HideMyIP.exe

My Privacy Tools, Inc.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘HideMyIP’.
Publisher:
HideMyIP  (signed by My Privacy Tools, Inc.)

Product:
HideMyIP

Version:
6.00.0477

MD5:
667dcd60effb8cc8a9900e181a720040

SHA-1:
a76b949ddb1b543d0df556336a99a63a87b11170

SHA-256:
8adae406ac3af86ae79adb2eae94b6bb9a7035ba246f7a8151f845f68f2d474e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 5:20:39 PM UTC  (today)

File size:
346.6 KB (354,888 bytes)

Product version:
6.00.0477

Copyright:
HideMyIP

Original file name:
HideMyIP.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\hide my ip 6\hidemyip.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
1/20/2016 2:00:00 AM

Valid to:
3/27/2016 1:59:59 AM

Subject:
CN="My Privacy Tools, Inc.", O="My Privacy Tools, Inc.", STREET=7770 Regents Rd 113-644, L=San Diego, S=CA, PostalCode=92122, C=US

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00911040C809AAEE9A1F2F8DD9927C9E96

File PE Metadata
Compilation timestamp:
2/20/2016 7:38:05 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:lpHb0L8+c3G8da1LFbzS4F9w9lZtXuyeBopM9f+MrRQfal:lo8+fv1pzS4o9XVuyeBJPlFl

Entry address:
0x1380

Entry point:
B8, 38, 33, 4F, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, C1, 0D, 69, 00, 00, C6, 3E, A0, 41, 67, 28, DD, FF, 01, E0, E8, CC, D5, A0, EA, A1, B1, 56, FB, 39, 26, AF, BB, B3, 7B, 98, AE, A8, 83, 3B, 43, 2C, 98, C6, 1A, C2, D4, 15, 83, 7A, EB, 05, CD, C3, 69, E5, 56, 5F, 45, 1F, FD, 23, E7, 7F, C4, 3F, 14, D3, 2D, AA, 83, F7, C8, 9D, D2, 50, 7A, 5E, F4, 11, 9F, 5D, EF, 79, 27, 0B, 4C, 2B, 41, AD, 94, 48, B7, 4C, 79, C3, 2C, CE...
 
[+]

Entropy:
7.1462

Packer / compiler:
PECompact v2

Code size:
708 KB (724,992 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
HideMyIP

Command:
"C:\Program Files\hide my ip 6\hidemyip.exe" \startup


Scan HideMyIP.exe - Powered by Reason Core Security