icproxy.exe

ICProxy.exe

TFR Technology s.r.o.

It runs as a separate (within the context of its own process) windows Service named “ICProxy”.
Publisher:
IdentityCloaker  (signed by TFR Technology s.r.o.)

Product:
ICProxy.exe

Version:
3.0.0.24

MD5:
ee53645bdd5e41285359f55cb5eac353

SHA-1:
8b9445e10988f9969e89a09c84dc67dde12bc080

SHA-256:
a0b09aed40654835dc11b5f8d653a0236fb30607246a8886914b4437a2c2cb29

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/30/2024 6:08:24 AM UTC  (today)

File size:
2.4 MB (2,507,856 bytes)

Product version:
3.0.0.24

Copyright:
Copyright (c) 2015

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\identity cloaker\icproxy.exe

Digital Signature
Authority:
Unizeto Technologies S.A.

Valid from:
4/26/2016 4:48:28 PM

Valid to:
10/15/2016 11:52:29 AM

Subject:
E=tomfra@centrum.cz, CN=TFR Technology s.r.o., O=TFR Technology s.r.o., C=CZ

Issuer:
CN=Certum Code Signing CA SHA2, OU=Certum Certification Authority, O=Unizeto Technologies S.A., C=PL

Serial number:
4F72F4FA7847319DD5E00BC56AB221C9

File PE Metadata
Compilation timestamp:
7/25/2016 1:08:00 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
24576:4bbc+XV7W0WqC2Q+JJ60K+ZnEqft6vk6x/rqRer4uHDf/ZqBk0JTYMfXYT6HipAU:+UiQ+J6+ZP6xjpHD2YMvYTmiu4T

Entry address:
0x18134B

Entry point:
E8, 27, 29, 01, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 6A, 0A, 6A, 00, FF, 75, 08, E8, 6E, 2B, 01, 00, 83, C4, 0C, 5D, C3, 8B, FF, 55, 8B, EC, FF, 75, 0C, 6A, 0A, 6A, 00, FF, 75, 08, E8, 6F, 2B, 01, 00, 83, C4, 10, 5D, C3, 8B, FF, 55, 8B, EC, 5D, E9, C6, FF, FF, FF, 8B, FF, 55, 8B, EC, 5D, E9, D1, FF, FF, FF, 8B, FF, 55, 8B, EC, 6A, 0A, 6A, 00, FF, 75, 08, E8, 38, 2E, 01, 00, 83, C4, 0C, 5D, C3, 8B, FF, 55, 8B, EC, FF, 75, 0C, 6A, 0A, 6A, 00, FF, 75, 08, E8, 4A, 2E, 01, 00, 83, C4, 10, 5D, C3, 8B, FF...
 
[+]

Entropy:
5.7617

Code size:
2 MB (2,059,776 bytes)

Service
Display name:
ICProxy

Description:
IC's Redirector service

Type:
Win32OwnProcess

Depends on:
RPCSS


Scan icproxy.exe - Powered by Reason Core Security