GbpSv.exe

Gbp Service

CAIXA ECONÔMICA FEDERAL

It runs as a separate (within the context of its own process) windows Service named “Gbp Service”.
Publisher:
CAIXA ECONÔMICA FEDERAL  (signed and verified)

Product:
Gbp Service

Description:
G-Buster Browser Defense - Service

Version:
2,1,10,2

MD5:
683e31318874d45f50e96a0f2c235424

SHA-1:
bfc0be1ccd584be32933319bb5dc8e50d471a0dd

Scanner detections:
5 / 68

Status:
Clean  (5 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
1/14/2025 10:51:19 AM UTC  (today)

Scan engine
Detection
Engine version

Clam AntiVirus
PUA.Packed.PECompact-1
0.98/18011

Quick Heal
(Suspicious) - DNAScan
11.16.11.00

Rising Antivirus
Suspicious
23.00.65.161106

Trend Micro House Call
PAK_Generic.001
7.2.313

Trend Micro
PAK_Generic.001
10.465.08

File size:
52.1 KB (53,320 bytes)

Product version:
2,1,10,2

Copyright:
Copyright © 2003-2009, G-Buster Browser Defense

Trademarks:
GbpSv

Original file name:
GbpSv.exe

File type:
Executable application (Win32 EXE)

Language:
Brazilian Portuguese

Common path:
C:\Program Files\gbplugin\gbpsv.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
7/21/2008 5:08:43 PM

Valid to:
7/21/2010 5:08:43 PM

Subject:
CN=CAIXA ECONÔMICA FEDERAL, OU=GESIN - GN SEGURANÇA DA INFORMAÇÃO, O=CAIXA ECONÔMICA FEDERAL, L=BRASILIA, S=DF, C=BR

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
2469DB2213039A47B1DE2B0F126EBF79

File PE Metadata
Compilation timestamp:
4/3/2009 11:35:22 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
1536:0pQuBYpUKRjtcmYg2pKHt5YGqeCF+iMn4gP:0fBMQZg2KH/E+iMnZ

Entry address:
0x6848

Entry point:
B8, 4C, 0A, 42, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, D4, E7, 88, 52, 5D, 2C, 26, DD, 27, B5, 39, 83, 43, A5, 9F, 3F, 85, 4F, 90, 96, AA, F7, B5, 41, E9, C7, 3B, 5F, 92, E2, 24, 28, A3, 6F, 45, 93, B5, 77, 85, B2, EC, 81, BF, 7F, FD, 3A, 6E, B5, FD, FD, F4, BF, EE, EF, A8, 87, 64, C5, D7, 80, 19, 14, 03, 99, 66, 45, 11, 00, 7D, 4D, 18, 4B, 8F, 98, 8F, 03, B9, 95, FC, E4, 3A, B9, 78, 59, 7A, 10, 91, DC, 7B, 8E, B9, EC, DA...
 
[+]

Packer / compiler:
PECompact v2

Code size:
72 KB (73,728 bytes)

Service
Display name:
Gbp Service

Service name:
GbpSv

Description:
Service for G-Buster Browser Defense

Type:
Win32OwnProcess

Group:
GbPlugin Group


Scan GbpSv.exe - Powered by Reason Core Security