idcloakvpn-install-2.0.exe

idcloak VPN

idcloak Technologies Inc

This is a self-extracting archive and installer. The file has been seen being downloaded from proxies-1.idcloak.com.
Publisher:
idcloak Technologies  (signed by idcloak Technologies Inc)

Product:
idcloak VPN

Description:
Installer 2.0 for Windows

Version:
2.0.0.0

MD5:
86b4dc03176a1135acd16c8b411938ae

SHA-1:
525dc10ca209d28304afaa92838dcc4812651947

SHA-256:
01c892d6b8b7805bc5c090eba97db44d132e8b208cca495586400773cfa8ba7f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 5:07:44 PM UTC  (today)

File size:
8.3 MB (8,702,056 bytes)

Product version:
2.0.0.0

Copyright:
2013 All rights reserved worldwide

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\idcloakvpn-install-2.0.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
9/4/2013 5:00:00 PM

Valid to:
9/4/2016 4:59:59 PM

Subject:
CN=idcloak Technologies Inc, O=idcloak Technologies Inc, STREET="3824 Cedar Springs Rd #801-1395", L=Dallas, S=Texas, PostalCode=75219, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00BA7E94A115F5BE6B5AE952B713C39270

File PE Metadata
Compilation timestamp:
9/25/2013 6:08:41 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
196608:kY4+VqZmERJ7CFIORFgs/+X8P2YNIboMgn+joMK38Anh9OJPFT:fsZmUJ7LOnX/+Xo24b+KMurOB

Entry address:
0x1B0BD7

Entry point:
E8, 0A, 9C, 00, 00, E9, 16, FE, FF, FF, 6A, 0C, 68, 90, E8, 5F, 00, E8, FB, 99, 00, 00, 83, 65, E4, 00, 8B, 75, 08, 3B, 35, EC, 9B, 61, 00, 77, 22, 6A, 04, E8, ED, 9D, 00, 00, 59, 83, 65, FC, 00, 56, E8, 2F, A6, 00, 00, 59, 89, 45, E4, C7, 45, FC, FE, FF, FF, FF, E8, 09, 00, 00, 00, 8B, 45, E4, E8, 07, 9A, 00, 00, C3, 6A, 04, E8, EA, 9C, 00, 00, 59, C3, 55, 8B, 6C, 24, 08, 83, FD, E0, 0F, 87, 9F, 00, 00, 00, 53, 8B, 1D, 94, 13, 5D, 00, 56, 57, 33, F6, 39, 35, BC, 95, 61, 00, 8B, FD, 75, 18, E8, EA, 8F, 00...
 
[+]

Entropy:
7.8505  (probably packed)

Code size:
1.8 MB (1,900,544 bytes)

The file idcloakvpn-install-2.0.exe has been seen being distributed by the following URL.

Scan idcloakvpn-install-2.0.exe - Powered by Reason Core Security