icproxy.exe

ICProxy.exe

TFR Technology s.r.o.

It runs as a separate (within the context of its own process) windows Service named “ICProxy”.
Publisher:
IdentityCloaker  (signed by TFR Technology s.r.o.)

Product:
ICProxy.exe

Version:
2.3.0.7

MD5:
174020e57efd7bfea621d99e8240a958

SHA-1:
56e176418e567798de82d8ed8d936c79c80aa6ff

SHA-256:
45de7ec77d1b59a45e9789fcf28c6ef32067ddf19bf2610d68617605d41f7e38

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/29/2024 7:48:37 AM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
Detection.Undefined
9.0.1.05190

File size:
3.7 MB (3,903,080 bytes)

Product version:
2.3.0.7

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\identity cloake2r\icproxy.exe

Digital Signature
Authority:
Unizeto Technologies S.A.

Valid from:
10/16/2014 7:52:29 AM

Valid to:
10/15/2016 7:52:29 AM

Subject:
E=tomfra@centrum.cz, CN=TFR Technology s.r.o., O=TFR Technology s.r.o., C=CZ

Issuer:
CN=Certum Code Signing CA, OU=Certum Certification Authority, O=Unizeto Technologies S.A., C=PL

Serial number:
0141A2F0D667C610FBC1629823A23395

File PE Metadata
Compilation timestamp:
11/10/2014 5:04:07 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:v+EsLahL+sf9jkPkzjYBwMwbsuXyJGZ38q3TGET90p/TO+:2wLEPkz0BwMYsEyJGFJ3aTH

Entry address:
0x1730B1

Entry point:
E8, 5B, 26, 01, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, 7D, 0C, 00, 74, 0B, 6A, 2D, 5A, 66, 89, 11, 83, C1, 02, F7, D8, 56, 8B, F1, 33, D2, F7, 75, 08, 83, FA, 09, 76, 05, 83, C2, 57, EB, 03, 83, C2, 30, 66, 89, 11, 41, 41, 85, C0, 77, E5, 33, C0, 66, 89, 01, 49, 49, 66, 8B, 16, 0F, B7, 01, 66, 89, 11, 49, 66, 89, 06, 49, 46, 46, 3B, F1, 72, EC, 5E, 5D, C2, 08, 00, 8B, FF, 55, 8B, EC, 83, 7D, 10, 0A, 8B, 45, 08, 75, 0A, 85, C0, 7D, 06, 6A, 01, 6A, 0A, EB, 05, 6A, 00, FF, 75, 10, 8B, 4D, 0C, E8, 87...
 
[+]

Code size:
3 MB (3,126,784 bytes)

Service
Display name:
ICProxy

Description:
IC's Redirector service

Type:
Win32OwnProcess

Depends on:
RPCSS


Scan icproxy.exe - Powered by Reason Core Security