PGNet.exe

ProxyGate

GOLD CLICK LIMITED

The application PGNet.exe, “PG Network Component” by GOLD CLICK LIMITED has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Gold Click Ltd  (signed by GOLD CLICK LIMITED)

Product:
ProxyGate

Description:
PG Network Component

Version:
3.00.0056

MD5:
25e1deedb23fc1c503e54f1c52d70b7a

SHA-1:
a41914e192579beb652a01b525b5fe3c9e71bfb9

SHA-256:
cbd8f8c5249e743566ca1865f0c483936af6a7de5dde6d7042358819df86ff1c

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/27/2024 12:46:38 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.GOLDCLICK (M)
16.2.13.0

File size:
189.6 KB (194,112 bytes)

Product version:
3.00.0056

Copyright:
Gold Click Ltd

Original file name:
PGNet.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\roaming\proxygate\pgnet.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
3/26/2015 5:17:01 PM

Valid to:
3/26/2016 5:17:01 PM

Subject:
CN=GOLD CLICK LIMITED, O=GOLD CLICK LIMITED, L=Birmingham, C=GB

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121EB61871B3A6BD9AD6F5CED626E0A4574

File PE Metadata
Compilation timestamp:
12/23/2015 5:55:52 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3072:M4KuTfbSHsmvu7AF3BDGPbiAjRUyB2Zx+m+1F2wD3LxrP3q+1zHtNWDC4pup:NnM+fLlrP3q+BOPa

Entry address:
0x2160

Entry point:
68, 68, 22, 40, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 38, 00, 00, 00, 80, 5A, 9B, 75, 6B, F3, F4, 44, 81, E6, 2B, 91, 82, 5F, 08, 60, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 2D, 43, 30, 30, 30, 2D, 50, 47, 4E, 65, 74, 00, 30, 30, 50, 47, 4E, 65, 74, 00, 32, 2E, 00, 00, 00, 00, 01, 00, 02, 00, 60, 28, 40, 00, 00, 00, 00, 00, FF, FF, FF, FF, FF, FF, FF, FF, 00, 00, 00, 00, 14, 29, 40, 00, 8C, 00, 41, 00, 00, 00, 00, 00, B0, 15, 1F, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
60 KB (61,440 bytes)

Remove PGNet.exe - Powered by Reason Core Security