xitrwonq.dll

The module xitrwonq.dll has been detected as a potentially unwanted program by 16 anti-malware scanners.
Version:
1.0.0.0

MD5:
5f71aca5dc27687db356d786261bd643

SHA-1:
a52f3f0343d3aa874e5064067b3f1bf55acfc884

SHA-256:
19992553981dbbc9203f725bfeee6baab9f7b058bbe6944522746a95c56d1878

Scanner detections:
16 / 68

Status:
Potentially unwanted

Analysis date:
4/18/2024 8:12:21 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Adware.Linkury.M
5829361

AhnLab V3 Security
Adware/Win32.Linkury
2014.11.24

Avira AntiVirus
APPL/Linkury.iona
7.11.188.92

Bitdefender
Adware.Linkury.M
1.0.20.1635

Comodo Security
Application.MSIL.Linkury.I
20176

Dr.Web
Trojan.KillFiles.15040
9.0.1.05190

Emsisoft Anti-Malware
Adware.Linkury.M
9.0.0.4570

F-Prot
W32/A-c1c00d0f
v6.4.7.1.166

F-Secure
Adware.Linkury.M
11.2014-23-11_1

G Data
Adware.Linkury
14.11.24

IKARUS anti.virus
AdWare.Linkury
t3scan.1.8.3.0

MicroWorld eScan
Adware.Linkury.M
15.0.0.981

NANO AntiVirus
Trojan.Win32.Zapchast.dhguqj
0.28.6.63474

nProtect
Trojan/W32.Agent.86016.DRW
14.11.21.01

SUPERAntiSpyware
Adware.Zapchast/Variant
10219

Vba32 AntiVirus
Trojan.MSIL.Zapchast
3.12.26.3

File size:
84 KB (86,016 bytes)

Product version:
1.0.0.0

Original file name:
xitrwonq.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\xitrwonq.dll

File PE Metadata
Compilation timestamp:
11/20/2014 2:03:48 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
1536:U++mIpcQnCyfVIzFGMXRXe8Wv99wHFH74RmFRKlUK7BC:ULmMv9YJhOhqHFH8RmFR+UK7BC

Entry address:
0x13A5E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
4.8063

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
72 KB (73,728 bytes)

Remove xitrwonq.dll - Powered by Reason Core Security