update.exe

wyUpdate

wyDay

Publisher:
wyDay  (signed and verified)

Product:
wyUpdate

Version:
2.6.7.0

MD5:
4dc26010ceb28b7aba9868da5e271731

SHA-1:
5e9842f82dbc17b1974dcfc4b8baf28d3b8c266f

SHA-256:
ce56ca24415611397b5c588ff86d82befbd1de2764cede0aafc4960bc0d99a8a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 6:51:13 PM UTC  (today)

File size:
416.2 KB (426,192 bytes)

Product version:
2.6.7.0

Copyright:
Copyright © 2005-2010 wyDay

Original file name:
wyUpdate.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\universe sandbox\update.exe

Digital Signature
Signed by:

Authority:
The USERTRUST Network

Valid from:
9/8/2008 9:00:00 PM

Valid to:
9/9/2011 8:59:59 PM

Subject:
CN=wyDay, O=wyDay, STREET=9461 GSS, L=Durham, S=New Hampshire, PostalCode=03824, C=US

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
732B256D66B1D3D0003C9FBBA719201C

File PE Metadata
Compilation timestamp:
9/29/2010 10:58:18 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
6144:Qe9ZWB9U/NisD9mx9Yn9NSn6v082GFyYLGMiCOT4iTLKXB6MkuKEQlrkY2F61W3N:qiTZEKi/EiSPOEY2F61W3MR7s8OuVm

Entry address:
0x62DAE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 04, 00, 03, 00, 00, 00, 30, 00, 00, 80, 0E, 00, 00, 00, 70, 00, 00, 80, 10, 00, 00, 00, 88, 00, 00, 80, 18, 00, 00, 00, A0, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
387.5 KB (396,800 bytes)

The file update.exe has been discovered within the following program.

SmartLink Desktop  by DeVilbiss Healthcare
About 5% of users remove it
 
Powered by Should I Remove It?

Scan update.exe - Powered by Reason Core Security