winaux.exe

Auto Styling Plugin

yessign

The application winaux.exe by yessign has been detected as a potentially unwanted program by 18 anti-malware scanners.
Publisher:
yessign  (signed and verified)

Product:
Auto Styling Plugin

Version:
1, 0, 1, 67

MD5:
20c9ea8e20fb6c9c613b3e25df741e38

SHA-1:
ec01209ad0cad14d60c4ab174f7180694f9f81fd

SHA-256:
49d993f09da46e5e654642102a07759b883a8b19478602be3a2278bdb504ec7d

Scanner detections:
18 / 68

Status:
Potentially unwanted

Analysis date:
4/26/2024 9:17:18 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Adware.Graftor.6815
17.02.02

Avira AntiVirus
TR/Graftor.6815.22
8.3.1.6

Arcabit
Trojan.Adware.Graftor.D1A9F
1.0.0.425

Baidu Antivirus
Adware.Win32.WinAgir
4.0.3.1722

Bitdefender
Gen:Variant.Adware.Graftor.6815
1.0.20.165

Comodo Security
UnclassifiedMalware
23033

Emsisoft Anti-Malware
Gen:Variant.Adware.Graftor.6815
8.17.02.02.02

F-Secure
Gen:Variant.Adware.Graftor
11.2017-02-02_5

G Data
Gen:Variant.Adware.Graftor.6815
17.2.25

IKARUS anti.virus
Win32.Malware
t3scan.1.9.5.0

Kaspersky
not-a-virus:AdWare.Win32.WinAgir
14.0.0.-1108

MicroWorld eScan
Gen:Variant.Adware.Graftor.6815
18.0.0.99

NANO AntiVirus
Riskware.Win32.WinAgir.cxdgds
0.30.24.3079

nProtect
Trojan-Clicker/W32.WinAgir.86424
15.08.17.02

Qihoo 360 Security
Win32/Trojan.fff
1.0.0.1015

Rising Antivirus
PE:Trojan.Win32.Generic.14CC1C5C!348920924
23.00.65.17131

VIPRE Antivirus
WinAgir
42978

Zillya! Antivirus
Adware.WinAgir.Win32.255
2.0.0.2354

File size:
84.4 KB (86,424 bytes)

Product version:
1, 0, 1, 67

Copyright:
Copyright (C) 2009

Original file name:
Auto Styling Plugin

File type:
Executable application (Win32 EXE)

Common path:
C:\windows\temp\~nsis\winaux.exe

Digital Signature
Signed by:

Authority:
yessign

Valid from:
7/28/2010 12:00:00 AM

Valid to:
7/28/2011 11:59:59 PM

Subject:
CN=(주)플러그인 소프트, OU=02201007280002, OU=code-sign, O=yessign, C=kr

Issuer:
CN=yessignCA General Class 2, OU=AccreditedCA, O=yessign, C=kr

Serial number:
0402

File PE Metadata
Compilation timestamp:
3/14/2011 4:56:31 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0x5BDB

Entry point:
55, 8B, EC, 6A, FF, 68, B0, D2, 40, 00, 68, E0, 4F, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, 60, D1, 40, 00, 33, D2, 8A, D4, 89, 15, A0, 2D, 41, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, 9C, 2D, 41, 00, C1, E1, 08, 03, CA, 89, 0D, 98, 2D, 41, 00, C1, E8, 10, A3, 94, 2D, 41, 00, 33, F6, 56, E8, A5, 11, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, B0, 00, 00, 00, 59, 89, 75, FC, E8, 74, 42, 00, 00, FF, 15, 5C, D1, 40, 00, A3, EC, 43, 41, 00, E8...
 
[+]

Entropy:
5.4117

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
48 KB (49,152 bytes)

Remove winaux.exe - Powered by Reason Core Security