iw5sp.exe

The executable iw5sp.exe has been detected as malware by 26 anti-virus scanners.
MD5:
283996ed615f685e4c21afb8bb48698d

SHA-1:
697dc2e6b3b6166886dd8d218e883c56d6ef0b9d

SHA-256:
20c992935e1c330220381b5bf00404cfa16de4e0f1221693a111b241e633a055

Scanner detections:
26 / 68

Status:
Malware

Analysis date:
4/26/2024 11:28:09 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Kazy.86478
925

Agnitum Outpost
Trojan.Packed
7.1.1

Avira AntiVirus
TR/Black.Gen2
7.11.154.46

Bitdefender
Gen:Variant.Kazy.86478
1.0.20.1030

Bkav FE
W32.Clod68f.Trojan
1.3.0.4959

Clam AntiVirus
Win.Trojan.Agent-316820
0.98/21155

Comodo Security
UnclassifiedMalware
18499

Emsisoft Anti-Malware
Gen:Variant.Kazy.86478
8.14.07.25.08

ESET NOD32
Win32/Packed.VMProtect.AAM (variant)
8.9923

Fortinet FortiGate
W32/Packed_VMProtect.AAM!tr
7/25/2014

F-Prot
W32/Downldr2.IXMT
v6.4.7.1.166

F-Secure
Gen:Variant.Kazy.86478
11.2014-25-07_6

G Data
Gen:Variant.Kazy.86478
14.7.24

IKARUS anti.virus
Trojan.Black
t3scan.1.6.1.0

Malwarebytes
Trojan.Agent.H
v2014.07.25.08

McAfee
Generic-FAAF!283996ED615F
5600.7059

MicroWorld eScan
Gen:Variant.Kazy.86478
15.0.0.618

NANO AntiVirus
Trojan.Win32.Black.uunpi
0.28.0.60253

Norman
Suspicious_Gen2.SADFG
11.20140725

Quick Heal
Trojan.Agent.WD.cw8
7.14.14.00

Rising Antivirus
PE:Trojan.Win32.Generic.12A336AE!312686254
23.00.65.14723

Sophos
Mal/VMProtBad-A
4.98

Total Defense
Win32/Tnega.AKBK
37.0.10990

Trend Micro House Call
TROJ_SPNR.0BLC11
7.2.206

Trend Micro
TROJ_SPNR.0BLC11
10.465.25

VIPRE Antivirus
Trojan.Win32.Generic
30154

File size:
2.4 MB (2,528,256 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
11/4/2011 6:45:09 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:ka3ZLRz5PlYDmWZBcjNQoTBiSWk6jXolJ2mw/LF3KTd:vZdimWZeRRUtNj4v2mwed

Entry address:
0x254DCC1

Entry point:
60, C7, 44, 24, 1C, 09, 6D, BB, 88, 60, E8, E7, E1, 05, 00, 9C, E8, 81, D3, FF, FF, 1F, C6, 1B, F3, D0, 29, 0D, 64, 41, 9D, 7D, 5D, B8, A1, 0E, 7F, 4D, 7B, BB, FF, 69, 46, A6, 1B, 73, EC, 92, 7B, 28, 71, 52, FA, 53, C3, EE, 66, C2, FC, AC, 43, DF, 36, 13, 8C, F0, F0, E8, 48, 74, 5A, CD, 28, E1, 40, 49, 74, F0, CA, E6, E7, 88, 33, 8C, 0E, D5, 35, 32, DB, 0F, C0, 1F, E8, 12, FA, FD, 27, C6, 19, CE, 82, A1, F4, 6B, 90, 79, AA, 45, 89, 71, 6F, 11, 26, 0D, 87, 60, 85, D8, 5B, 10, C4, A8, 32, F9, F6, 61, 32, 83...
 
[+]

Code size:
3.6 MB (3,728,896 bytes)

Remove iw5sp.exe - Powered by Reason Core Security