w3l.exe

This file is installed with multiple programs including Warcraft III: All Products.
MD5:
e023791868028e855ae69400773eaceb

SHA-1:
691e7cd546c43bfcf5c8a1ca5018171998a9f26f

SHA-256:
a0737361a21b80e5a79e86d80ff015f5fa0ad3faaba4313641925b113211b444

Scanner detections:
3 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/29/2025 9:18:49 PM UTC  (today)

Scan engine
Detection
Engine version

Comodo Security
Heur.Packed.Unknown
17275

Norman
Suspicious_Gen2.AHAV
11.20140310

Quick Heal
(Suspicious) - DNAScan
3.14.12.00

File size:
4.4 KB (4,508 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\warcraft lll\w3l.exe

File PE Metadata
Compilation timestamp:
3/3/2005 4:46:43 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

CTPH (ssdeep):
24:7pfs7y+/m5Y63ZZ+aXdcCkEF2vIyvIs+i4BsRvkc5X3aUlesI2pG+H3n:9k5F6JZ+31ERbs+i4Bwvke68esI2bX

Entry address:
0x1086

Entry point:
68, 98, 20, 40, 00, FF, 15, 94, 40, 40, 00, FF, 15, 9C, 40, 40, 00, 68, 98, 20, 40, 00, 68, 98, 20, 40, 00, 31, D2, 52, 52, 6A, 04, 52, 52, 52, 50, 68, 78, 20, 40, 00, FF, 15, 98, 40, 40, 00, 85, C0, 75, 1C, 6A, 00, 68, 00, 20, 40, 00, 68, 35, 20, 40, 00, 6A, 00, FF, 15, B8, 40, 40, 00, 6A, 02, FF, 15, 90, 40, 40, 00, 8B, 1D, 98, 20, 40, 00, 68, 90, 20, 40, 00, 6A, 04, 68, 94, 20, 40, 00, 68, D0, 34, 45, 00, 53, FF, 15, 84, 40, 40, 00, 85, C0, 0F, 84, 04, FF, FF, FF, A1, 94, 20, 40, 00, 3B, 05, 08, 20, 40...
 
[+]

Entropy:
2.6980

The file w3l.exe has been discovered within the following programs.

Eurobattle.net  by Eurobattle.net
www.eurobattle.net
About 2% of users remove it
About 3% of users remove it
 
Powered by Should I Remove It?

Scan w3l.exe - Powered by Reason Core Security