icproxy.exe

ICProxy.exe

TFR Technology s.r.o.

It runs as a separate (within the context of its own process) windows Service named “ICProxy”.
Publisher:
IdentityCloaker  (signed by TFR Technology s.r.o.)

Product:
ICProxy.exe

Version:
2.3.3.10

MD5:
67bf5e6d544be74a3967f48ae7eb7dfd

SHA-1:
39b462488555d4355450d854658889937a4916b8

SHA-256:
b6561e502a105a2d43ff9985bbaa6b81c61f4782de7095a5ca967095db2723b4

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/29/2024 10:00:56 AM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Win32/Packed.Komodia.A suspicious application
6.3.12010.0

File size:
2.1 MB (2,235,440 bytes)

Product version:
2.3.3.10

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\identity cloaker\icproxy.exe

Digital Signature
Authority:
Unizeto Technologies S.A.

Valid from:
10/16/2014 6:52:29 AM

Valid to:
10/15/2016 6:52:29 AM

Subject:
E=tomfra@centrum.cz, CN=TFR Technology s.r.o., O=TFR Technology s.r.o., C=CZ

Issuer:
CN=Certum Code Signing CA, OU=Certum Certification Authority, O=Unizeto Technologies S.A., C=PL

Serial number:
0141A2F0D667C610FBC1629823A23395

File PE Metadata
Compilation timestamp:
3/30/2015 4:35:09 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
10.0

Entry address:
0x43BE

Entry point:
E8, 53, 4A, 00, 00, E9, 95, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 10, 8B, 4D, 08, 53, 8B, 5D, 0C, 56, 57, 8B, 7D, 10, 89, 4D, F8, 89, 5D, FC, 85, FF, 74, 1A, 83, 7D, 14, 00, 74, 14, 85, C9, 75, 17, E8, 36, 14, 00, 00, C7, 00, 16, 00, 00, 00, E8, D9, 13, 00, 00, 33, C0, 5F, 5E, 5B, C9, C3, 8B, 75, 18, 85, F6, 74, 0C, 83, C8, FF, 33, D2, F7, F7, 39, 45, 14, 76, 21, 83, FB, FF, 74, 0C, 53, 6A, 00, 51, E8, 68, F6, FF, FF, 83, C4, 0C, 85, F6, 74, C1, 83, C8, FF, 33, D2, F7, F7, 39, 45, 14, 77, B5, 0F, AF, 7D...
 
[+]

Entropy:
7.9903  (probably packed)

Code size:
68.5 KB (70,144 bytes)

Service
Display name:
ICProxy

Description:
IC's Redirector service

Type:
Win32OwnProcess

Depends on:
RPCSS


Scan icproxy.exe - Powered by Reason Core Security