ucp.exe

Ultra Core Protector

Ultra Core Protector

The application ucp.exe by Ultra Core Protector has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Ultra Core Protector  (signed and verified)

Product:
Ultra Core Protector

Version:
6.4

MD5:
f36bc9b5ed99b00ef91e07238b9a2c18

SHA-1:
9fb5911515e0bac966e31570b7393cb1d6f12dd9

SHA-256:
3d867aebd0903c209f43a865b85304cca3567c27054d4eb16abf292a5d105d60

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/27/2024 7:41:37 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.UltraCoreProtector (M)
16.2.22.12

File size:
633.2 KB (648,360 bytes)

Product version:
6.4.0.0

Copyright:
Copyright © 2008-2010, Written by Endi

Original file name:
ucp.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\valve\cs1.6.26.7\ucp.exe

Digital Signature
Authority:
Ultra Core Protector

Valid from:
7/2/2010 10:20:34 AM

Valid to:
12/31/2039 3:59:59 PM

Subject:
CN=Endi, OU=http://ucp-anticheat.org, E=support@ucp-anticheat.org, O=Ultra Core Protector, C=RU

Issuer:
CN=Endi, OU=http://ucp-anticheat.org, E=support@ucp-anticheat.org, O=Ultra Core Protector, C=RU

Serial number:
D042281A9BEBA8A747DC1E5650531704

File PE Metadata
Compilation timestamp:
8/13/2010 1:28:54 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.12

CTPH (ssdeep):
12288:2Cs+nLzFaYL/HyfRQgLEY0PS20bIu/axyh2PrU7cIfL3XUQSLyCiK0/:TncYL/HyZ+CIQaq2kf7XUQvCq/

Entry address:
0x344739D

Entry point:
68, 55, 3F, D7, 06, 9C, C7, 44, 24, 04, EF, CC, D1, 3E, E8, B8, 0D, 00, 00, 00, 00, 47, 65, 74, 4D, 6F, 64, 75, 6C, 65, 48, 61, 6E, 64, 6C, 65, 41, 00, 9C, 56, 8D, 64, 24, 38, E8, 4F, 8D, F8, FF, 60, 9C, 8D, 64, 24, 24, 0F, 82, 30, 93, F8, FF, 9C, D2, D8, E9, 28, 3C, 00, 00, AC, 88, 45, FC, 2A, A2, 72, 46, 1A, E9, FC, 39, 94, 79, DC, 41, BC, 01, E4, 71, AC, 41, F0, 2E, D8, 86, 58, F5, 17, F5, 99, C9, AA, 33, E9, E2, C2, C4, 24, FD, 92, 18, 19, 8C, 15, 8F, 56, D0, 56, 90, BE, 60, 56, C4, ED, 23, 71, B5, 6B...
 
[+]

Entropy:
7.9755  (probably packed)

Code size:
52.4 MB (54,951,424 bytes)

Remove ucp.exe - Powered by Reason Core Security