dup.exe

Driver Updater Plus

SYS SECURE PC SOFTWARE LLP

The application dup.exe by SYS SECURE PC SOFTWARE LLP has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It runs as a scheduled task under the Windows Task Scheduler named DriverUpdaterPlusRunAtStartup triggered to execute each time a user logs in.
Publisher:
Jawego Partners LLC  (signed by SYS SECURE PC SOFTWARE LLP)

Product:
Driver Updater Plus

Version:
2.7.1086.17155

MD5:
e18e66d1e06c765d246ee81be10fe638

SHA-1:
bd9496086a89ca2191d7b9c0bd6252a6f4e886b7

SHA-256:
c46386077652fa1bd00c46ac1414b9fafab23f3b2fefab5a3d1ffc9f06885c4a

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/28/2024 6:39:20 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.SecurePCCleaner (M)
17.3.15.9

File size:
17.1 MB (17,980,368 bytes)

Product version:
2.7.1086.17155

Copyright:
Copyright (C) 2015 Jawego Partners LLC, All rights reserved.

Trademarks:
Driver Updater Plus

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\driver updater plus\dup.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
2/11/2016 12:00:00 AM

Valid to:
2/10/2017 11:59:59 PM

Subject:
CN=SYS SECURE PC SOFTWARE LLP, O=SYS SECURE PC SOFTWARE LLP, L=Jaipur, S=Rajasthan, C=IN

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
26DC4AA5B755C1CF47EF06729B21AB5E

File PE Metadata
Compilation timestamp:
2/6/2017 10:14:12 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x10D41C

Entry point:
E8, F9, B1, 00, 00, E9, 79, FE, FF, FF, 3B, 0D, A8, 87, CA, 00, 75, 02, F3, C3, E9, 7B, B2, 00, 00, 8B, FF, 55, 8B, EC, 56, 8B, 75, 14, 57, 33, FF, 3B, F7, 75, 04, 33, C0, EB, 65, 39, 7D, 08, 75, 1B, E8, FE, 69, 00, 00, 6A, 16, 5E, 89, 30, 57, 57, 57, 57, 57, E8, AE, 06, 00, 00, 83, C4, 14, 8B, C6, EB, 45, 39, 7D, 10, 74, 16, 39, 75, 0C, 72, 11, 56, FF, 75, 10, FF, 75, 08, E8, 41, B3, 00, 00, 83, C4, 0C, EB, C1, FF, 75, 0C, 57, FF, 75, 08, E8, 80, 71, 00, 00, 83, C4, 0C, 39, 7D, 10, 74, B6, 39, 75, 0C, 73...
 
[+]

Entropy:
6.8262

Code size:
8.2 MB (8,601,600 bytes)

Scheduled Task
Task name:
DriverUpdaterPlusRunAtStartup

Trigger:
Logon (Runs on logon)


Remove dup.exe - Powered by Reason Core Security