hoc.exe

2BrightSparks Pte Ltd

This is installed with HashOnClick.
Publisher:
2BrightSparks Pte Ltd  (signed and verified)

MD5:
602bd70de4b5900ce915f5604897e942

SHA-1:
baa21a91e39400dff1fbe0dd8aae9881d57d1b5a

SHA-256:
a277bef1602cf715e94b7cec4ec53b3ff3ac996567ab422f6191dfebb581dc17

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 4:10:37 AM UTC  (today)

File size:
3.4 MB (3,526,696 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\Program Files\2brightsparks\hashonclick\hoc.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
7/17/2012 5:00:00 PM

Valid to:
10/8/2014 4:59:59 PM

Subject:
CN=2BrightSparks Pte Ltd, O=2BrightSparks Pte Ltd, L=Singapore, S=Singapore, C=SG

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
7652C550E519EFC82E227D3902440B74

File PE Metadata
Compilation timestamp:
1/9/2014 2:00:45 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
8.0

CTPH (ssdeep):
24576:V6uYTekLPIePIWd3JBRSBfAF9uweqrYih1OEVnVLzIkjWk:YHekLAegWd3JzSBbwekOAl

Entry address:
0x2E4FE0

Entry point:
55, 48, 81, EC, 40, 04, 00, 00, 48, 8B, EC, 48, C7, 45, 28, 00, 00, 00, 00, 48, C7, 45, 40, 00, 00, 00, 00, 48, C7, 45, 30, 00, 00, 00, 00, 48, C7, 45, 38, 00, 00, 00, 00, 48, C7, 45, 50, 00, 00, 00, 00, 48, C7, 45, 48, 00, 00, 00, 00, 48, C7, 45, 60, 00, 00, 00, 00, 48, C7, 45, 58, 00, 00, 00, 00, 48, C7, 45, 68, 00, 00, 00, 00, 48, C7, 45, 70, 00, 00, 00, 00, 48, C7, 45, 78, 00, 00, 00, 00, 48, C7, 85, 80, 00, 00, 00, 00, 00, 00, 00, 48, C7, 85, 88, 00, 00, 00, 00, 00, 00, 00, 48, C7, 85, 90, 00, 00, 00...
 
[+]

Entropy:
5.8644

Code size:
2.9 MB (3,043,840 bytes)

The file hoc.exe has been discovered within the following program.

HashOnClick  by 2BrightSparks
Publisher's description - “HashOnClick quickly and easily provides information to compare hash values side by side to establish the data in one file exactly matches (or not) the data in another. Ensure that the files you receive haven't been tampered with.”
www.2BrightSparks.com
About 3% of users remove it
 
Powered by Should I Remove It?

Scan hoc.exe - Powered by Reason Core Security