updater.exe

Shieldapps

The application updater.exe, “updater 1.0.5 © updater, Inc, 2017” by Shieldapps has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
updater  (signed by Shieldapps)

Product:
updater

Description:
updater 1.0.5 © updater, Inc, 2017

Version:
1.0.5

MD5:
bdc47e300cc1db1d4cc62188ed97b16f

SHA-1:
6532da893c40d210a4f3f0765d21fa48ebc3d9bd

SHA-256:
53557ae904c962d05fbde24c9dbf6605b2cbfb1fc2a72c230ce31860e5d59899

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/25/2024 6:09:31 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic
17.3.11.17

File size:
494.8 KB (506,696 bytes)

Product version:
1.0.5

Copyright:
Copyright (C) 2016 updater

Original file name:
updater.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\pc privacy shield\updater.exe

Digital Signature
Signed by:

Authority:
Symantec Corporation

Subject:
CN=Shieldapps, O=Shieldapps, L=Encino, S=California, C=US

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
2125F865794B8C1D436695D5B25CFEB8

File PE Metadata
Compilation timestamp:
11/15/2016 5:19:22 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

Entry address:
0x2F26B

Entry point:
E8, 89, 04, 00, 00, E9, 8E, FE, FF, FF, 55, 8B, EC, 6A, FF, 68, 16, 6D, 44, 00, 64, A1, 00, 00, 00, 00, 50, 51, 53, 56, 57, A1, 0C, 80, 45, 00, 33, C5, 50, 8D, 45, F4, 64, A3, 00, 00, 00, 00, 89, 65, F0, FF, 75, 08, 83, 65, FC, 00, E8, 68, FD, FF, FF, 59, EB, 08, B8, B3, F2, 42, 00, C3, 33, C0, 8B, 4D, F4, 64, 89, 0D, 00, 00, 00, 00, 59, 5F, 5E, 5B, 8B, E5, 5D, C3, 55, 8B, EC, 81, EC, 24, 03, 00, 00, 53, 56, 6A, 17, E8, D1, 2D, 01, 00, 85, C0, 74, 05, 8B, 4D, 08, CD, 29, 33, F6, 8D, 85, DC, FC, FF, FF, 68...
 
[+]

Code size:
280 KB (286,720 bytes)

Remove updater.exe - Powered by Reason Core Security