icproxy.dll

ICProxy.dll

TFR Technology s.r.o.

It is installed as a Winsock Layered Service Provider (LSP) named “IdentityCloaker LSP over [SOCKSESCORT over [MSAFD Tcpip [TCP/IP]]]” as a layered chain entry.
Publisher:
IdentityCloaker  (signed by TFR Technology s.r.o.)

Product:
ICProxy.dll

Version:
2.2.9.7

MD5:
b5e787ec55d6efc44ab6b16dcff0d0af

SHA-1:
801af1c7e016fa19a99b1860c48024e6c1e7d290

SHA-256:
3d1c2ae74ce55064bab4d60aa9ce12b99294cd1ce7ebba8d2aff55aeedecc490

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 7:35:39 AM UTC  (today)

File size:
377.1 KB (386,152 bytes)

Product version:
2.2.9.7

File type:
Dynamic link library (Win32 DLL)

Language:
Language Neutral

Common path:
C:\Windows\System32\icproxy.dll

Digital Signature
Authority:
Unizeto Technologies S.A.

Valid from:
10/22/2013 11:18:58 AM

Valid to:
10/22/2014 11:18:58 AM

Subject:
E=tomfra@centrum.cz, CN=TFR Technology s.r.o., O=TFR Technology s.r.o., C=CZ

Issuer:
CN=Certum Code Signing CA, OU=Certum Certification Authority, O=Unizeto Technologies S.A., C=PL

Serial number:
2C7CAF77C9160DE605D9748F78E8CF6F

File PE Metadata
Compilation timestamp:
8/10/2014 2:34:30 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:5HIHokKbkQESdjSPXYh3Iyw8xIeoQ+/nxYfDeDkjmPCJwJJHJ8JgERM+:5HCoxvESdjSPXYh35wbQ+/x4eAjmLDHs

Entry address:
0x31D43

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, CD, 83, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, FF, 35, 3C, AA, 05, 10, E8, B7, 27, 00, 00, 59, 85, C0, 74, 02, FF, D0, 6A, 19, E8, 6F, 85, 00, 00, 6A, 01, 6A, 00, E8, 45, 85, 00, 00, 83, C4, 0C, E9, 26, 84, 00, 00, 8B, FF, 55, 8B, EC, 83, EC, 20, 53, 33, DB, 39, 5D, 0C, 75, 1D, E8, D9, E8, FF, FF, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, 0F, E1, FF, FF, 83, C4, 14, 83, C8, FF, EB, 4D, 8B, 45, 08, 3B, C3, 74...
 
[+]

Entropy:
6.5860

Code size:
277 KB (283,648 bytes)

Winsock2 LSP
Name:
IdentityCloaker LSP over [SOCKSESCORT over [MSAFD Tcpip [TCP/IP]]]

Type:
Layered Chain Entry

Provider ID:
{302BC829-092F-4B55-9247-CF787D0A5C6B}

Service flags:
0x66


The file icproxy.dll has been discovered within the following program.

Identity Cloaker  by Tomas France
www.identitycloaker.com
About 7% of users remove it
 
Powered by Should I Remove It?

Scan icproxy.dll - Powered by Reason Core Security