Software Updater

Threat Scorecard

Ranking: 1,893
Threat Level: 10 % (Normal)
Infected Computers: 339,394
First Seen: March 5, 2013
Last Seen: April 29, 2024
OS(es) Affected: Windows

There have been many reports involving problems related to the Software Updater, a Potentially Unwanted Program lately. Applications like the Software Updater may be installed on affected computer systems after computer users download free applications from suspicious websites with poorly-regulated content. Although the Software Updater looks like a security application, the Software Updater is designed to expose your computer to unwanted components and various types of PUPs or Potentially Unwanted Programs. The Software Updater is designed to display a large number of bogus notifications in the form of pop-up windows which are used to trick computer users into downloading other PUPs similar to the Software Updater. Security analysts strongly recommend that computer users avoid downloading any content associated with the Software Updater or clicking on the Software Updater's notifications. Instead, they recommend that computer users remove the Software Updater with the help of a reliable security application that is fully up to date.

Software Updater – An Updater Up to No Good

There are many PUPs that use tactics similar to the Software Updater. Threats such as PUM.Hidden.Desktop, Pup.datamngr and PUM.UserWLoad are also used to trick inexperienced computer users into downloading PUPs through fake software updates. The Software Updater message claims that the affected computer is 'at risk' and tries to trick the computer users into downloading a bogus 'update'. The Software Updater behaves in a way that is very similar to bogus security applications. However, the Software Updater is less threatening than many of these types of bogus security applications because the Software Updater is contained in a Web browser extension rather than as a stand-alone threat.

Removing the Software Updater for Good

The Software Updater should be removed at once. Security researchers recommend uninstalling the Software Updater using the Windows Control Panel. Once the Software Updater has been uninstalled, it is frequently necessary to undo harmful changes the Software Updater makes to your Web browser and computer settings. Scanning the affected computer with a reliable anti-malware application is also something that security researchers strongly recommend.

Aliases

15 security vendors flagged this file as malicious.

Anti-Virus Software Detection
AVG Generic6.JVW
McAfee Artemis!40A561235458
AVG Generic6.LQM
DrWeb Adware.ClickMeIn.96
Sophos Generic PUA NF
Symantec Trojan.Gen.2
McAfee Artemis!1D9A235F7A60
Fortinet Riskware/AdService
McAfee-GW-Edition BehavesLike.Win32.FakeAlertWinwebSecurity.ch
K7AntiVirus Adware ( 004b4f701 )
McAfee Artemis!E88E34C2B9A4
AVG Generic6.KIH
McAfee Artemis!FC495BD821C2
McAfee-GW-Edition BehavesLike.Win32.BadFile.gh
Symantec WS.Reputation.1

SpyHunter Detects & Remove Software Updater

File System Details

Software Updater may create the following file(s):
# File Name MD5 Detections
1. updaterservice.exe 5f67c2fa7874587df2ade9317de1e267 2
2. UpdaterService.exe 11aa4a2c4da59f76824a17f63afbbff2 1
3. UpdaterService.exe 3f987384aaea588ded344aaf0fecf32e 1
4. UpdaterService.exe da95e17c823eb746dc9402e3315c6bbc 1
5. UpdaterService.exe 55c7842e6725bf3571f4c7da0fd5658c 1
6. UpdaterService.exe a428a7a19e2be1532890542ce1678140 1
7. UpdaterService.exe 5c7a7007de6ad7611fe02f46920a3581 1
8. UpdaterService.exe 52fca4eb38ac77c6c28186b79c45674f 1
9. UpdaterService.exe 9c9129d99d6f47af81a64bcb087f4088 1
10. UpdaterService.exe 4aace6f45668cd2314346b204a3a7404 1
11. UpdaterService.exe a5f89c9f276364feb11d82429ed5830e 1
12. UpdaterService.exe eaf39fcb3bc00fdae1342dfc77dadd11 1
13. UpdaterService.exe a9e8cf3f027a746f12ad097f984f41bc 1
14. UpdaterService.exe 3403137aae2a47fdb57c4316d0db9ee4 1
15. UpdaterService.exe 8529b28bbd15efb5540cebc97b8d85ac 1
16. UpdaterService.exe e564d61ddbd401f6e4fb5e345994afef 1
17. UpdaterService.exe 4d04561a4062547265213d537679e5c9 1
18. UpdaterService.exe 558570c866983bd334cdaa6b4b7e4584 1
19. UpdaterService.exe a0cef1595da7d72759ec0ddb9ac72d40 1
20. UpdaterService.exe 44ffd72c98b42ded5ce6d4d67a55c4c7 1
21. UpdaterService.exe 264a6a6c75d3485f10b6be4b869096ea 1
22. UpdaterService.exe d788c0011fc7febbfdeda65530dc85ea 1
23. UpdaterService.exe d157ff6332811fa9e914ee826d7d5a68 1
24. UpdaterService.exe 596abdd64be8876f2f1eeebe79cd80ed 1
25. UpdaterService.exe 03f723eeb338ffca26b9b42e24eca188 1
26. UpdaterService.exe 9bb314518598d378739e807dad1239ff 1
More files

Registry Details

Software Updater may create the following registry entry or registry entries:
CLSID
{1C46B5B8-9393-4B8F-94C4-D76D3F0BA904}
{1C582E4A-2FAD-4D53-AA31-B1A75006080C}
{21482BA7-5906-4BE1-A2DD-0708314DB107}
{3B96B5D3-4A8D-42DC-9CDE-E9B94B3CFE5D}
{8017EDFD-9702-420C-9520-3D5DDC9054C8}
{809A8E30-7C9D-42BD-813D-1EA80204A19B}
{8B528DF9-1F05-4471-BDED-B03BE4B100B8}
{8C3E60D2-2077-4D06-BF42-51F29A3A9064}
{A4A9A754-2ADD-44FE-A97F-21C393217645}
{ACCC747B-2A59-4F30-BA7C-D26333DE65F5}
{AE2506E3-0F75-44EE-B552-CFF3BFF4D50F}
{BA36CEDF-573D-4796-812D-3DB883CF01A0}
{C24C3824-63D8-42CD-BB5A-77631072FDB2}
{C9BB4826-B9D8-48B1-9C94-E277990D2386}
{CA4E2A45-41DA-4103-8504-2B7FC9EA41E7}
{D239FB8C-932C-4982-8B67-BF837FF779A8}
{DD25ABBF-E2B4-488F-B721-69D4DD819732}
{EAADCB3E-0152-45A0-B732-27B4C0B5C134}
{EB41B92A-3A76-4237-9E6B-A5DDC2EAA771}
{FBBED792-5151-4349-A3D5-5382F6AF1B2C}
{FD061E3B-0841-4351-9B5E-514FEAD8588B}
{FD2436EE-C492-4E99-8328-7485E77B387E}
Regexp file mask
%WinDir%\System32\Tasks\SoftwareUpdateTaskMachineCore
%WinDir%\System32\Tasks\SoftwareUpdateTaskMachineUA
%WinDir%\Tasks\SoftwareUpdateTaskMachineCore.job
%WinDir%\Tasks\SoftwareUpdateTaskMachineUA.job
SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3B96B5D3-4A8D-42DC-9CDE-E9B94B3CFE5D}
SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ACCC747B-2A59-4F30-BA7C-D26333DE65F5}
SOFTWARE\Microsoft\Tracing\SoftwareUpdater_RASAPI32
SOFTWARE\Microsoft\Tracing\SoftwareUpdater_RASMANCS
SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\SoftwareUpdateTaskMachineCore.job
SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\SoftwareUpdateTaskMachineCore.job.fp
SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\SoftwareUpdateTaskMachineUA.job
SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\SoftwareUpdateTaskMachineUA.job.fp
SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SoftwareUpdateTaskMachineCore
SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SoftwareUpdateTaskMachineUA
SOFTWARE\MozillaPlugins\@tools.Software.com/Software Update;version=3
SOFTWARE\MozillaPlugins\@tools.Software.com/Software Update;version=9
SOFTWARE\SoftwareUpdater
SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3B96B5D3-4A8D-42DC-9CDE-E9B94B3CFE5D}
SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ACCC747B-2A59-4F30-BA7C-D26333DE65F5}
SOFTWARE\Wow6432Node\Microsoft\Tracing\softwareupdater_RASAPI32
SOFTWARE\Wow6432Node\Microsoft\Tracing\softwareupdater_RASMANCS
SOFTWARE\Wow6432Node\MozillaPlugins\@tools.Software.com/Software Update;version=3
SOFTWARE\Wow6432Node\MozillaPlugins\@tools.Software.com/Software Update;version=9
SOFTWARE\Wow6432Node\SoftwareUpdater
SYSTEM\ControlSet001\services\eventlog\Application\SrvSwUpd4ter
SYSTEM\ControlSet002\services\eventlog\Application\SrvSwUpd4ter
SYSTEM\CurrentControlSet\services\eventlog\Application\SrvSwUpd4ter

Directories

Software Updater may create the following directory or directories:

%ALLUSERSPROFILE%\Microsoft\Windows\Start Menu\Programs\Software Updater
%APPDATA%\SoftwareUpdater
%PROGRAMFILES%\Software\Update
%PROGRAMFILES(x86)%\Software\Update
%ProgramFiles%\Software Updater
%ProgramFiles%\SoftwareUpdater
%ProgramFiles(x86)%\Software Updater

Related Posts

Trending

Most Viewed

Loading...