HKCMD.EXE

Intel Common User Interface

Intel Corporation

The hkcmd Module is part of Intel's Common User Interface for chipsets with integrated graphics controllers and provides hotkey support. It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘HotKeysCmds’.
Publisher:
Intel Corporation  (signed and verified)

Product:
Intel(R) Common User Interface

Description:
hkcmd Module

Version:
8.15.10.2712

MD5:
3ded538c00150b5835a62a8e1332851e

SHA-1:
894f3a0865648c594fa10a48d0e4fa8143c9a7c3

SHA-256:
e47bbce9e3b2683ff70efdf910c54b53f06496abd3963a322ce7ab31670835ab

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 4:33:21 PM UTC  (today)

File size:
176.3 KB (180,504 bytes)

Product version:
8.15.10.2712

Copyright:
Copyright 1999-2006, Intel Corporation

Original file name:
HKCMD.EXE

File type:
Executable application (Win32 EXE)

Common path:
C:\Windows\System32\hkcmd.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
3/8/2011 9:00:00 AM

Valid to:
4/23/2014 8:59:59 AM

Subject:
CN=Intel Corporation, OU=ISWQL, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Intel Corporation, L=Folsom, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
10021A27D28312885C613AA498580F6F

File PE Metadata
Compilation timestamp:
3/27/2012 9:36:23 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x1190F

Entry point:
E8, A6, 71, 00, 00, E9, 78, FE, FF, FF, 6A, 0C, 68, E8, 51, 42, 00, E8, 1F, F6, FF, FF, 6A, 0E, E8, 03, 3A, 00, 00, 59, 83, 65, FC, 00, 8B, 75, 08, 8B, 4E, 04, 85, C9, 74, 2F, A1, 58, BD, 42, 00, BA, 54, BD, 42, 00, 89, 45, E4, 85, C0, 74, 11, 39, 08, 75, 2C, 8B, 48, 04, 89, 4A, 04, 50, E8, F3, F2, FF, FF, 59, FF, 76, 04, E8, EA, F2, FF, FF, 59, 83, 66, 04, 00, C7, 45, FC, FE, FF, FF, FF, E8, 0A, 00, 00, 00, E8, 0E, F6, FF, FF, C3, 8B, D0, EB, C5, 6A, 0E, E8, CE, 38, 00, 00, 59, C3, 8B, FF, 55, 8B, EC, 8B...
 
[+]

Entropy:
6.4288

Code size:
124.5 KB (127,488 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
HotKeysCmds

Command:
C:\Windows\System32\hkcmd.exe