dup.exe

Driver Updater Plus

SYS SECURE PC SOFTWARE LLP

The application dup.exe by SYS SECURE PC SOFTWARE LLP has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It runs as a scheduled task under the Windows Task Scheduler named DriverUpdaterPlusRunAtStartup triggered to execute each time a user logs in.
Publisher:
Jawego Partners LLC  (signed by SYS SECURE PC SOFTWARE LLP)

Product:
Driver Updater Plus

Version:
2.7.1086.17155

MD5:
af8edb898c487f65023472e08b347c7c

SHA-1:
dea86f05e6162fced3d9df9e5955686dbeeee747

SHA-256:
c0f98b99783cf66441c45feef56a5f88814b21a2c9b353773b449fe28fd45f9f

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/28/2024 6:03:12 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.SecurePCCleaner (M)
17.3.12.2

File size:
17.1 MB (17,980,368 bytes)

Product version:
2.7.1086.17155

Copyright:
Copyright (C) 2015 Jawego Partners LLC, All rights reserved.

Trademarks:
Driver Updater Plus

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\driver updater plus\dup.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
2/11/2016 7:00:00 AM

Valid to:
2/11/2017 6:59:59 AM

Subject:
CN=SYS SECURE PC SOFTWARE LLP, O=SYS SECURE PC SOFTWARE LLP, L=Jaipur, S=Rajasthan, C=IN

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
26DC4AA5B755C1CF47EF06729B21AB5E

File PE Metadata
Compilation timestamp:
2/6/2017 5:14:12 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x10D41C

Entry point:
E8, F9, B1, 00, 00, E9, 79, FE, FF, FF, 3B, 0D, A8, 87, CA, 00, 75, 02, F3, C3, E9, 7B, B2, 00, 00, 8B, FF, 55, 8B, EC, 56, 8B, 75, 14, 57, 33, FF, 3B, F7, 75, 04, 33, C0, EB, 65, 39, 7D, 08, 75, 1B, E8, FE, 69, 00, 00, 6A, 16, 5E, 89, 30, 57, 57, 57, 57, 57, E8, AE, 06, 00, 00, 83, C4, 14, 8B, C6, EB, 45, 39, 7D, 10, 74, 16, 39, 75, 0C, 72, 11, 56, FF, 75, 10, FF, 75, 08, E8, 41, B3, 00, 00, 83, C4, 0C, EB, C1, FF, 75, 0C, 57, FF, 75, 08, E8, 80, 71, 00, 00, 83, C4, 0C, 39, 7D, 10, 74, B6, 39, 75, 0C, 73...
 
[+]

Entropy:
6.8262

Code size:
8.2 MB (8,601,600 bytes)

Scheduled Task
Task name:
DriverUpdaterPlusRunAtStartup

Trigger:
Logon (Runs on logon)


Remove dup.exe - Powered by Reason Core Security