ccuter.exe

Hongkong zoekyu Technology Limited

The application ccuter.exe by Hongkong zoekyu Technology Limited has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Hongkong zoekyu Technology Limited  (signed and verified)

MD5:
841b61f85a4c18d95ffbc80f58bd0cb0

SHA-1:
cfb12def5d5e2e3081d8cee56ce9894fe47f19f8

SHA-256:
9f65b448b0718d5eaebf262131ed48d8d1fd560ee2262e072e114683f33f90c2

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
2/25/2025 2:53:28 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Adware.Yessearches (M)
16.11.28.3

File size:
499.5 KB (511,504 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\searchestoyesbnd\ccuter.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
2/1/2016 11:53:25 AM

Valid to:
8/31/2016 7:52:51 AM

Subject:
CN=Hongkong zoekyu Technology Limited, O=Hongkong zoekyu Technology Limited, L=香港, S=香港, C=HK

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11217E2986DB2ACA3C8312E8C5B9C79F1C61

File PE Metadata
Compilation timestamp:
3/1/2016 6:29:06 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
6144:1jEHWW0eE7hFQ5JFeGaTsZkVbbiJ7fOtBIRGv:1jVt+5JFh5J5Gv

Entry address:
0x35F38

Entry point:
74, 00, 72, 00, 69, 00, 63, 00, 74, 00, 65, 00, 64, 00, 00, 00, F0, 00, 13, C0, 00, 00, 00, 00, 98, 03, 00, 00, F8, 02, 00, 00, A0, 50, 1B, 03, 00, 00, 00, 00, 5B, 71, 63, 00, DA, EE, 07, 40, 94, 29, AD, 52, 6F, 62, 69, 6E, 69, 00, 00, 10, 04, 65, 69, 00, 00, 00, 01, 00, 00, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 02, 00, 00, 00, 02, 00, 00, 00, E4, 04, 00, 00, 77, 00, 75, 00, 64, 00, 66, 00, 73, 00, 76, 00, 63, 00, 00, 00...
 
[+]

Code size:
333 KB (340,992 bytes)

Remove ccuter.exe - Powered by Reason Core Security