fcrypt.dll

The library fcrypt.dll has been detected as malware by 3 anti-virus scanners.
MD5:
a7dee4e18247ef53d016516f29f6dae4

SHA-1:
3c2b31eb8933acc4b57e6925d99c5f5f1c7e37fa

SHA-256:
6f6997d58d81a72aec45c295ca59369d101c9760d0a8adedabea6a80b22d8cf8

Scanner detections:
3 / 68

Status:
Malware

Analysis date:
12/28/2025 6:36:07 PM UTC  (today)

Scan engine
Detection
Engine version

Comodo Security
Heur.Packed.Unknown
17182

Norman
Suspicious_Gen2.ETFTS
11.20140128

Reason Heuristics
Unnamed.Threat.14
14.3.6.12

File size:
34.5 KB (35,328 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\tc up\plugins\wcx\darkcrypttc\blockapi\fcrypt.dll

File PE Metadata
Compilation timestamp:
5/29/2010 8:00:25 PM

OS version:
1.11

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.18

CTPH (ssdeep):
768:FQztxODmBUhV/Bbmjz2s4CjwQm6Xq/59lfpp:EOCz2s48c9lx

Entry address:
0x1FAA

Entry point:
E9, 71, 00, 00, 00, 03, 10, 40, 00, 4F, 70, 65, 6E, 20, 57, 61, 74, 63, 6F, 6D, 20, 43, 2F, 43, 2B, 2B, 33, 32, 20, 52, 75, 6E, 2D, 54, 69, 6D, 65, 20, 73, 79, 73, 74, 65, 6D, 2E, 20, 50, 6F, 72, 74, 69, 6F, 6E, 73, 20, 43, 6F, 70, 79, 72, 69, 67, 68, 74, 20, 28, 43, 29, 20, 53, 79, 62, 61, 73, 65, 2C, 20, 49, 6E, 63, 2E, 20, 31, 39, 38, 38, 2D, 32, 30, 30, 32, 2E, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 3C, 20, 40, 00, BC, 20, 40, 00, 9E, 20, 40, 00, 9C, 21, 40, 00, 53, 56, 57, 55, 8B, 74, 24, 14, 8B, 7C...
 
[+]

Packer / compiler:
Xtreme-Protector v1.05

Code size:
24.5 KB (25,088 bytes)

Remove fcrypt.dll - Powered by Reason Core Security