tfClient.exe

ToxicClient

Tera information Technology co.Ltd

Publisher:
Tera information Technology co.Ltd  (signed and verified)

Product:
ToxicClient

Version:
1.00

MD5:
46977440517d49072179c52dff4b9a40

SHA-1:
4ee6425b563e67cc3f329586e52ee9c8b42a2f76

SHA-256:
e1b502e2678dd91f967d43ac93b6dacd04552a4252b23ab95fd2867c1074d749

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/7/2024 10:20:00 PM UTC  (today)

File size:
1.4 MB (1,456,808 bytes)

Product version:
1.00

Original file name:
tfClient.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\tfclient.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
12/13/2013 9:00:00 AM

Valid to:
1/13/2015 8:59:59 AM

Subject:
CN=Tera information Technology co.Ltd, O=Tera information Technology co.Ltd, L=Pohang-si, S=Gyeongsangbuk-do, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
28377EF971054177D82C4AEB0DC16F3A

File PE Metadata
Compilation timestamp:
9/30/2014 12:16:10 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
24576:fTA1HDVL//sdbLmPxs6e0TF8RiouS9LdQ9OJx8mNCXCp4Tj43o2TXn:b85O7

Entry address:
0x12114

Entry point:
68, E4, 55, 43, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 38, 00, 00, 00, 00, 00, 00, 00, F4, 07, 4D, 71, 58, 44, D1, 4E, 8D, FC, 6D, 17, 5C, CD, 39, A4, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 46, 72, 6D, C1, DF, B5, 50, 72, 6F, 6A, 65, 63, 74, 00, 00, 00, 00, 00, FF, CC, 31, 00, 3E, 80, C4, 80, 04, 52, 78, 4A, 4B, 8B, 5F, 84, F5, 60, 3D, DB, 27, C1, 30, A1, 14, F7, 11, 24, 40, 88, 2C, 3A, 6B, DD, BA, 95, FD, 3A, 4F, AD, 33, 99, 66, CF, 11, B7, 0C, 00, AA, 00, 60, D3, 93, 00, 00, 00...
 
[+]

Entropy:
6.5132

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
1.4 MB (1,437,696 bytes)

Scan tfClient.exe - Powered by Reason Core Security