adobeipr.exe

Tibialyzer

ICOFX SOFTWARE SRL

Publisher:
ICOFX SOFTWARE SRL  (signed and verified)

Product:
Tibialyzer

Description:
Tibialyzer

Version:
1.00

MD5:
390a1a86dfeca256c3c3c8f615554b05

SHA-1:
f81176e7eb839f33215fa04879d1fadb55866ff2

SHA-256:
4c8558cae910d79577534a59f1a8e406d925292d56b982320ee0d1d544aae519

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/14/2025 10:24:14 AM UTC  (today)

File size:
7.7 MB (8,059,920 bytes)

Product version:
1.00

Copyright:
Copyright © 2015

Original file name:
Tibialyzer.exe

File type:
Executable application (Win32 EXE)

Language:
Búlgaro (Bulgaria)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\adobeipr.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
3/20/2016 7:30:00 PM

Valid to:
3/18/2021 7:29:59 PM

Subject:
CN=ICOFX SOFTWARE SRL, O=ICOFX SOFTWARE SRL, STREET=Str. Teilor Nr 10 Scara 2 Apartament 24, L=Floresti, S=Cluj, PostalCode=407280, C=RO

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
21ACDD0E97DE1A28AF8908237D276DAD

File PE Metadata
Compilation timestamp:
12/2/2016 12:20:19 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:XC5flhTOnp4D6DU6MRRJbmf2eWv03DVOhWfRMYOfDqlf3vzMjcIYUGgGDQY14564:S5zOpmadp003IWpMYOf6QjmUGw9r

Entry address:
0x1074

Entry point:
68, 14, F1, B9, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, D5, D4, B8, D8, 31, 95, 6A, 49, AB, 4A, 23, 55, 41, B1, ED, 37, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 76, 62, 34, 70, 72, 6F, 6A, 65, 63, 74, 56, 62, 00, 00, 00, 00, 00, 00, 00, 00, FF, CC, 31, 00, 14, C1, 2D, E0, 43, 44, 0A, FA, 4F, A2, 7D, 6C, B5, 51, 86, 1A, 36, 0C, E9, CC, CB, BB, F4, 42, 4A, BE, EF, EA, 09, 0F, A9, 44, 00, 3A, 4F, AD, 33, 99, 66, CF, 11, B7, 0C, 00...
 
[+]

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
7.7 MB (8,024,064 bytes)

Scan adobeipr.exe - Powered by Reason Core Security