iplcln.exe

HandyCafe Filtre Client

Ates Yazilim, Bilgisayar & Internet Teknolojileri Tic Ltd Sti

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘HandyCafe Filtre Client’.
Product:
HandyCafe Filtre Client

Version:
3.6.1.6

MD5:
cfd5adde103d22ba081cacd9365422cd

SHA-1:
10a79fe5143a6a42475148c6849e8a012223f149

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 1:34:23 PM UTC  (today)

File size:
4.5 MB (4,727,648 bytes)

Product version:
3.6.16

Copyright:
Ates Yazilim, Bilgisayar & Internet Teknolojileri Tic Ltd Sti

Trademarks:
Ates Yazilim, Bilgisayar & Internet Teknolojileri Tic Ltd Sti

Original file name:
iplcln.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\handycafe\filtre client\iplcln.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
11/17/2013 2:00:00 AM

Valid to:
11/18/2015 1:59:59 AM

Subject:
CN="Ates Yazilim, Bilgisayar & Internet Teknolojileri Tic Ltd Sti", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Ates Yazilim, Bilgisayar & Internet Teknolojileri Tic Ltd Sti", L=Istanbul, S=TR, C=TR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6E54E478C4B86CD0A3A473682202D107

File PE Metadata
Compilation timestamp:
2/15/2014 10:52:49 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:FnN0qqvkHiybLScLcHs6lSCb0P8SLnjAT9LNhHDTPT998l5YthLM:FyZvkHiOScQlSCpPc50hY

Entry address:
0x3A29B0

Entry point:
55, 8B, EC, 83, C4, EC, 53, 56, 57, 33, C0, 89, 45, EC, B8, DC, 37, 79, 00, E8, C0, CA, C6, FF, 8B, 1D, 30, 5E, 7B, 00, 33, C0, 55, 68, BE, 2A, 7A, 00, 64, FF, 30, 64, 89, 20, E8, 9F, 0D, FF, FF, 84, C0, 74, 0A, E8, 4A, 0D, FF, FF, E9, B9, 00, 00, 00, 33, C0, 55, 68, A1, 2A, 7A, 00, 64, FF, 30, 64, 89, 20, 8D, 55, EC, 8B, 03, E8, F1, 1C, F1, FF, 8B, 45, EC, BA, DC, 2A, 7A, 00, E8, 34, 4B, F2, FF, 8B, 03, E8, B5, 12, F1, FF, A1, E0, 61, 7B, 00, BA, 18, 2B, 7A, 00, E8, 2A, 79, C6, FF, E8, AD, 1E, F5, FF, 8B...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
3.6 MB (3,805,696 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
HandyCafe Filtre Client

Command:
"C:\Program Files\handycafe\filtre client\iplcln.exe"


Scan iplcln.exe - Powered by Reason Core Security