eupdate_17.8.0.3297_nt.exe

Cherished Technology Limited

The application eupdate_17.8.0.3297_nt.exe by Cherished Technology Limited has been detected as adware by 2 anti-malware scanners. Additionally, the file is typically installed by a number of programs including eSafe Security Control 1.0.0.2359 by eSafe Security Co., Ltd. and eSafe Security Control 1.0.0.2522 by Banyan Tree Technology Limited.
Publisher:
Cherished Technology Limited  (signed and verified)

MD5:
9b112764f10edde44a5e3394d5861b21

SHA-1:
ba47ee0896fe243f9344658ce36f0b272fe80b16

SHA-256:
6d8e209bda11e7966285f897839b54719661abfab067730a13dc1d3cff92bbf5

Scanner detections:
2 / 68

Status:
Adware

Analysis date:
4/3/2025 10:02:06 PM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
Adware.Searcher.2635
9.0.1.030

Reason Heuristics
PUP.CherishedTechnologyLimited.T
14.3.4.6

File size:
1.5 MB (1,542,256 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\ProgramData\esafe\eupdate_17.8.0.3297_nt.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
10/30/2013 2:26:37 PM

Valid to:
10/31/2014 2:26:37 PM

Subject:
CN=Cherished Technology Limited, O=Cherished Technology Limited, L=HongKong, S=HongKong, C=HK

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11210CA3D3C040F38E7317C765ABB45E0BCB

File PE Metadata
Compilation timestamp:
1/6/2014 7:24:13 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
24576:awqK9DSJqqLtBIJRAwXwwqr9hNzGqYIeOIqVtnYpOBv9IH14SeYPu7CWePkdQyl:awD9DXq0Rjw/5GF1DqDJBv9MFy2sdpl

Entry address:
0x1547C

Entry point:
E8, D7, 97, 00, 00, E9, 7F, FE, FF, FF, 55, 8B, EC, 8B, 45, 14, 56, 85, C0, 74, 3C, 83, 7D, 08, 00, 75, 13, E8, FF, 0C, 00, 00, 6A, 16, 5E, 89, 30, E8, DB, 73, 00, 00, 8B, C6, EB, 25, 83, 7D, 10, 00, 74, E7, 39, 45, 0C, 73, 09, E8, E1, 0C, 00, 00, 6A, 22, EB, E0, 50, FF, 75, 10, FF, 75, 08, E8, 96, EB, FF, FF, 83, C4, 0C, 33, C0, 5E, 5D, C3, 55, 8B, EC, 56, 8B, F1, 8B, 4D, 08, C6, 46, 0C, 00, 85, C9, 75, 66, E8, 8D, 8F, 00, 00, 8B, D0, 89, 56, 08, 8B, 4A, 6C, 89, 0E, 8B, 4A, 68, 89, 4E, 04, 8B, 0E, 3B, 0D...
 
[+]

Code size:
257 KB (263,168 bytes)

The file eupdate_17.8.0.3297_nt.exe has been discovered within the following programs.

eSafe Security Control 1.0.0.2359  by eSafe Security Co., Ltd.
Publisher's description - “eSafe provides content security, data control, and data leak prevention (DLP) solutions for incoming and outgoing Internet traffic through the edge of the network, including web surfing (web security gateway) and messaging (mail security gateway).”
www.safenet-inc.com/data-protection/content-security-esafe
About 9% of users remove it
eSafe Security Control 1.0.0.2522  by Banyan Tree Technology Limited
eSafe is a potentially unwanted web browser extension and Browser helper Object (for Internet Explorer) that delivers contextual based advertising to the web browser.
83% remove it
 
Powered by Should I Remove It?

Remove eupdate_17.8.0.3297_nt.exe - Powered by Reason Core Security