vip72socksRUS.exe

VIP72 Proxy Tunneling Client

Ivan Lisin

Publisher:
VIP Technologies  (signed by Ivan Lisin)

Product:
VIP72 Proxy Tunneling Client

Version:
1.6.1.0

MD5:
3f1ad262720b2fa516b4bb0f38a136b3

SHA-1:
0722add1fd3a6ce96b0183708a759dac27b1e807

SHA-256:
aa77208c08bf78fe9ff4f912ab4d3da93161441a86dc8c4ffa5fcb102344fc4f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 1:43:50 AM UTC  (today)

File size:
1.3 MB (1,347,736 bytes)

Copyright:
Copyright © 2001-2012, CS/VTECH

Original file name:
vip72socksRUS.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\vip72\vip72socksrus.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
6/8/2012 1:00:00 AM

Valid to:
6/9/2013 12:59:59 AM

Subject:
CN=Ivan Lisin, O=Ivan Lisin, STREET="Lipetskaya, 30-93", L=Moscow, S=Moscow, PostalCode=115404, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00AC64C9175510AB178459C265EE394F54

File PE Metadata
Compilation timestamp:
11/27/2012 4:42:36 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.12

CTPH (ssdeep):
6144:BDBlis87yL9EaqhXjUxgcjUjzRL3AStkopPVOYBycDHNLgktUhP1B7VATaDHM7Yu:B2tj9s4kopPVOYBycDHNLgegi7

Entry address:
0x1000

Entry point:
6A, 00, E8, C3, EA, 00, 00, A3, 14, F2, 41, 00, E8, 9B, EA, 00, 00, 50, 68, C4, EE, 41, 00, E8, 5C, EB, 00, 00, 68, C4, EE, 41, 00, E8, 5E, EB, 00, 00, 6A, 08, 68, 45, 87, 41, 00, 50, 68, C4, EE, 41, 00, 6A, 00, E8, 42, 1F, 00, 00, 83, F8, FF, 74, 07, C6, 05, C4, F0, 41, 00, 01, 68, C4, EE, 41, 00, E8, 34, EB, 00, 00, 6A, 04, 68, 40, 87, 41, 00, 50, 68, C4, EE, 41, 00, 6A, 00, E8, 18, 1F, 00, 00, 83, F8, FF, 74, 09, 66, C7, 05, 34, 96, 41, 00, 0E, 00, 68, C4, EE, 41, 00, E8, 08, EB, 00, 00, 6A, 09, 68, 50...
 
[+]

Entropy:
3.9239

Code size:
81 KB (82,944 bytes)

Scan vip72socksRUS.exe - Powered by Reason Core Security