How to remove ymupdater.exe
- File Details
- Overview
- Analysis
ymupdater.exe
The module ymupdater.exe has been detected as Possible Threat
File Details
Product Name: |
|
Company Name: |
|
MD5: |
4653e1d78311862b8e09774e1c8c0cda |
Size: |
112 KB |
First Published: |
2017-06-28 02:04:44 (7 years ago) |
Latest Published: |
2018-11-17 22:11:39 (6 years ago) |
Status: |
Possible Threat (on last analysis) |
|
Analysis Date: |
2018-11-17 22:11:39 (6 years ago) |
Overview
Signed By: |
Yahoo! Inc. |
Status: |
Invalid (digital signature could be stolen or file could be patched) |
%appdata%\yahoo messenger\ymupdater |
%appdata%\yahoo messenger |
|
25.0% |
|
|
25.0% |
|
|
12.5% |
|
|
12.5% |
|
|
12.5% |
|
|
12.5% |
|
Windows 7 |
50.0% |
|
Windows 10 |
50.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00002d67 |
Name |
Size of data |
MD5 |
.text |
43008 |
b864380abd33fa66bd3325b910f4904a |
.rdata |
14848 |
a1ac8c803951f435c00b4f8758de0dd7 |
.data |
4096 |
e7eed952a92d8ce52f23681c724b6a2a |
.rsrc |
40960 |
8f667fef4845bb55b43e65fa3d70bce4 |
.reloc |
5632 |
540db1204d2fa03ac93f93a1814e5c15 |