winvnc_scii_rc23.exe

UltraVNC

This is a setup program which is used to install the application. The file has been seen being downloaded from www.uvnc.com.
Publisher:
UltraVNC

Product:
UltraVNC

Description:
VNC server for Win32

Version:
1, 0, 0, 18

MD5:
77de6bb7c680776fa67a5646072b7fed

SHA-1:
7f3c35d85c96ff903844feaf1aed010a34119c40

SHA-256:
50831333c6ba49fc871ca20f4a4778119e24fb975912023fd4c8bfd72b45c191

Scanner detections:
3 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/25/2024 1:30:37 AM UTC  (today)

Scan engine
Detection
Engine version

Comodo Security
ApplicUnsaf.Win32.WinVNC.~kwa
17608

Kaspersky
not-a-virus:RemoteAdmin.Win32.WinVNC
14.0.0.3939

ViRobot
Trojan.Win32.A.NSAnti.241664.B
2011.4.7.4223

File size:
236 KB (241,664 bytes)

Product version:
1, 0, 0, 18

Copyright:
Copyright UltraVNC

Trademarks:
VNC

Original file name:
WinVNC.exe

File type:
Executable application (Win32 EXE)

Language:
English (United Kingdom)

File PE Metadata
Compilation timestamp:
3/28/2005 7:30:54 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:m29TBjaTIx+DCc1BzkxDqOUKTvc3cRdwkvr3Pwn+nE:m29TqrL+URMHwIwn+nE

Entry address:
0x3840F

Entry point:
55, 8B, EC, 6A, FF, 68, 50, 50, 40, 00, 68, B8, 85, 43, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, FF, 15, B0, 12, 40, 00, 59, 83, 0D, 68, D4, 43, 00, FF, 83, 0D, 6C, D4, 43, 00, FF, FF, 15, AC, 12, 40, 00, 8B, 0D, 60, D4, 43, 00, 89, 08, FF, 15, A8, 12, 40, 00, 8B, 0D, 5C, D4, 43, 00, 89, 08, A1, A4, 12, 40, 00, 8B, 00, A3, 64, D4, 43, 00, E8, 39, 01, 00, 00, 39, 1D, B8, 21, 41, 00, 75, 0C, 68, B4, 85, 43, 00, FF, 15, 98, 12...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v6.0

The file winvnc_scii_rc23.exe has been seen being distributed by the following URL.

Scan winvnc_scii_rc23.exe - Powered by Reason Core Security