wasub.exe

WaspAce wasub

WaspAce Service

The application wasub.exe by WaspAce Service has been detected as a potentially unwanted program by 2 anti-malware scanners.
Publisher:
WaspAce  (signed by WaspAce Service)

Product:
WaspAce wasub

Description:
wasub

Version:
3.12.1.0

MD5:
a3b30d334159338502e0f0789d440cb0

SHA-1:
adf5eb777ed5d073071525e0f939d43094427be4

SHA-256:
8448b0f12a07c1b68d48ced6868761b99b4534d38081b76bd92573a2920749ad

Scanner detections:
2 / 68

Status:
Potentially unwanted

Analysis date:
4/18/2024 1:01:46 PM UTC  (today)

Scan engine
Detection
Engine version

AVG
Generic
2017.0.2807

Reason Heuristics
PUP.WaspAceS (M)
16.3.12.2

File size:
1.6 MB (1,680,432 bytes)

Product version:
1.0.0.0

Copyright:
WaspAce

Trademarks:
WaspAce

Original file name:
wasub.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\roaming\windows\wasub.exe

Digital Signature
Signed by:

Authority:
WaspAce Service

Valid from:
4/8/2013 5:16:42 AM

Valid to:
1/1/2040 5:59:59 AM

Subject:
CN=WaspAce Service

Issuer:
CN=WaspAce Service

Serial number:
32FD6B4F8A1DF6AC491E72D01463EE79

File PE Metadata
Compilation timestamp:
4/10/2015 4:26:35 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:7/QNFknunj6KPmVyELmIUAcp7Le0bz2x7NOh9cT/+ucExNY6V:d49mbLmIUASPz2FT2jExNY6V

Entry address:
0x140530

Entry point:
55, 8B, EC, B9, 07, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 51, B8, CC, 80, 53, 00, E8, 2E, B8, EC, FF, 33, C0, 55, 68, 4F, 08, 54, 00, 64, FF, 30, 64, 89, 20, B2, 01, A1, 40, EE, 53, 00, E8, 84, 57, EC, FF, A3, 78, F9, 55, 00, B8, 7C, F9, 55, 00, 8B, 15, 78, F9, 55, 00, 85, D2, 74, 03, 83, EA, F8, E8, 98, AE, EC, FF, E8, A3, CF, FD, FF, 6A, 02, E8, 1C, E8, EC, FF, B8, B4, 7F, 53, 00, E8, 66, D2, FD, FF, A3, 74, F9, 55, 00, 33, C0, 55, 68, 2D, 08, 54, 00, 64, FF, 30, 64, 89, 20, E8, F6, E4, EC, FF, E8, C9...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
1.2 MB (1,309,184 bytes)

Remove wasub.exe - Powered by Reason Core Security