How to remove Update.exe
Update.exe
The module Update.exe has been detected as Adware.Kuaiba
File Details
Company Name: | Shanghai Guangle Network Technology Ltd |
MD5: | dea1ab165c6f0c197cd55b1d1b55d5db |
Size: | 858 KB |
First Published: | 2017-05-29 18:01:24 (7 years ago) |
Latest Published: | 2018-05-07 21:13:15 (6 years ago) |
Status: | Adware.Kuaiba (on last analysis) | |
Analysis Date: | 2018-05-07 21:13:15 (6 years ago) |
Overview
Signed By: | 上海广乐网络科技有限公司 |
Status: | Invalid (digital signature could be stolen or file could be patched) |
Common Places:
%programfiles%\23\x86 |
%sysdrive%\progra~1\6a8c~1\x86 |
%sysdrive%\$recycle.bin\s-1-5-21-1731075834-680073870-1864487519-1000\$rb7a174.7z\x86 |
%programfiles%\їмс№_ |
%temp%\kz7zdata.7z |
%sysdrive%\adwcleaner\quarantine\exuieaoeii |
%programfiles%\快压 |
%sysdrive%\new folder\users\administrator\appdata\local\temp\kz7zdata.7z |
%sysdrive%\filehistory\sebastiaan\desktop-qqcoa5v\data\c\users\sebastiaan\appdata\local\temp\kz7zdata (2016_11_18 20_21_07 utc).7z |
Geography:
25.0% | ||
16.7% | ||
16.7% | ||
8.3% | ||
8.3% | ||
8.3% | ||
8.3% | ||
8.3% |
OS Version:
Windows 8.1 | 50.0% | |
Windows 7 | 33.3% | |
Windows 10 | 16.7% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x00064131 |
PE Sections:
Name | Size of data | MD5 |
.text | 564224 | a2b0de67054649141d31460a622f8e81 |
.rdata | 88576 | d8af5aa594337d283f427c9c32d2f502 |
.data | 11776 | 723bd09a7eaa8d2fa25be30eb8f17a11 |
.rsrc | 176128 | 68d97182ca9c00c5a1de6ff2b27fb23a |
.reloc | 30208 | 465db608152f52c83e88876622f9241d |
More information:
Download GridinSoft
Anti-Malware - Removal tool for Update.exe