How to remove update[1]
update[1]
The module update[1] has been detected as General Threat
File Details
Product Name: | Web Assistant |
Company Name: | IncrediBar |
MD5: | 4be435296d2e886248ab38e688e4dc69 |
Size: | 1 MB |
First Published: | 2017-05-25 15:06:07 (6 years ago) |
Latest Published: | 2018-09-30 21:09:45 (5 years ago) |
Status: | General Threat (on last analysis) | |
Analysis Date: | 2018-09-30 21:09:45 (5 years ago) |
Overview
Signed By: | Bit Cocktail Ltd. |
Status: | Valid |
Common Places:
%windir%\temp\inj003 |
%windir%\temp\inj007 |
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5 |
File Names:
ExtensionUpdate.exe |
update[1] |
Geography:
50.0% | ||
25.0% | ||
25.0% |
OS Version:
Windows 7 | 100.0% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x0000ba20 |
PE Sections:
Name | Size of data | MD5 |
CODE | 45568 | 512ae8f7b65acd44c1cc8ed84c47a9ec |
DATA | 1024 | cae468483b8ef206076bb5f43b3e2b2b |
BSS | 0 | 00000000000000000000000000000000 |
.idata | 3072 | 126289d079209500b750218889838bd5 |
.tls | 0 | 00000000000000000000000000000000 |
.rdata | 512 | 77e61f88ebd1c451ab2110b4f24add2e |
.reloc | 0 | 00000000000000000000000000000000 |
.rsrc | 16896 | 2f3cd392d81c670060334ff1e28d1424 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for update[1]