wnaspint.dll_634937143102015399

The file wnaspint.dll_634937143102015399 has been detected as malware by 15 anti-virus scanners.
MD5:
5a0c519fc47515ceac0654b6439c33d3

SHA-1:
8825e917186fa2bccfb11f60e07a05fed766cf76

SHA-256:
e40c0426ff8d3b4e760666acf4d14b2f04c4bca7aa4850f55206d584e16a6b7e

Scanner detections:
15 / 68

Status:
Malware

Analysis date:
4/25/2024 3:52:37 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/PWS.Sinowal.Gen
7.11.98.174

Bitdefender
Gen:Variant.Symmi.26604
1.0.20.540

Comodo Security
UnclassifiedMalware
16841

Emsisoft Anti-Malware
Gen:Variant.Symmi.26604
8.14.04.18.10

ESET NOD32
Win32/RiskWare.PEMalform
8.8739

Fortinet FortiGate
W32/RiskWare_PEMalform.E
4/18/2014

F-Secure
Gen:Variant.Symmi.26604
11.2014-18-04_6

G Data
Gen:Variant.Symmi.26604
14.4.22

IKARUS anti.virus
Trojan-PWS.Sinowal
t3scan.2.0.127

McAfee
Artemis!5A0C519FC475
5600.7157

MicroWorld eScan
Gen:Variant.Symmi.26604
15.0.0.324

NANO AntiVirus
Trojan.Win32..brwasf
0.26.0.54268

Norman
Suspicious_Gen4.DZKFJ
11.20140418

Panda Antivirus
Suspicious file
14.04.18.10

Trend Micro House Call
TROJ_GEN.R0JH1EI
7.2.108

File size:
89 KB (91,136 bytes)

File PE Metadata
Compilation timestamp:
1/27/2011 4:43:15 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

CTPH (ssdeep):
768:x4B7pheBISI7nTpwzm29sT6IO+Dbzr8HbGh8lUdFXHYS1UN61KRcceY+T7F42Fsj:x47he+JSsT6iH/8HbGSmdxwAcFaB+

Entry address:
0x498C

Entry point:
55, 8B, EC, 53, 8B, 5D, 08, 56, 8B, 75, 0C, 57, 8B, 7D, 10, 85, F6, 75, 09, 83, 3D, DC, 1E, 01, 10, 00, EB, 26, 83, FE, 01, 74, 05, 83, FE, 02, 75, 22, A1, FC, 35, 01, 10, 85, C0, 74, 09, 57, 56, 53, FF, D0, 85, C0, 74, 0C, 57, 56, 53, E8, E7, FE, FF, FF, 85, C0, 75, 04, 33, C0, EB, 4E, 57, 56, 53, E8, E4, C8, FF, FF, 83, FE, 01, 89, 45, 0C, 75, 0C, 85, C0, 75, 37, 57, 50, 53, E8, C3, FE, FF, FF, 85, F6, 74, 05, 83, FE, 03, 75, 26, 57, 56, 53, E8, B2, FE, FF, FF, 85, C0, 75, 03, 21, 45, 0C, 83, 7D, 0C, 00...
 
[+]

Entropy:
5.0798

Developed / compiled with:
Microsoft Visual C++

Code size:
4 KB (4,096 bytes)

Remove wnaspint.dll_634937143102015399 - Powered by Reason Core Security