The iTopVPN (iTop VPN) File Analysis
Technical Analysis
| File Name | uploaded |
| File Type |
PE32 executable (GUI) Intel 80386, for MS Windows
|
| Scanner Version | 1.0.139.174 |
| Database Version | 2023-09-23 18:01:34 UTC |
Clean File
No threats detected by our scanner
Scan Another File
File Identification
| Hash Type | Value | Action |
|---|---|---|
| MD5 |
784994bb782a53724951ecb5973bd96a
|
|
| SHA1 |
42fb579d3274aa831ee1be6e4e47ea2aa5c53440
|
|
| SHA256 |
8f89fe0daf4806ec4e4202b31430591fc12d6d1decc595a613dc5fa612dd5f95
|
|
| SHA512 |
74e317c2b0761f7b43e28e57778a4feba162a9c4d50b192fe062686e44dfd856dbdbee40d7d63257429c478d57d8ebd9353ad7aa3ea0d058cc078d52a429ca74
|
|
| ImpHash |
48aa5c8931746a9655524f67b25a47ef
|
PE Analysis
Basic Information
▼| Icon |
Hash: 33a4157c642881a36c576b3a9ec0fc0d
Fuzzy: d028eff9e78b3862e86ede42c8db305a dHash: d0b2b28e96968916 |
| Image Base | 0x00400000 |
| Entry Point | 0x004113bc |
| Compilation Time | 2015-07-16 13:24:20 |
| Checksum | 0x00000000 (Actual: 0x025ba61a) |
| OS Version | 5.0 |
| PEiD Signatures |
PE32 executable (GUI) Intel 80386, for MS Windows
|
| Digital Signature | OK |
| Imports |
5 libraries
oleaut32, advapi32, user32, kernel32, comctl32 |
| Exports | 0 functions |
| Resources | 21 Resources |
| Sections | 8 Sections |
Digital Signatures
▼| DigiCert Trusted Root G4 | DigiCert Inc (US) |
| DigiCert Trusted Root G4 | DigiCert, Inc. (US) |
| DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1 | Chengdu ShanHe Information Technology Co., Ltd. (CN) |
Version Information
▼| Comments | This installation was built with Inno Setup. |
| CompanyName | iTop Inc. |
| FileDescription | iTop VPN |
| FileVersion | 5.0.0.4785 |
| LegalCopyright | © iTop Inc. All rights reserved. |
| ProductName | iTopVPN |
| ProductVersion | 5.0.0.4785 |
| Translation | 0x0000 0x04b0 |
PE Sections
▼| Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
|---|---|---|---|---|---|---|
.text |
0x00001000 |
61,748 bytes | 61,952 bytes | 6.39 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
1B89617B988C8BD575544F47F0D04258 |
.itext |
0x00011000 |
2,884 bytes | 3,072 bytes | 5.74 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
25478D452B599B551FE11BFB5904D2D0 |
.data |
0x00012000 |
3,208 bytes | 3,584 bytes | 2.25 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
0C3E63B09234B01CE16CFF38DF28BB6F |
.bss |
0x00013000 |
22,200 bytes | 0 bytes | 0.00 (Normal) |
IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
D41D8CD98F00B204E9800998ECF8427E |
.idata |
0x00019000 |
3,536 bytes | 3,584 bytes | 4.97 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
93D91A2B90E60BD758FC0C4908856AE1 |
.tls |
0x0001a000 |
8 bytes | 0 bytes | 0.00 (Normal) |
IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
D41D8CD98F00B204E9800998ECF8427E |
.rdata |
0x0001b000 |
24 bytes | 512 bytes | 0.20 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
3DFFC444CCC131C9DCEE18DB49EE6403 |
.rsrc |
0x0001c000 |
67,348 bytes | 67,584 bytes | 5.02 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
C88B66BB3E778DE8F6BFB3D5420B3197 |
Resource Analysis
▼| Resource Type | Count | Total Size | Percentage |
|---|---|---|---|
| RT_ICON | 8 | 26,560 bytes | |
| RT_STRING | 6 | 2,668 bytes | |
| RT_RCDATA | 4 | 33,908 bytes | |
| RT_GROUP_ICON | 1 | 118 bytes | |
| RT_VERSION | 1 | 1,268 bytes | |
| RT_MANIFEST | 1 | 1,580 bytes |
Certificate Chain Analysis
▼Certificate #1
| Subject |
DigiCert Trusted Root G4 DigiCert Inc US |
| Issuer | DigiCert Trusted Root G4 |
| Serial Number | 7451500558977370777930084869016614236 |
Certificate #2
| Subject |
DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1 DigiCert, Inc. US |
| Issuer | DigiCert Trusted Root G4 |
| Serial Number | 11533403529598586876501374841704918745 |
Certificate #3
| Subject |
Chengdu ShanHe Information Technology Co., Ltd. Chengdu ShanHe Information Technology Co., Ltd. CN |
| Issuer | DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1 |
| Serial Number | 1707179392256254022609495685209333859 |
Certificate Verification Status
OK
Remember: This is Result of Online Virus Scanner
Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:
Download Anti-Malware
Keep Your System Protected
This file appears clean, but regular security maintenance is important
-
1
Weekly Quick Scans: Set a reminder to run a scan every Sunday. Most infections are caught within the first week, so regular checks give you peace of mind.
-
2
Update Everything: Those annoying update popups exist for a reason — they patch security holes. Windows, browsers, Adobe, Java — keep them all current.
-
3
Download Smart: Stick to official websites and app stores. If a "free" version of paid software sounds too good to be true, it probably comes with unwanted extras.
-
4
Think Before You Click: Malware loves email attachments and "urgent" links. Even if an email looks like it's from your bank or a friend, verify suspicious requests through a different channel.
Leave a Comment
Gridinsoft Anti-Malware
Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware
Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!