ucp.exe

Ultra Core Protector

Ultra Core Protector

The executable ucp.exe has been detected as malware by 1 anti-virus scanner.
Publisher:
Ultra Core Protector  (signed and verified)

Product:
Ultra Core Protector

Version:
6.9

MD5:
5e7f1c180c983555532df7ea771bee36

SHA-1:
dd52567f9bb7546247f50544a55b1dfb002cdd49

SHA-256:
3914e978993d530cc5e4de8771c57faee1da647da15c63960325138e37ac4bae

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
12/26/2024 6:16:10 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
16.8.23.17

File size:
599.2 KB (613,544 bytes)

Product version:
6.9.0.0

Copyright:
Copyright © 2008-2011, Written by Endi

Original file name:
ucp.exe

File type:
Executable application (Win32 EXE)

Digital Signature
Authority:
Ultra Core Protector

Valid from:
6/13/2011 5:44:18 AM

Valid to:
1/1/2040 1:59:59 AM

Subject:
CN=Endi, OU=http://ucp-anticheat.org, E=support@ucp-anticheat.org, O=Ultra Core Protector, C=RU

Issuer:
CN=Endi, OU=http://ucp-anticheat.org, E=support@ucp-anticheat.org, O=Ultra Core Protector, C=RU

Serial number:
629D252EF480F9B3420833BF4CD29145

File PE Metadata
Compilation timestamp:
6/13/2011 5:41:33 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.12

CTPH (ssdeep):
12288:OCvuT+o3kn2zyrsiJIadk/+YzKma3t2NdfmsuzObt:BuCoUniiJIzLemQt2iTabt

Entry address:
0x3442DB2

Entry point:
0F, 8F, 04, 92, FE, FF, 68, 9E, 80, C0, 96, E9, 3D, 61, FE, FF, E8, 7F, 35, F7, FF, 8D, 64, 24, 38, 0F, 82, 5A, 38, F7, FF, E8, 1A, FE, FF, FF, 68, B2, 6B, A6, 9F, 60, 8D, 64, 24, 24, 0F, 82, 7B, 70, FE, FF, 66, 0F, AC, E8, 05, 83, F9, 07, 9F, 66, F7, D0, 19, C9, 55, 8D, 0C, 4D, 0B, 00, 00, 00, 0F, B6, C0, 68, 42, E5, 4A, E6, 8B, 45, E0, FF, 74, 24, 04, 60, F7, D0, FF, 74, 24, 08, 8A, 04, 38, C7, 44, 24, 08, F1, 26, 32, 3D, E9, E8, 6E, FE, FF, E9, 66, 35, F7, FF, FD, FD, 5D, 0B, F7, 37, B9, 15, 92, 97, DC...
 
[+]

Code size:
52.3 MB (54,810,112 bytes)

Windows Firewall Allowed Program
Name:
ultra core protector


Remove ucp.exe - Powered by Reason Core Security