unhide.exe

Unhide

Bleeping Computer, LLC.

Publisher:
Bleeping Computer, LLC  (signed by Bleeping Computer, LLC.)

Product:
Unhide

Description:
Unhides files made hidden by FakeHDD Rogues

Version:
2, 1, 0, 0

MD5:
0b1e6cf2ae3685e4bc018664ba43721d

SHA-1:
fa793fa8938703561780666919cab7ea7f183028

SHA-256:
d56756e13bea596a6af0e64667646ff9925f34ac852f8977d8bbc751df60bc1e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/29/2024 3:58:04 PM UTC  (today)

File size:
417.6 KB (427,648 bytes)

Product version:
2, 1, 0, 0

Copyright:
Copyright (C) 2004-2012

Original file name:
unhide.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
1/26/2015 1:10:33 PM

Valid to:
3/10/2018 3:39:26 PM

Subject:
E=cert@bleepingcomputer.com, CN="Bleeping Computer, LLC.", O="Bleeping Computer, LLC.", L=Huntington Station, S=New York, C=US

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121CFF5A4BA6CC17D760A645BE44B65EE0B

File PE Metadata
Compilation timestamp:
5/20/2016 11:26:26 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
12.0

CTPH (ssdeep):
6144:HwgnTXrMlOAZPsvXDMmbZ1W9+cjrjzc6rhIFLpjZ4R7fzxvX:HwgnTXrMx9svXDPbZ1STc6rUL74R7rxX

Entry address:
0xF3D3

Entry point:
E8, 59, 78, 00, 00, E9, 7B, FE, FF, FF, 55, 8B, EC, FF, 15, C8, 80, 42, 00, 6A, 01, A3, 64, 5E, 43, 00, E8, DB, 78, 00, 00, FF, 75, 08, E8, 8A, 48, 00, 00, 83, 3D, 64, 5E, 43, 00, 00, 59, 59, 75, 08, 6A, 01, E8, C1, 78, 00, 00, 59, 68, 09, 04, 00, C0, E8, 58, 48, 00, 00, 59, 5D, C3, 55, 8B, EC, 81, EC, 24, 03, 00, 00, 6A, 17, E8, F6, 43, 01, 00, 85, C0, 74, 05, 6A, 02, 59, CD, 29, A3, 48, 5C, 43, 00, 89, 0D, 44, 5C, 43, 00, 89, 15, 40, 5C, 43, 00, 89, 1D, 3C, 5C, 43, 00, 89, 35, 38, 5C, 43, 00, 89, 3D, 34...
 
[+]

Entropy:
6.4942

Code size:
152.5 KB (156,160 bytes)

The file unhide.exe has been seen being distributed by the following 19 URLs.

https://download.bleepingcomputer.com/dl/7093b6c3ff6e7abf083a671681977011/587e67fd/windows/security/security-utilities/u/.../unhide.exe

https://download.bleepingcomputer.com/dl/8af434ac505980566abe369cd33cfb78/584d1908/windows/security/security-utilities/u/.../unhide.exe

http://download.bleepingcomputer.com/dl/ce2decb9813e9fe122ece0e8a4425ecc/57417659/windows/security/security-utilities/u/.../unhide.exe

https://download.bleepingcomputer.com/dl/ef3b0d380f7e70f025b73de7cbfd4d55/57e56f3d/windows/security/security-utilities/u/.../unhide.exe

https://download.bleepingcomputer.com/dl/09f54cdae3dd560827b71c23f6a1d7c5/57b10cd4/windows/security/security-utilities/u/.../unhide.exe

https://download.bleepingcomputer.com/dl/328fb9f2cb195973c8c3dcc7df6a4cf6/5805f139/windows/security/security-utilities/u/.../unhide.exe

https://download.bleepingcomputer.com/dl/d18e238baca64fda8dc77fcc7771b32f/57f62d09/windows/security/security-utilities/u/.../unhide.exe

https://download.bleepingcomputer.com/dl/f7aa04368bca125e8635a1e651cce012/582293dd/windows/security/security-utilities/u/.../unhide.exe

https://download.bleepingcomputer.com/dl/169aba8bd03f75f3ff1b0ffa4b6e6e59/57fdd267/windows/security/security-utilities/u/.../unhide.exe

https://download.bleepingcomputer.com/dl/2fccdbfeb9a3c1763476f6c71869a540/5816f1a9/windows/security/security-utilities/u/.../unhide.exe

https://download.bleepingcomputer.com/dl/281579fcec966daad215c0c77c53e6ae/57563486/windows/security/security-utilities/u/.../unhide.exe

https://download.bleepingcomputer.com/dl/80961f87bea79e2238ea94bb0eb710bd/5840c4e4/windows/security/security-utilities/u/.../unhide.exe

https://download.bleepingcomputer.com/dl/a973dcecf00b9f6f75eceab352289258/57e619b5/windows/security/security-utilities/u/.../unhide.exe

https://download.bleepingcomputer.com/dl/f47356197dffc6f14b77b93639906972/57bb6f50/windows/security/security-utilities/u/.../unhide.exe

https://download.bleepingcomputer.com/dl/17807cb8c3a4a98c36f3f8fde4964563/57bc84f7/windows/security/security-utilities/u/.../unhide.exe

Scan unhide.exe - Powered by Reason Core Security