becwsupa.exe

ABN AMRO E.dentifier2 Becwsupa

ABN AMRO Bank N.V.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Becwsupa’. This is installed with ABN AMRO e.dentifier2 software.
Publisher:
ABN AMRO  (signed by ABN AMRO Bank N.V.)

Product:
ABN AMRO E.dentifier2 Becwsupa

Description:
E.dentifier2 Connector Update Agent

Version:
0.2.2.0

MD5:
3f499b6058391bd647a05c572230ab35

SHA-1:
0b6b249c117b4b4519f3ae20e4528c47d45b1a9b

SHA-256:
ae1c9ca685520fadbfa3accb0e9e18a45f6c9f2e17c8e8378dab241ea641fe61

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
7/13/2025 10:54:03 PM UTC  (today)

File size:
158.4 KB (162,160 bytes)

Product version:
0.2.2.0

Copyright:
Copyright © 2017

Original file name:
becwsupa.exe

File type:
Executable application (Win32 EXE)

Language:
English (United Kingdom)

Common path:
C:\Program Files\abn amro e.dentifier2\wss\becwsupa.exe

Digital Signature
Authority:
QuoVadis Limited

Valid from:
1/20/2017 7:50:21 AM

Valid to:
1/24/2017 1:00:00 AM

Subject:
CN=ABN AMRO Bank N.V., OU=CISO IAM DPM, O=ABN AMRO Bank N.V., L=Amsterdam, S=NH, C=NL

Issuer:
CN=QuoVadis Code Signing CA G1, O=QuoVadis Limited, C=BM

Serial number:
42581438FE3691A139DA89859A0C701D3A733611

File PE Metadata
Compilation timestamp:
1/9/2017 3:15:27 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

Entry address:
0x8D39

Entry point:
E8, 34, 5D, 00, 00, E9, 00, 00, 00, 00, 6A, 14, 68, D8, E4, 41, 00, E8, B1, 14, 00, 00, E8, 01, 5F, 00, 00, 0F, B7, F0, 6A, 02, E8, C7, 5C, 00, 00, 59, B8, 4D, 5A, 00, 00, 66, 39, 05, 00, 00, 40, 00, 74, 04, 33, DB, EB, 33, A1, 3C, 00, 40, 00, 81, B8, 00, 00, 40, 00, 50, 45, 00, 00, 75, EB, B9, 0B, 01, 00, 00, 66, 39, 88, 18, 00, 40, 00, 75, DD, 33, DB, 83, B8, 74, 00, 40, 00, 0E, 76, 09, 39, 98, E8, 00, 40, 00, 0F, 95, C3, 89, 5D, E4, E8, 56, 59, 00, 00, 85, C0, 75, 08, 6A, 1C, E8, DC, 00, 00, 00, 59, E8...
 
[+]

Code size:
90 KB (92,160 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Becwsupa

Command:
"C:\Program Files\abn amro e.dentifier2\wss\becwsupa.exe"


The file becwsupa.exe has been discovered within the following program.

ABN AMRO e.dentifier2 software  by ABN AMRO BANK
www.abnamro.nl/edentifier2
About 2% of users remove it
 
Powered by Should I Remove It?

Scan becwsupa.exe - Powered by Reason Core Security