IPHiderPro.exe

IP Hider Pro Application

Lee Qintguo

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘IP Hider Pro’.
Publisher:
IP Hider Pro  (signed by Lee Qintguo)

Product:
IP Hider Pro Application

Description:
IP Hider Pro Encryptes and hides your internet traffic.

Version:
3.9.0.1

MD5:
ed4aec7da1ea2175ec37a2bbf15adfb7

SHA-1:
2e27f1fad55b604bf19163e6631c0aab09917e3f

SHA-256:
1f922da1812c7027a45cdb3b2229fc23371c4558421100150107e6010ed3c11c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/4/2024 6:40:59 AM UTC  (today)

File size:
641.8 KB (657,200 bytes)

Product version:
3.9.0.1

Copyright:
Copyright (C) 2014

Original file name:
IPHiderPro.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\ip hider pro\iphiderpro.exe

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
11/6/2013 3:00:00 AM

Valid to:
11/10/2014 3:00:00 PM

Subject:
CN=Lee Qintguo, O=Lee Qintguo, L=tianjin, S=Tianjin, C=CN

Issuer:
CN=DigiCert Assured ID Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
03D7573D5F10F03870B39D3EE9FCC5DC

File PE Metadata
Compilation timestamp:
3/29/2014 8:29:55 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
6144:MN5QdinaIs7/0Y94HBL6fRo31GivoCfdYnRZawGPxXvQ+pnCpj48zrl+1ZaKvFuD:MN5Qd+afcs4h6fRo31GH+mUW72i1L

Entry address:
0x1D702

Entry point:
E8, 8C, 04, 00, 00, E9, 63, FD, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, A0, EA, 43, 00, 89, 0D, 9C, EA, 43, 00, 89, 15, 98, EA, 43, 00, 89, 1D, 94, EA, 43, 00, 89, 35, 90, EA, 43, 00, 89, 3D, 8C, EA, 43, 00, 66, 8C, 15, B8, EA, 43, 00, 66, 8C, 0D, AC, EA, 43, 00, 66, 8C, 1D, 88, EA, 43, 00, 66, 8C, 05, 84, EA, 43, 00, 66, 8C, 25, 80, EA, 43, 00, 66, 8C, 2D, 7C, EA, 43, 00, 9C, 8F, 05, B0, EA, 43, 00, 8B, 45, 00, A3, A4, EA, 43, 00, 8B, 45, 04, A3, A8, EA, 43, 00, 8D, 45, 08, A3, B4, EA, 43...
 
[+]

Entropy:
4.4582

Code size:
134 KB (137,216 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
IP Hider Pro

Command:
C:\Program Files\ip hider pro\iphiderpro.exe


Scan IPHiderPro.exe - Powered by Reason Core Security