HKCMD.EXE

Intel Common User Interface

Intel Corporation

The hkcmd Module is part of Intel's Common User Interface for chipsets with integrated graphics controllers and provides hotkey support. It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘HotKeysCmds’.
Publisher:
Intel Corporation  (signed and verified)

Product:
Intel(R) Common User Interface

Description:
hkcmd Module

Version:
6.14.10.4851

MD5:
a016184f158a60d306b5fc25ef4697f3

SHA-1:
e5f2cd872a6a012af9393d680b7a57490a2ac852

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 1:10:51 PM UTC  (today)

File size:
162.5 KB (166,424 bytes)

Product version:
6.14.10.4851

Copyright:
Copyright 1999-2006, Intel Corporation

Original file name:
HKCMD.EXE

File type:
Executable application (Win32 EXE)

Common path:
C:\Windows\System32\hkcmd.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
4/13/2006 3:00:00 AM

Valid to:
4/23/2008 2:59:59 AM

Subject:
CN=Intel Corporation, OU=ISWQL, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Intel Corporation, L=Folsom, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5E419FC3EE1859A6BD80C35CC4705AC2

File PE Metadata
Compilation timestamp:
7/17/2007 6:13:00 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
3072:forxckcB3dERv7wOhaj4sWsXKAqtPJOA:33deDwOhTsWihcJ

Entry address:
0xE7DD

Entry point:
E8, 35, 5A, 00, 00, E9, 16, FE, FF, FF, 6A, 0C, 68, F0, FC, 41, 00, E8, 7D, F3, FF, FF, 6A, 0E, E8, 96, 39, 00, 00, 59, 83, 65, FC, 00, 8B, 75, 08, 8B, 4E, 04, 85, C9, 74, 2F, A1, E8, 5D, 42, 00, BA, E4, 5D, 42, 00, 89, 45, E4, 85, C0, 74, 11, 39, 08, 75, 2C, 8B, 48, 04, 89, 4A, 04, 50, E8, 65, F0, FF, FF, 59, FF, 76, 04, E8, 5C, F0, FF, FF, 59, 83, 66, 04, 00, C7, 45, FC, FE, FF, FF, FF, E8, 0A, 00, 00, 00, E8, 6C, F3, FF, FF, C3, 8B, D0, EB, C5, 6A, 0E, E8, 63, 38, 00, 00, 59, C3, 8B, 44, 24, 04, A3, EC...
 
[+]

Code size:
108 KB (110,592 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
HotKeysCmds

Command:
C:\Windows\System32\hkcmd.exe