How to remove update.exe
update.exe
The module update.exe has been detected as Adware.Iminent
File Details
| Product Name: | IE Toolbar |
| MD5: | f0a894a2109eb14360b1e50a91cba334 |
| Size: | 61 KB |
| First Published: | 2017-06-07 23:05:44 (8 years ago) |
| Latest Published: | 2023-02-17 23:48:35 (2 years ago) |
| Status: | Adware.Iminent (on last analysis) | |
| Analysis Date: | 2023-02-17 23:48:35 (2 years ago) |
Overview
| Signed By: | Iminent |
| Status: | Valid |
Common Places:
| %appdata%\toolbar4\{977ae9cc-af83-45e8-9e03-e2798216e2d5} |
| %localappdata%\toolbar4\{977ae9cc-af83-45e8-9e03-e2798216e2d5} |
| %desktop%\juan\appdata\locallow\toolbar4\{977ae9cc-af83-45e8-9e03-e2798216e2d5} |
| %system%\config\systemprofile\appdata\locallow\toolbar4\{977ae9cc-af83-45e8-9e03-e2798216e2d5} |
| %sysdrive%\adwcleaner\quarantine\x3cf3ednhm |
| %system%\config\systemprofile\appdata\locallow\toolbar4 |
| %localappdata%\toolbar4 |
| %sysdrive%\adwcleaner\quarantine\rqf69azbla |
| %programfiles% |
| %sysdrive%\windows.old\users\rosellla\appdata\locallow\toolbar4 |
Geography:
| 24.0% | ||
| 16.0% | ||
| 12.0% | ||
| 12.0% | ||
| 12.0% | ||
| 8.0% | ||
| 4.0% | ||
| 4.0% | ||
| 4.0% | ||
| 4.0% |
OS Version:
| Windows 7 | 69.2% | |
| Windows 10 | 15.4% | |
| Windows 8.1 | 7.7% | |
| Windows Vista | 3.8% | |
| Windows 8 | 3.8% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x00002b9c |
PE Sections:
| Name | Size of data | MD5 |
| .text | 38400 | a835827255bcc5a5ca9adf5eac1e65b1 |
| .rdata | 12288 | 5d46cb2046aafe03b99e23e0e193d50c |
| .data | 3584 | f2d247929bf022d1b9e1de7def4be103 |
| .rsrc | 1536 | 1ef9e4a8ae4e834e611035d44e340532 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for update.exe