How to remove winupdate.exe
- File Details
- Overview
- Analysis
winupdate.exe
The module winupdate.exe has been detected as Trojan.Gen
File Details
Product Name: |
|
Company Name: |
|
MD5: |
d566eebd725e157bac598f85514bdfea |
Size: |
64 MB |
First Published: |
2018-08-27 13:21:03 (6 years ago) |
Latest Published: |
2020-04-07 18:45:27 (4 years ago) |
Status: |
Trojan.Gen (on last analysis) |
|
Analysis Date: |
2020-04-07 18:45:27 (4 years ago) |
%localappdata% |
%temp%\nsr9446.tmp |
|
18.9% |
|
|
17.0% |
|
|
17.0% |
|
|
13.2% |
|
|
9.4% |
|
|
5.7% |
|
|
5.7% |
|
|
3.8% |
|
|
1.9% |
|
|
1.9% |
|
|
1.9% |
|
|
1.9% |
|
|
1.9% |
|
Windows 7 |
81.5% |
|
Windows 10 |
14.8% |
|
Windows 8.1 |
3.7% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x02bd59a0 |
Name |
Size of data |
MD5 |
.text |
52380672 |
6b038862428ec0ad5187d7a59ae32624 |
_text32 |
137216 |
fc4ba9a4788e80ad79569266935f837f |
.rdata |
11130880 |
827637efc0fdf743aaf517ad0c80c57e |
.data |
455680 |
b4cbf40cbaf43235326e4b093f34dc9d |
.pdata |
2813952 |
d7f65f7fbda435ba74a6e0aeb7b3513f |
.didat |
1024 |
8df8e033a9418f3939d276c0f17c16f4 |
.tls |
512 |
9efa43af7b1faae15ffbd428d0485819 |
.rodata |
6144 |
ddaf67041b6972bc4853f09553f21a41 |
_RDATA |
33280 |
ae12ee5339b4d5233eddd20d918b0218 |
.rsrc |
424448 |
24cf1a004cd6e2211f30401de3b808be |
.reloc |
533504 |
73b03b8b1aad87b5c0960feb5b2e7e6f |