How to remove CHECKUPDATE.EXE
- File Details
- Overview
- Analysis
CHECKUPDATE.EXE
The module CHECKUPDATE.EXE has been detected as Adware.Gen
File Details
MD5: |
2f5c5f2acdd98034e5320a6eeb1700b7 |
Size: |
809 KB |
First Published: |
2017-09-04 12:04:58 (6 years ago) |
Latest Published: |
2021-11-21 21:23:37 (2 years ago) |
Status: |
Adware.Gen (on last analysis) |
|
Analysis Date: |
2021-11-21 21:23:37 (2 years ago) |
Overview
%appdata%\sdservice\updatefiles |
%appdata%\sdservice |
%profile%\ordan yovchev\application data\sdservice |
%programfiles%\winmend |
%programfiles% |
%profile%\dmin\application data\sdservice |
%profile%\an\application data\zhp\quarantine\sdservice |
%sysdrive%\1 t - ok\x-nec-pc soft\auto shutdown\auto shutdown.rar |
%sysdrive%\1 t - ok\x-nec-pc soft\auto shutdown |
%appdata%\zhp\quarantine\zhpcleaner\sdservice |
checkupdate.exe |
CHECKUPDATE.EXE |
trz45C5.tmp |
|
20.3% |
|
|
12.0% |
|
|
10.1% |
|
|
6.9% |
|
|
4.3% |
|
|
4.3% |
|
|
3.6% |
|
|
3.3% |
|
|
2.5% |
|
|
2.5% |
|
|
2.5% |
|
|
1.8% |
|
|
1.8% |
|
|
1.8% |
|
|
1.8% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.1% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
Windows 10 |
48.4% |
|
Windows 7 |
40.6% |
|
Windows XP |
3.9% |
|
Windows 8.1 |
3.2% |
|
Windows 8 |
2.1% |
|
Windows Server 2016 |
1.1% |
|
Windows Embedded 8.1 |
0.7% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000a2d08 |
Name |
Size of data |
MD5 |
.text |
655872 |
1eb8d6524527c97e4aa895c184947e1d |
.itext |
6144 |
420b8ac96fd1051e1cff676bfc3b55fb |
.data |
15360 |
d7978bc436db9347f4de42c514589864 |
.bss |
0 |
00000000000000000000000000000000 |
.idata |
12800 |
001ad8f30648ca156bbabfc71d0ba405 |
.tls |
0 |
00000000000000000000000000000000 |
.rdata |
512 |
55bd48ce01a7eadde54d0224e704535a |
.reloc |
41984 |
e4d57976fc8411c74152476d7c54881c |
.rsrc |
90624 |
fd946f3fd63c3737f356b4a2ded43946 |