ucp.exe

Ultra Core Protector

Ultra Core Protector

The executable ucp.exe has been detected as malware by 1 anti-virus scanner.
Publisher:
Ultra Core Protector  (signed and verified)

Product:
Ultra Core Protector

Version:
7.5

MD5:
675dfc6a8c10535dee8d869ad13c0eb6

SHA-1:
650d72537db77e68e0903b0854a9eb3be28f2da7

SHA-256:
ac7fb4014db69a0ab9fdbc4d68b458dfb0c248e5418bfe294956f7d567e0b613

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
5/3/2025 6:53:32 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
16.8.4.5

File size:
594.7 KB (608,936 bytes)

Product version:
7.5.0.0

Copyright:
Copyright © 2008-2011, Written by Endi

Original file name:
ucp.exe

File type:
Executable application (Win32 EXE)

Digital Signature
Authority:
Ultra Core Protector

Valid from:
11/11/2011 3:47:28 PM

Valid to:
1/1/2040 3:59:59 AM

Subject:
CN=Endi, OU=http://ucp-anticheat.org, E=support@ucp-anticheat.org, O=Ultra Core Protector, C=RU

Issuer:
CN=Endi, OU=http://ucp-anticheat.org, E=support@ucp-anticheat.org, O=Ultra Core Protector, C=RU

Serial number:
B779B3E24427C0A7407A7E3B4EEFEC21

File PE Metadata
Compilation timestamp:
4/17/2012 1:25:04 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.12

CTPH (ssdeep):
12288:xS+S6OugfBtqy3rf3EJU/VBVbk6LB5bmmUcAQdA3exC+:Y+v5GBtqyDUJU1bJrbCcA6eK

Entry address:
0x33DAE07

Entry point:
68, E3, 49, F6, 25, 8D, 64, 24, 04, 0F, 86, E5, DC, FD, FF, 9C, C7, 04, 24, F9, D5, 25, FB, 54, 60, 57, C6, 44, 24, 0C, 61, C7, 44, 24, 24, 11, E4, 95, BF, 60, 66, 89, 5C, 24, 08, C6, 44, 24, 14, 77, 9C, 8D, 64, 24, 48, E9, 27, A2, 06, 00, F8, 3B, 45, F0, E9, 29, 78, 06, 00, E8, B9, FD, FF, FF, C7, 44, 24, 10, A6, 92, 8C, B7, C6, 44, 24, 0C, 98, 9C, FF, 34, 24, 9C, 8D, 64, 24, 1C, E9, 4A, C1, 06, 00, 66, 39, C6, C1, E7, 08, C6, 04, 24, A9, 01, C7, F8, FF, 74, 24, 04, E9, 23, 85, 06, 00, 01, F8, 66, 0F, BA...
 
[+]

Code size:
264.5 KB (270,848 bytes)

Windows Firewall Allowed Program
Name:
ultra core protector


Remove ucp.exe - Powered by Reason Core Security