perfecticon.exe

PerfectIcon

IconEmpire

This is a setup and installation application. The file has been seen being downloaded from 113.171.224.175 and multiple other hosts.
Publisher:
IconEmpire

Product:
PerfectIcon

Description:
PerfectIcon Setup

Version:
2.44

MD5:
abaf7a6288b3eebe06d3e33a48652e82

SHA-1:
0531247d8fa91d5f7b9036cd4f1f1d7a21558ca7

SHA-256:
05c18c69e472daa2c950230b4df7a16ee61c34f432eaba2e09c609b1c7803900

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 6:46:20 AM UTC  (today)

File size:
6 MB (6,254,058 bytes)

Product version:
2.44

Copyright:
Copyright © 2016 IconEmpire

Original file name:
setup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

File PE Metadata
Compilation timestamp:
1/31/2011 12:44:13 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
98304:OQnzOP+SS77gG1aAotjii7/BO9veyjImlKrkH/23bnw5Jbq2Oop8y9Y:O7+S+7geozBO9902Z/Gn4L+

Entry address:
0x1D20

Entry point:
55, 8B, EC, 6A, FF, 68, 28, 21, 40, 00, 68, A0, 1E, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, FF, 15, 88, 20, 40, 00, 59, 83, 0D, 54, 35, 40, 00, FF, 83, 0D, 58, 35, 40, 00, FF, FF, 15, 84, 20, 40, 00, 8B, 0D, CC, 32, 40, 00, 89, 08, FF, 15, 80, 20, 40, 00, 8B, 0D, C8, 32, 40, 00, 89, 08, A1, 7C, 20, 40, 00, 8B, 00, A3, 5C, 35, 40, 00, E8, 10, 01, 00, 00, 39, 1D, BC, 32, 40, 00, 75, 0C, 68, 9C, 1E, 40, 00, FF, 15, 78, 20...
 
[+]

Entropy:
7.9960

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
4 KB (4,096 bytes)

The file perfecticon.exe has been seen being distributed by the following 3 URLs.

http://113.171.224.175/.../perfecticon.exe

http://dw.uptodown.com/dwn/9NadsW3PQjSRLHYNc-eCy9EMIxFuTXIrphzTxrUyE7L-rQxMGG483EDofeFe4Ju_Ew5yOymw_OYIulSyTU53UIHgH67m5ib67JcrWtPqv_8qxEmtaUZ7huN5HWmqZmFL/b1R_C3qQ8fmtg-C-LWTMLk_dUEpbl192Gax_kZzO7-3b19QZkObqOacGldipi2GUf7dOIMLWfwz9E0tt_kNY4F_i-1WLeRynfeWmBvkYeVtqhHLtgqIoY-lI3EU8_3cC/P1wZifolpon1KuBlDyw8MyW6ta0Nok9wvIcWBvOj1qGtVvE1mgkEYBD_7b2FYjpcIFfs_lyFtwWNU78_sHhrLs4F46xqUs9vFHhYkA8mlhx9QReTQHrDI4Pcd3HUOkwS/.../

Scan perfecticon.exe - Powered by Reason Core Security