acremoteupdate.exe

CheckForLatestVersionAutoCompletePro

Simplygen

The executable acremoteupdate.exe has been known to be a potentially unwanted program that has been detected by 1 anti-malware scanner. It runs as a scheduled task under the Windows Task Scheduler triggered daily at a specified time. While running, it connects to the Internet address bzq-179-38-71.cust.bezeqint.net on port 80 using the HTTP protocol.
Publisher:
Simplygen

Product:
CheckForLatestVersionAutoCompletePro

Version:
1.0.0.0

MD5:
d939cff50440465875259d2d12ed38ec

SHA-1:
c2e40c0b747fabf629a24809548a987b582fce65

SHA-256:
aad99116874ce8e6096d3716abfb921586ab87dfdc0a9dcb4a665528830ff487

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/27/2024 5:43:51 AM UTC  (today)

Scan engine
Detection
Engine version

VIPRE Antivirus
PredictAd (not malicious)
23634

File size:
12 KB (12,288 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © Simplygen 2010

Original file name:
AcproUpdateChecker.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\autocompletepro\acremoteupdate.exe

File PE Metadata
Compilation timestamp:
1/17/2010 5:23:44 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
192:1UbZcoJ7MyYVyoMzDtiRrkj6l4EIT1CUbOjBhGW5BT3E7bWZ+W8B:dGjb/wI+l4EGOjTVBbCaZH8

Entry address:
0x431E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.0417

Code size:
9 KB (9,216 bytes)

Scheduled Task
Task name:
AcPro Daily Update

Trigger:
Daily (Runs daily at 2:59 AM)


The executing file has been seen to make the following network communication in live environments.

TCP (HTTP):
Connects to bzq-179-38-71.cust.bezeqint.net  (212.179.38.71:80)

Scan acremoteupdate.exe - Powered by Reason Core Security