hcu.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from files.dc-unlocker.com.
MD5:
261a59e3714fa1db34f74ecd207d53d9

SHA-1:
b0d0a58151846fee99db5e76bfbbd1b28918ac63

SHA-256:
6b620e1da40e481f7737ef5f38ab0fcba63c08b7e685f8514ce2d29059f6a9b5

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
12/29/2024 2:48:05 AM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
HW32.Packed
1.3.0.8042

Comodo Security
Virus.Win32.Virut.CE
25087

File size:
2.5 MB (2,663,424 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\hcu.exe

File PE Metadata
Compilation timestamp:
6/20/1992 1:22:17 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:Sd8UmS8X/lYbawloQvk5rCXQzgZfiJr/Mzyvi4w0NHYXuFtcWLYfyvP1LLpkFCF:YD+IhI9gxiJrkzutw0NHYQtc9YLLGQF

Entry address:
0x5022FF

Entry point:
E9, 55, 86, FE, FF, 8F, 50, CE, CF, 5F, 9F, 5F, AB, DD, CE, 0D, 7D, BD, ED, CC, BF, B2, 9F, 7F, CD, 01, 7F, 6B, BD, 0D, 9F, 9C, 7D, 8F, 8A, AC, 7C, 19, F7, A0, 0E, 11, 81, AF, 45, 9B, 4D, BD, D4, 9A, D1, D4, 1E, 3F, C6, CF, 41, C4, 4F, 9A, FD, 02, CA, 9B, 3D, ED, 8C, AF, B7, CB, D4, 36, AF, DC, C0, 4A, 4F, 5F, 9D, 3B, 71, 7D, 5D, B6, AC, 8F, B9, 8A, 3E, 7F, 17, C7, CC, AF, 4E, 8F, AB, 3C, 4F, 8B, BA, 87, 4F, 8F, 7F, 5A, DD, AC, 8D, 9F, 0A, 8E, AD, 8A, 46, 4A, 9B, F3, 62, 8D, E9, 86, 48, 7F, 4E, 46, AF, C6...
 
[+]

Entropy:
7.9175

Packer / compiler:
Xtreme-Protector v1.05

Code size:
1.5 MB (1,545,216 bytes)

The file hcu.exe has been seen being distributed by the following URL.

Scan hcu.exe - Powered by Reason Core Security