ToxicIcon.exe

ToxicIcon

Tera information Technology co.Ltd

Publisher:
Tera information Technology co.Ltd  (signed and verified)

Product:
ToxicIcon

Version:
1.00

MD5:
271f48de80085af695bc7396f50ac3a5

SHA-1:
1100ef8aaf572653fef3a7d776453be2ba46da9b

SHA-256:
036b4f9d7a590080879e07a4321e2983787d2f3861028c7742e3ebea8eef6cf2

Scanner detections:
3 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/19/2024 3:03:01 PM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
SPR/Tool.Monit.A.11
7.11.28.162

Dr.Web
BACKDOOR.Trojan
9.0.1.013

IKARUS anti.virus
Trojan-Spy
t3scan.1.1.118.0

File size:
122.2 KB (125,160 bytes)

Product version:
1.00

Original file name:
ToxicIcon.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\toxicfree\toxicicon.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
9/30/2011 9:00:00 AM

Valid to:
11/29/2012 8:59:59 AM

Subject:
CN=Tera information Technology co.Ltd, OU=Planning Team, O=Tera information Technology co.Ltd, L=Pohang-si, S=Gyeongsangbuk-do, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
7DD7C7BC15D87B8ABFF1CB92C2523D17

File PE Metadata
Compilation timestamp:
11/7/2011 2:07:41 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
1536:LpjhKJyo69FhPxckVOBbM34RUHZuua5Jk3aooZUPOfnDPvJmZQlurKT:LmYoSPxcqOBb44WJa5JkqooZU2ZsO

Entry address:
0x20A0

Entry point:
68, 14, 2E, 40, 00, E8, F0, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 38, 00, 00, 00, 00, 00, 00, 00, 5F, 2E, 6E, F4, 62, 95, 2D, 4E, B0, 20, E2, D2, 1B, D4, D4, 4B, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 50, 72, 6F, 6A, 65, 63, 74, 00, 00, 00, 00, 00, FF, CC, 31, 00, 01, 8C, A7, 92, 20, 08, C0, 78, 4E, BE, 1A, 2F, 26, 92, FF, A3, E7, 25, 33, 9B, A4, DD, A6, 6A, 43, 98, 43, 1D, 0F, 99, CA, 12, 85, 3A, 4F, AD, 33, 99, 66, CF, 11, B7, 0C, 00, AA, 00, 60, D3, 93, 00, 00, 00...
 
[+]

Entropy:
5.1609

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
104 KB (106,496 bytes)

Scan ToxicIcon.exe - Powered by Reason Core Security