Should I block it?
Yes, 98% block recommendation.
Possible reasons:
Multiple malware detections
Performance resource utilization
Additional versions
Updater.exe
Launcher by Amonetize ltd. (Signed)
Version: | 1.1.3.7 |
MD5: | 27b123068997890d90f58265fc6dc8ce |
SHA1: | ee24bb6217f8b708362f2e7e03e6f18fa775a004 |
SHA256: | 1416234c6aee3ac49916cfa41f5cc026619769f26ab29aef5051e97a665e77fb |
Warning 5 antivirus scanners has detected malware.
What is Updater.exe?
Software version updater (updater.exe) is the software updater program which runs in the background of Windows and automatically starts up when your PC boots. It checks for software udpates and automatically downloads and installs them if found.
Overview
updater.exe is malware that executes as a process with the local user's privileges. It is set to be run when the PC boots and the user logs into Windows (added to the Run registry key for the current user). It is installed with a couple of know programs including Software Version Updater published by Amonetize ltd. and Software Version Updater published by Amonetize ltd.. The file is digitally signed by Amonetize ltd. which was issued by the Thawte certificate authority (CA).
Details
File name: | updater.exe |
Publisher: | Amonetize ltd. |
Product name: | Launcher |
Description: | Software version updater |
Typical file path: | C:\users\user\appdata\local\swvupdater\updater.exe |
File version: | 1.1.3.7 |
Size: | 296.04 KB (303,144 bytes) |
Build date: | 5/27/2013 11:11 AM |
Certificate |
Issued to: | Amonetize ltd. |
Authority (CA): | Thawte |
Effective date: | Monday, May 14, 2012 |
Expiration date: | Wednesday, May 15, 2013 |
Digital DNA |
File packed: | Yes |
.NET CLR: | No |
More details
Programs
The following programs will install this file
The program is distributed by Amonetize ltd., a program bundling/installation monitization platform. "We provide our own installer software component. Our installer easily integrates with any Windows software product. The installer component offers users which are installing one of our software partners’ products, the opportunity to install some of our advertisers’ software in addition to that installation. The exact additional software...
Behaviors
Startup files (user) run
Runs under the registry key 'HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
- 'SwvUpdtr' → C:\users\user\appdata\Local\SwvUpdater\Updater.exe /reg
Scheduled tasks
- The task 'AmiUpdXp' runs on logon in the path '\AmiUpdXp'
- Entry path 'C:\WINDOWS\Tasks\AmiUpdXp.job'
- Entry path '\AmiUpdXp'
Scheduled tasks startups
Set to load on user login (bypasses Windows UAC if enabled)
- Login entry path 'C:\WINDOWS\Tasks\AmiUpdXp.job'
- Login entry path '\AmiUpdXp'
Malware detections
Based on 40+ industry antivirus scanners, 5 of them detected the following malware.
Antivirus engine | Engine version | Detection |
Bkav Security |
1.3.0.4246 |
HW32.CDB.29a5 |
Dr.Web |
8.13.9.30 |
Adware.Downware.1238 |
ESET NOD32 |
7.8844 |
a variant of Win32/Amonetize.I |
Malwarebytes |
1.75.0.1 |
PUP.Optional.Amonetize |
VIPRE Antivirus |
21834 |
Amonetize (fs) |
Distribution by Windows OS
OS version | distribution |
Windows 7 Home Premium |
32.97% |
|
Windows 7 Ultimate |
25.27% |
|
Microsoft Windows XP |
13.19% |
|
Windows 8 Pro |
10.99% |
|
Windows 8 |
5.49% |
|
Windows Vista Home Premium |
3.30% |
|
Windows 7 Professional |
2.20% |
|
Windows 8 Single Language |
2.20% |
|
Windows Vista Ultimate |
2.20% |
|
Windows 8 Pro with Media Center |
1.10% |
|
Windows 7 Ultimate N |
1.10% |
|
Distribution by country
United States installs about 51.65% of Launcher.
Distribution by PC manufacturer
PC Manufacturer | distribution |
Hewlett-Packard |
28.89% |
|
Toshiba |
20.00% |
|
Dell |
17.78% |
|
Acer |
12.22% |
|
ASUS |
6.67% |
|
Gateway |
4.44% |
|
American Megatrends |
3.33% |
|
Sony |
2.22% |
|
Sahara |
2.22% |
|
Samsung |
2.22% |
|