wnaxo.exe

JoinBCGroup

Product:
JoinBCGroup

Version:
1.0.0.0

MD5:
2ae9f5b5f7aefd73fa39f8958f1af9c9

SHA-1:
b96ab112fa6fb7b3af1bceb8f129d26c91c12289

SHA-256:
59d9498f4107a923bf02b71bdd86d22d8772e3f16a22bb1532f26f0d30efb767

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/25/2024 8:19:06 AM UTC  (today)

Scan engine
Detection
Engine version

Qihoo 360 Security
HEUR/QVM03.0.Malware.Gen
1.0.0.1077

File size:
34.5 KB (35,328 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2016

Original file name:
JoinBCGroup.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\wnaxo.exe

File PE Metadata
Compilation timestamp:
1/28/2016 3:33:09 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
384:6fGawFjt15Yi6rcfvt/sSELk24jXPlZeRa3XEWa93Eubo/6e:lJDLfBI2XPzexl8l

Entry address:
0x6FDE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 05, 7B, AA, 56, 00, 00, 00, 00, 02, 00, 00, 00, 1C, 01, 00, 00, 1C, 80, 00, 00, 1C, 54, 00, 00, 52, 53, 44, 53, 1B, 7F, 30, 9C, 1B, 9A, 75, 41, BB, 74, 86, 8E, 12, 9A, B9, 14, 01, 00, 00, 00, 43, 3A, 5C, 55, 73, 65, 72, 73, 5C, 44, 6F, 6D, 69, 6E, 75, 73, 54, 72, 65, 78, 5C, 44, 6F, 63, 75, 6D, 65, 6E, 74, 73, 5C, 56, 69, 73, 75, 61, 6C, 20, 53, 74, 75, 64...
 
[+]

Entropy:
5.0811

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
20 KB (20,480 bytes)

The file wnaxo.exe has been seen being distributed by the following 2 URLs.

Scan wnaxo.exe - Powered by Reason Core Security