WindowNetworkManager.exe

WindowNetworkManager

enliple Ltd.

The application WindowNetworkManager.exe by enliple has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This file is typically installed with the program Window Network Manager by Graftor which is a potentially unwanted software program. It is also typically executed from an Internet Explorer cache folder.
Publisher:
enliple Ltd.  (signed and verified)

Product:
WindowNetworkManager

Version:
8.01

MD5:
47d39cdf1710f620602f8f376fc910f8

SHA-1:
6acb2d31153a6b03d992e08ca329d74d7216071e

SHA-256:
e3c3db7d9d4ddd2fe3621e29bb22f5765e6cbdfe17b6b27ae8dbe8c47eac29cc

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/23/2024 6:19:42 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.enliple (M)
15.12.15.10

File size:
1.4 MB (1,437,544 bytes)

Product version:
8.01

Original file name:
WindowNetworkManager.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\windownetworkmanager.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
6/25/2013 6:00:00 PM

Valid to:
6/26/2015 5:59:59 PM

Subject:
CN=enliple Ltd., OU=Internet Dept, O=enliple Ltd., L=Guro-gu, S=SEOUL, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
178A151BFE91D2CFD345640D3EE64736

File PE Metadata
Compilation timestamp:
12/24/2013 2:10:40 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:tGUfE/4J9V2mUW0j9nUBTZPJMUfN6X3GJAbBDH796HAOOT0CB7XmRSJRB:tGYh4nUVZPyUfN6X3GJ+Db9RXmRSJT

Entry address:
0x6CE0

Entry point:
68, DC, 3F, 44, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 48, 00, 00, 00, 00, 00, 00, 00, B1, C8, EB, 7D, 90, 47, 31, 48, 83, 94, AA, 60, 22, 78, 3F, A4, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 57, 69, 6E, 64, 6F, 77, 4E, 65, 74, 77, 6F, 72, 6B, 4D, 61, 6E, 61, 67, 65, 72, 00, 00, 00, 00, 00, 00, 00, 00, FF, CC, 31, 00, 72, B0, 52, 04, ED, 61, B9, E7, 46, 8A, F5, 0C, BB, 76, DB, 7A, 4C, 81, B0, 44, FE, EB, 6C, ED, 4C, 84, F4, 42, 73, 5E, F1, 2E, 16, 3A, 4F, AD...
 
[+]

Entropy:
6.0448

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
1.1 MB (1,179,648 bytes)

The file WindowNetworkManager.exe has been discovered within the following program.

85% remove it
 
Powered by Should I Remove It?

Remove WindowNetworkManager.exe - Powered by Reason Core Security