[audio]wandrv6.exe

wandrv6

721PC-Net Corporation

The application [audio]wandrv6.exe, “Easy DriverPack6.5 - 721PC-Net Corporation” has been detected as a potentially unwanted program by 18 anti-malware scanners.
Publisher:
721PC-Net Corporation

Product:
wandrv6

Description:
Easy DriverPack6.5 - 721PC-Net Corporation

Version:
6.5.36.517

MD5:
74d4236433e7af29ecb0decee96f2b9e

SHA-1:
ec390b2a8396bcdd434d9b416c9dc2e782adf4a2

SHA-256:
ef08b177c5c453cec19a9b4b490d1789dda11577a6189f2fe0d2207744852a5c

Scanner detections:
18 / 68

Status:
Potentially unwanted

Analysis date:
6/3/2026 1:04:34 AM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Riskware.VProtect
7.1.1

AhnLab V3 Security
ASD.Reputation
2015.12.13

Avira AntiVirus
TR/Rogue.5934328
8.3.2.4

avast!
Win32:Malware-gen
2014.9-160123

Baidu Antivirus
Hacktool.Win32.VProtect
4.0.3.16123

Bkav FE
HW32.Packed
1.3.0.7383

Comodo Security
Packed.Win32.VProtect.A
23755

ESET NOD32
Win32/Packed.VProtect.B suspicious (variant)
10.12713

Fortinet FortiGate
PossibleThreat
1/23/2016

IKARUS anti.virus
Trojan-Dropper.Agent
t3scan.1.9.5.0

K7 AntiVirus
Trojan
13.212.18090

Kaspersky
UDS:DangerousObject.Multi.Generic
14.0.0.775

McAfee
Artemis!74D4236433E7
5600.6512

NANO AntiVirus
Trojan.Win32.DamagedFile.belkdi
1.0.10.5081

Qihoo 360 Security
HEUR/QVM19.1.Malware.Gen
1.0.0.1077

Sophos
Mal/EncPk-ZM
4.98

Trend Micro
TROJ_GEN.R00XC0EIK15
10.465.23

VIPRE Antivirus
Trojan.Win32.Generic
45802

File size:
5.7 MB (5,934,328 bytes)

Product version:
19.69.0.721

Copyright:
©2006-2015 721PC-Net Corporation,all rights reserved.

Original file name:
wandrv6.exe

File type:
Executable application (Win32 EXE)

Language:
Vietnamese (Vietnam)

Common path:
C:\users\{user}\downloads\programs\easy_driver_pack_thai_6.5.2015.0815\wandrv6_win7.x64_6.5.2015.0815\[win7.x64]drivers\audio\[audio]wandrv6.exe

File PE Metadata
OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
98304:1sAKDwe+eauFDW3+IuAWrdjbL8XImxGNiMKEdL/mO4b1kAaXQO2sC52B:SMCJMOtJb8pxGEvEQOrC52B

Entry address:
0x4045D0

Entry point:
3B, C0, 74, 1C, EB, 00, DB, 2D, DC, 45, 80, 00, FF, FF, FF, FF, FF, FF, FF, FF, 3D, 40, FF, 56, 50, 72, 6F, 74, 65, 63, 74, 00, E8, 89, 1E, 08, 00, E1, B8, 4E, 6D, DC, DA, F2, A3, 13, EB, D8, E1, CA, B2, 00, 35, A8, C9, E9, 35, BB, 95, B1, 93, BD, 7B, 7D, F2, 96, 51, 1B, F8, 21, 13, E6, A5, 33, D8, EA, E3, DA, 04, 49, 5E, E2, BE, DE, 95, 9E, A5, 1F, 32, E5, BE, 48, 96, 5A, B1, B6, B9, F0, 36, 90, 31, AE, CA, AD, 90, B0, A6, B2, F3, 6F, F1, 7B, D8, 42, 35, BD, 30, 24, 10, E9, B6, B7, 2C, 53, 7E, 89, 70, 93...
 
[+]

Entropy:
7.9081  (probably packed)

Code size:
16.5 KB (16,896 bytes)

Remove [audio]wandrv6.exe - Powered by Reason Core Security