How to remove UpdateManager.exe.vir

UpdateManager.exe.vir

The module UpdateManager.exe.vir has been detected as PUP.Ask

UpdateManager.exe.vir
Product Name:

Update Manager

Company Name:

APN LLC.

MD5: 74d12de30187efd22ffcb647cff08d8f
Size: 111 KB
First Published: 2017-05-28 16:04:10 (8 years ago)
Latest Published: 2025-06-16 23:01:19 (a month ago)
Status: PUP.Ask (on last analysis)
Analysis Date: 2025-06-16 23:01:19 (a month ago)
Signed By: APN LLC
Status: Invalid (digital signature could be stolen or file could be patched)
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-atu4[6].7z\program files\askpartnernetwork\toolbar
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-atu4[7].7z\program files\askpartnernetwork\toolbar
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-orj[1].7z\program files\askpartnernetwork\toolbar
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-kmpv7[2].7z\program files\askpartnernetwork\toolbar
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-kmpv7[5].7z\program files\askpartnernetwork\toolbar
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-kmpv7[3].7z\program files\askpartnernetwork\toolbar
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-kmpv7[4].7z\program files\askpartnernetwork\toolbar
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-avira-v7[2].7z\program files\askpartnernetwork\toolbar
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-avira-v7[3].7z\program files\askpartnernetwork\toolbar
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-ff3-v7[8].7z\program files\askpartnernetwork\toolbar
UpdateManager.exe
UpdateManager.exe.vir
A0005448.exe
A0005460.exe
56cb72d7.rbf
2349fc91.rbf
532114.rbf
United States 13.5%
Brazil 9.4%
Mexico 8.6%
Germany 7.8%
Taiwan 6.6%
Italy 4.9%
Poland 3.7%
Vietnam 3.7%
Hong Kong 3.3%
Russia 3.3%
Dominican Republic 2.9%
Philippines 2.9%
Spain 2.5%
Ukraine 2.5%
Turkey 1.6%
France 1.6%
Thailand 1.6%
Libya 1.6%
Canada 1.6%
Romania 1.6%
Argentina 1.2%
Australia 1.2%
Bolivia 1.2%
United Kingdom 1.2%
Czech Republic 1.2%
South Africa 0.8%
Denmark 0.8%
Netherlands 0.8%
India 0.8%
Austria 0.8%
Greece 0.8%
Belgium 0.8%
Uruguay 0.4%
Estonia 0.4%
Hungary 0.4%
Finland 0.4%
Colombia 0.4%
Croatia 0.4%
Venezuela 0.4%
Windows 7 74.7%
Windows 10 16.1%
Windows 8 4.8%
Windows 8.1 2.8%
Windows Vista 0.8%
Windows XP 0.8%
Subsystem: Windows CUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00005956

PE Sections:

Name Size of data MD5
.text 74240 0ddecab84ae5388928ba0c3617e8f7c2
.rdata 18432 56526b666210a76bda748b50fb2d9c4e
.data 5120 4eaea67e9994bc8c41a25198327c6ace
.rsrc 1536 5d7d372bfcc3f52c7f13daf931b18503
.reloc 7168 19fc697f31272a0562caa25ec8ec5352

More information:

Download GridinSoft Anti-Malware - Removal tool for UpdateManager.exe.vir
­