 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:Q5j2kqILW5qKe3Q4nZTVCP6PqBz0Swh482ZU0/qVdAA3yEN/NH4l9Er:Mi2L1K4DZTEyPqBz0Swh4MNH4l9Er

Entry address:
0x32274

Entry point:
55, 8B, EC, B9, 04, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 51, B8, EC, 0D, 43, 00, E8, 06, F0, FC, FF, 33, C0, 55, 68, F9, 24, 43, 00, 64, FF, 30, 64, 89, 20, A1, AC, 72, 43, 00, C6, 00, 00, A1, 8C, 72, 43, 00, BA, 10, 25, 43, 00, E8, DD, EE, FC, FF, 8D, 55, E8, 33, C0, E8, 7B, ED, FC, FF, 8B, 45, E8, 8D, 55, EC, E8, 84, F2, FC, FF, 8B, 55, EC, A1, 10, 72, 43, 00, E8, BB, EE, FC, FF, 8B, 15, 10, 72, 43, 00, 8B, 12, 8D, 45, E4, B9, 30, 25, 43, 00, E8, DE, EE, FC, FF, 8B, 45, E4, E8, F6, EE, FC, FF, 50, E8...
 
[+]

Entropy:
6.3281

Developed / compiled with:
Microsoft Visual C++

Code size:
194 KB (198,656 bytes)

Scan vfuninst.exe - Powered by Reason Core Security