How to remove checkupd.exe
- File Details
- Overview
- Analysis
checkupd.exe
The module checkupd.exe has been detected as Trojan.Starter
File Details
| Product Name: |
|
| MD5: |
f328a95046e3a2514c36347eaec911c0 |
| Size: |
4 KB |
| First Published: |
2019-06-17 08:31:07 (6 years ago) |
| Latest Published: |
2024-10-11 23:01:01 (a year ago) |
| Status: |
Trojan.Starter (on last analysis) |
|
| Analysis Date: |
2024-10-11 23:01:01 (a year ago) |
| %temp% |
| %sysdrive%\windows.old\users\luzie\appdata\local |
| %sysdrive%\windows.old\users\luzie\appdata\local |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
|
13.1% |
|
|
8.5% |
|
|
6.9% |
|
|
6.2% |
|
|
5.4% |
|
|
5.4% |
|
|
3.8% |
|
|
3.1% |
|
|
3.1% |
|
|
3.1% |
|
|
2.3% |
|
|
2.3% |
|
|
2.3% |
|
|
2.3% |
|
|
2.3% |
|
|
2.3% |
|
|
2.3% |
|
|
2.3% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
| Windows 10 |
76.9% |
|
| Windows 7 |
18.7% |
|
| Windows 8.1 |
4.5% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x000026de |
| MVID: |
ac2a8acb-4473-4c1d-99be-88d95b361497 |
| Typelib ID: |
7966474d-d067-491f-b3ec-c9df83ecb677 |
| Name |
Size of data |
MD5 |
| .text |
2048 |
4dd14efca5a5e8a7cff28fc1ecbdd54c |
| .rsrc |
1536 |
5b226fa639a8716f2ec3bbcd9a4c5f58 |
| .reloc |
512 |
0ac613b9933b9d1338f55007b99fd3de |