updatemydrivers.exe

SmartTweak Software Ltd

The application updatemydrivers.exe by SmartTweak Software has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘UpdateMyDrivers’.
Publisher:
SmartTweak Software Ltd  (signed and verified)

MD5:
54faec1737af5aad019be204df68fda8

SHA-1:
7178fd9a9d2c6efc7b1b8210847d4013e2476a8e

SHA-256:
bd50276d08b4c25ac7e856dc5a536928c3843294dda5fd67f3d3500b3ebcb2d5

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/25/2024 8:16:26 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic
16.2.1.11

File size:
4.6 MB (4,820,632 bytes)

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\smarttweak software\updatemydrivers\updatemydrivers.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
5/8/2011 5:00:00 PM

Valid to:
5/8/2013 4:59:59 PM

Subject:
CN=SmartTweak Software Ltd, OU=IT Department, O=SmartTweak Software Ltd, L=Rostov-on-Don, S=Rostov-on-Don, C=RU

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
6699CC0BE07AF8B99313774639759B1B

File PE Metadata
Compilation timestamp:
6/13/2011 11:40:49 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:STWM7jXMkklSS97xYz+lWyrcYd6lrTcTI/AddxsI48vv6R3QLfTkafk/XxJINfro:STWeXMTl77KzMWuQlGC3QLVk7IRo

Entry address:
0x1C7978

Entry point:
55, 8B, EC, 83, C4, F0, 53, B8, 9C, 4A, 5C, 00, E8, 27, 17, E4, FF, 8B, 1D, 9C, 6C, 5D, 00, 33, C0, 55, 68, 03, 7B, 5C, 00, 64, FF, 30, 64, 89, 20, A1, D4, 63, 5D, 00, 8B, 00, E8, 5F, 0F, FE, FF, 84, C0, 0F, 85, 44, 01, 00, 00, B8, 1C, 7B, 5C, 00, E8, 89, 6A, E4, FF, 84, C0, 74, 0A, B8, 1C, 7B, 5C, 00, E8, FB, 6B, E4, FF, 8B, 03, E8, F0, 03, ED, FF, 8B, 03, B2, 01, E8, 4F, 1F, ED, FF, B2, 01, B8, 3C, 7B, 5C, 00, E8, 4F, DD, E4, FF, 84, C0, 74, 06, 8B, 03, C6, 40, 57, 00, 8B, 0D, 80, 66, 5D, 00, 8B, 03, 8B...
 
[+]

Entropy:
7.2104

Developed / compiled with:
Microsoft Visual C++

Code size:
1.8 MB (1,860,096 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
UpdateMyDrivers

Command:
C:\Program Files\smarttweak software\updatemydrivers\updatemydrivers.exe \ot \as \ss


Remove updatemydrivers.exe - Powered by Reason Core Security