ucp.exe

Ultra Core Protector

Ultra Core Protector

The application ucp.exe by Ultra Core Protector has been detected as a potentially unwanted program by 3 anti-malware scanners.
Publisher:
Ultra Core Protector  (signed and verified)

Product:
Ultra Core Protector

Version:
8.0

MD5:
14bb260f2b50f11b81c71514c94a1a48

SHA-1:
9a5a6003745a41024fbf8347e66171882ef00ad7

SHA-256:
d237544e53b10f09df395d76fe21e196a2d498fe82f5f4ca0ad0394d1d2b9081

Scanner detections:
3 / 68

Status:
Potentially unwanted

Analysis date:
12/25/2024 6:15:16 PM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
W32.HfsAutoA
1.3.0.4959

Reason Heuristics
PUP.UltraCoreProtector (M)
15.8.24.17

Trend Micro House Call
TROJ_GEN.F47V1206
7.2.171

File size:
782.1 KB (800,904 bytes)

Product version:
8.0.0.0

Copyright:
Copyright © 2008-2013, Written by Endi

Original file name:
ucp.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\bloody-gaming\counter-strike 1.6\ucp.exe

Digital Signature
Authority:
Ultra Core Protector

Valid from:
12/12/2012 3:44:42 PM

Valid to:
1/1/2040 12:59:59 AM

Subject:
CN=Endi, OU=http://ucp-anticheat.org, E=support@ucp-anticheat.org, O=Ultra Core Protector, C=RU

Issuer:
CN=Endi, OU=http://ucp-anticheat.org, E=support@ucp-anticheat.org, O=Ultra Core Protector, C=RU

Serial number:
E0177238F19B3FB5462942142E1145B1

File PE Metadata
Compilation timestamp:
6/27/2013 6:46:09 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.12

CTPH (ssdeep):
24576:Q6mjcE2l2jIEd4ZTN554O2wV3Us7ZtZlWcm:QRcR2kEdKTt4NHOZe

Entry address:
0x3489F74

Entry point:
E8, 46, 1E, 02, 00, FF, 30, 8F, 44, 24, 24, 60, FF, 74, 24, 44, C2, 48, 00, 4B, 55, FB, 74, 2E, CF, 26, 6D, 64, 6C, 7E, 02, 46, 3E, 16, 14, 8B, 68, D9, 90, 84, 50, D7, B0, 5A, DF, 95, 8B, 3B, E6, 92, 86, 34, 1C, CE, 77, 21, D6, 22, E2, 3A, 3E, FA, 06, 5B, 1F, 05, D8, 78, 9C, 6F, E7, B3, CF, CB, 3E, 81, 25, 6A, E3, AC, F4, F8, BC, 39, A7, 24, 6A, 42, 97, FE, AE, 85, 0C, 28, 4B, E8, 2C, 2A, 3B, 39, B0, 1D, 47, BA, 92, 5B, 40, 25, 9A, 8F, DD, 51, F5, 40, A8, FB, 0F, 37, 58, E4, DC, A4, 5A, F8, 2E, 4A, FD, 7D...
 
[+]

Entropy:
7.9733  (probably packed)

Code size:
340 KB (348,160 bytes)

Remove ucp.exe - Powered by Reason Core Security