vwpt.exe

Viewpoint Corporation

Publisher:
Viewpoint Corporation  (signed and verified)

MD5:
fc393cff7bc091c6733a7df192a4d133

SHA-1:
1ac613e5a727590d3de91df96a0153c7ea5255bf

SHA-256:
5e68982b6e182c8f4f9759a2bd7152db1fb95553c457a071b364b1667cf0494a

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/19/2024 3:59:18 AM UTC  (today)

Scan engine
Detection
Engine version

NANO AntiVirus
Trojan.Win32.Ramnit.bdcawm
0.28.0.57029

File size:
3.7 MB (3,858,056 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\comps\vwpt\vwpt.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/21/2003 4:30:00 AM

Valid to:
8/1/2004 4:29:59 AM

Subject:
CN=Viewpoint Corporation, OU=Digital ID Class 3 - Microsoft Software Validation v2, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Viewpoint Corporation, L=New York, S=New York, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2001 CA, OU=Terms of use at https://www.verisign.com/rpa (c)01, OU=VeriSign Trust Network, O="VeriSign, Inc."

Serial number:
060B54186DA622C84D7D46ED34FFBD3A

File PE Metadata
Compilation timestamp:
12/5/2001 10:08:28 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
98304:7yC3LQs6ryhXtNp4Lkr5VQm7jCIZZwWpoWv1KJbAEvg7KW:7yZryhXV4LK56kt9CWvCDBW

Entry address:
0x43F4

Entry point:
51, 51, 53, 55, 56, 57, FF, 15, 28, 71, 40, 00, 8B, F0, FF, 15, 08, 71, 40, 00, 05, E8, 03, 00, 00, 89, 44, 24, 14, FF, 15, 28, 70, 40, 00, 8A, 06, 8B, 1D, F0, 71, 40, 00, 3C, 22, 75, 2B, 56, FF, D3, 8B, F0, 8A, 06, 84, C0, 74, 04, 3C, 22, 75, F1, 80, 3E, 00, 74, 05, 56, FF, D3, 8B, F0, 8B, 2D, 84, 70, 40, 00, 80, 3E, 20, 75, 18, 56, FF, D3, 8B, F0, EB, F4, 84, C0, 74, EA, 3C, 20, 74, E6, 56, FF, D3, 8B, F0, 8A, 06, EB, EF, 80, 3E, 2F, 0F, 85, 85, 00, 00, 00, 56, FF, D3, 8B, F0, 56, FF, D3, 8A, 16, 80, FA...
 
[+]

Entropy:
7.9406  (probably packed)

Code size:
23.5 KB (24,064 bytes)

Scan vwpt.exe - Powered by Reason Core Security