Tictoc.exe

Tictoc

SK PLANET CO., LTD.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘TicToc’.
Publisher:
SK planet  (signed by SK PLANET CO., LTD.)

Product:
Tictoc

Description:
Tictoc Messenger

Version:
3,3,0,613

MD5:
0468c9c833d7a879b62903a80567c920

SHA-1:
48cb31a555cbd18affe403c7e4f274caa147a706

SHA-256:
b9d5c4aae16aaa541f5f6384deaf55a67d1ffa8db1b618c903a57e5a2a75e776

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/8/2024 10:11:13 PM UTC  (today)

File size:
8.1 MB (8,527,648 bytes)

Product version:
3,3,0,613

Copyright:
SK planet All rights reserved.

Original file name:
Tictoc.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\tictoc\bin\tictoc.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/16/2014 9:00:00 AM

Valid to:
9/17/2015 8:59:59 AM

Subject:
CN="SK PLANET CO., LTD.", OU=PRM, O="SK PLANET CO., LTD.", L="Bundang-gu, Seongnam-si", S=Gyeonggi-do, C=KR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7C0EB93BA5CCE0008C39EAF440E05CF6

File PE Metadata
Compilation timestamp:
7/20/2015 5:56:10 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
196608:xAeKQ7cssB6j9Q48FD3xMT/XwB4X2FLOyomFHKnPyE:rV79i6je3xlC2FTE

Entry address:
0x3D5ACE

Entry point:
E8, 8E, B7, 00, 00, E9, 7F, FE, FF, FF, 3B, 0D, D0, 31, A0, 00, 75, 02, F3, C3, E9, 0D, 26, 00, 00, 55, 8B, EC, 56, FF, 75, 08, 8B, F1, E8, 5F, 00, 00, 00, C7, 06, 10, 6B, 91, 00, 8B, C6, 5E, 5D, C2, 04, 00, 55, 8B, EC, 56, FF, 75, 08, 8B, F1, E8, 5F, 00, 00, 00, C7, 06, 10, 6B, 91, 00, 8B, C6, 5E, 5D, C2, 04, 00, 55, 8B, EC, 56, FF, 75, 08, 8B, F1, E8, A0, 00, 00, 00, C7, 06, F8, 6A, 91, 00, 8B, C6, 5E, 5D, C2, 04, 00, 55, 8B, EC, 56, 8D, 45, 08, 50, 8B, F1, E8, 44, 00, 00, 00, C7, 06, F8, 6A, 91, 00, 8B...
 
[+]

Entropy:
6.6096

Code size:
4.9 MB (5,147,136 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
TicToc

Command:
C:\Program Files\tictoc\bin\tictoc.exe


Scan Tictoc.exe - Powered by Reason Core Security