hkship.exe

Entrust.net

Publisher:
Entrust.net  (signed and verified)

MD5:
ed9bd8437ce23601792bc1938c64242f

SHA-1:
fbee88287dbd30677c30714a1ee064b8fee24a03

SHA-256:
c673e380576bc12d71f6b3cb71276ba2380677df53c07e8e97c83eedc20645a8

Scanner detections:
3 / 68

Status:
Clean  (3 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
2/17/2014 5:12:47 PM UTC  (ten months ago)

Scan engine
Detection
Engine version

Trend Micro House Call
PAK_Generic.012
7.2.48

Trend Micro
PAK_Generic.012
10.465.17

ViRobot
JS.A.Iframe.16791040
2011.4.7.4223

File size:
16 MB (16,791,040 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\square enix\sleeping dogs\hkship.exe

Digital Signature
Signed by:

Authority:
Entrust.net

Valid from:
5/25/1999 9:09:40 AM

Valid to:
5/25/2019 9:39:40 AM

Subject:
CN=Entrust.net Secure Server Certification Authority, OU=(c) 1999 Entrust.net Limited, OU=www.entrust.net/CPS incorp. by ref. (limits liab.), O=Entrust.net, C=US

Issuer:
CN=Entrust.net Secure Server Certification Authority, OU=(c) 1999 Entrust.net Limited, OU=www.entrust.net/CPS incorp. by ref. (limits liab.), O=Entrust.net, C=US

Serial number:
374AD243

File PE Metadata
Compilation timestamp:
8/17/2012 5:07:01 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
196608:7Spe1yBkauPkzHmmJj3AVjvf4J1UNKtJxs1AwQ1cjD8wi4dSqU:oOC7mmR3A5IoKTwJ8g/

Entry address:
0x3B0C40

Entry point:
55, 8B, EC, B8, 02, 00, 00, 00, A3, D0, FF, 4B, 01, E8, 6E, ED, CB, FF, B8, 26, F7, E5, 00, FF, E0, 4E, 78, 17, 78, 89, 6C, 1A, 31, 5D, C3, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 56, 8B, 35, 60, 74, 3C, 01, 57, BF, 5C, 74, 3C, 01, 83, C6, FC, 83, EF, 04, 3B, F7, 74, 1B, 8B, 06, D9, 44, 24, 0C, 8B, 50, 04, 51, 8B, CE, D9, 1C, 24, FF, D2, 8B, 76, 08, 83, EE, 04, 3B, F7, 75, E5, 5F, 5E, C3, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8B, 44, 24, 04, 8B, 50, 10, 85, D2, 74, 08, 8B, 48, 14, 3B, 4A...
 
[+]

Entropy:
6.6535

Code size:
12.9 MB (13,497,344 bytes)

The file hkship.exe has been discovered within the following program.

Sleeping Dogs  by Square Enix
Sleeping Dogs is a 2012 open world action-adventure video game developed by United Front Games in conjunction with Square Enix London Studios and published by Square Enix.
3% remove it
 
Powered by Should I Remove It?

0 / 68
testfile.exe  (ea56f82ea0650c3baa17a2d6ee986202505d3c2d)

0 / 68
npfbplugin_1_0_3.dll  (fa7fb42c3d9fae4a99527556499422437ecca099)

0 / 68
npfbplugin_1_0_1.dll  (63156e81a5440c9e3759c586e3d455c321733261)

1 / 68
malwarebytes anti-malware portable.exe  (975adb7966f2a62a7a7ea08df43f1fdd5ee8f096)

0 / 68
hmsc.exe  (745c247642a91a53101879767936cad84eaec5ce)

0 / 68
npfbplugin_1_0_0.dll  (da1267db67e4921515a0f41168e1a8356d3e03d0)

0 / 68
copy.dll  (d1b9944f77ae7c3f8b33e19e29849f400512a909)

0 / 68
hma.exe  (4b74f459b3bf11f5c0bc8d216b652ede4c0c439a)

0 / 68
o.exe  (7abcad6e3c4f1bb9257d8405293617bcb2ea4e39)

0 / 68
mbamsrv.dll  (95d86f98d2adc0891dc70dadbb9184d7491d7695)

1 / 68
malwarebytes anti-malware.exe  (200ace3af19d235a7d47d31760945f113cabf21c)

0 / 68
TCC.EXE  (df998a29077e07697d78f069bce5bbe20e4c3e83)

1 / 68
mbam.exe  (38b1ed9769126ebf1eea283f24d03fb8500d201c)

0 / 68
malwarebytes_1.75.0.1300_portable.exe  (3ed462276cf1b43546591c7c19366b3e33d6697a)

1 / 68
malwarebytes__anti-malware_v1.60.1.1000_portable_ot_sssr1.exe  (702f8c9fe2dda0df9241d4e9e34a720b1b8927be)

0 / 68
downloader.exe  (c6ef48ed5ca6a121bd342000a6f1661f3bf52f34)

Distribution by Country