ger_r_trl_2012_is_tvga.exe

G Data Security Software

G DATA Software AG

This is a setup program which is used to install the application. The file has been seen being downloaded from qsmirror.gdatasecurity.de.
Publisher:
G DATA Software AG  (signed and verified)

Product:
G Data Security Software

Description:
G Data InternetSecurity 2012

Version:
22.0.7.2

MD5:
2ce4fe48b08ae266e497016fe64d1dc8

SHA-1:
057391aac1783716ccabf13c77b7d287dba4c90b

SHA-256:
93023d6f34a0c7bdf29e77bab315e6a2c6f0b0c06ad4b9f8fa5bfc08b69a42db

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/29/2024 5:38:44 AM UTC  (today)

File size:
228.8 MB (239,894,912 bytes)

Product version:
22.0.7.2

Copyright:
© G Data Software AG. All rights reserved.

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\ger_r_trl_2012_is_tvga.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
10/21/2010 2:28:00 PM

Valid to:
10/21/2013 2:27:55 PM

Subject:
E=sign@gdata.de, CN=G DATA Software AG, O=G DATA Software AG, L=Bochum, S=Nordrhein-Westfalen, C=DE

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000012BCEF5C311

File PE Metadata
OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6291456:IrrqO9TiYR5Cip9xiQ9bMmLih+ZbQnjxqg1bz8XjfQX:0diYRMifjRMSiKWxpbzSMX

Entry address:
0x3166E

Entry point:
E8, 2B, 70, 00, 00, E9, 79, FE, FF, FF, 3B, 0D, 0C, 20, 46, 00, 75, 02, F3, C3, E9, AD, 70, 00, 00, 8B, C1, 83, 60, 04, 00, 83, 60, 08, 00, C7, 00, 10, 42, 45, 00, C3, 8B, FF, 55, 8B, EC, 53, 8B, 5D, 08, 56, 57, 8B, F9, C7, 07, 10, 42, 45, 00, 8B, 03, 85, C0, 74, 26, 50, E8, F9, 71, 00, 00, 8B, F0, 46, 56, E8, 0C, 07, 00, 00, 59, 59, 89, 47, 04, 85, C0, 74, 12, FF, 33, 56, 50, E8, 68, 71, 00, 00, 83, C4, 0C, EB, 04, 83, 67, 04, 00, C7, 47, 08, 01, 00, 00, 00, 8B, C7, 5F, 5E, 5B, 5D, C2, 04, 00, 8B, FF, 55...
 
[+]

Code size:
314 KB (321,536 bytes)

The file ger_r_trl_2012_is_tvga.exe has been seen being distributed by the following URL.

Scan ger_r_trl_2012_is_tvga.exe - Powered by Reason Core Security