wmkut.DLL

WebMoney Keeper Classic Module

CJSC Computing Forces

Publisher:
CJSC "Computing Forces"  (signed by CJSC Computing Forces)

Product:
WebMoney Keeper Classic Module

Version:
3, 5, 0, 3

MD5:
e75dabf0166758a7cd72142526022a1f

SHA-1:
d4af5f972d7fa9ccc45a0a355e1f962695d2fa39

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/18/2025 5:24:27 AM UTC  (today)

Scan engine
Detection
Engine version

Prevx
Heuristic: Suspicious File With Covert Attributes
3.0.11

File size:
1.6 MB (1,668,608 bytes)

Product version:
3, 5, 0, 3

Copyright:
Copyright © 1998-2007 by CJSC "Computing Forces"

Trademarks:
WebMoney Transfer

Original file name:
wmkut.DLL

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\webmoney\wmkut.dll

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
10/23/2007 3:00:00 AM

Valid to:
10/21/2009 2:59:59 AM

Subject:
CN=CJSC Computing Forces, OU=IT, O=CJSC Computing Forces, L=Moscow, S=Moscow, C=RU

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
3BE99D21E68BD8A8DB6C369CB0FC0661

Registration
CLSID:
{545E411B-6490-44BD-841B-CA0251225318}

ProgID:
Lanap.BotDetect.1

COM registered:
Yes

File PE Metadata
Compilation timestamp:
10/23/2007 6:11:44 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
83.82

CTPH (ssdeep):
24576:XzjeCdLUVUj0e6jp55A4nCGzN+fg+MVYu+pxJw9/vIjXpojfyERy1NR0:XzSN+Y0Xjw9/vIjXpoDyEINR0

Entry address:
0x162256

Entry point:
83, 7C, 24, 08, 01, 75, 05, E8, DE, 4B, 00, 00, FF, 74, 24, 04, 8B, 4C, 24, 10, 8B, 54, 24, 0C, E8, ED, FE, FF, FF, 59, C2, 0C, 00, 6A, 0C, 68, 80, C0, 18, 10, E8, E5, 24, 00, 00, 8B, 4D, 08, 33, FF, 3B, CF, 76, 2E, 6A, E0, 58, 33, D2, F7, F1, 3B, 45, 0C, 1B, C0, 40, 75, 1F, E8, 8F, 15, 00, 00, C7, 00, 0C, 00, 00, 00, 57, 57, 57, 57, 57, E8, 20, 15, 00, 00, 83, C4, 14, 33, C0, E9, D5, 00, 00, 00, 0F, AF, 4D, 0C, 8B, F1, 89, 75, 08, 3B, F7, 75, 03, 33, F6, 46, 33, DB, 89, 5D, E4, 83, FE, E0, 77, 69, 83, 3D...
 
[+]

Entropy:
6.6061

Code size:
340 KB (348,160 bytes)

Scan wmkut.DLL - Powered by Reason Core Security