WTFast.exe

WTFast client

AAA Internet Publishing, Inc.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘WTFast Tray’.
Publisher:
AAA Internet Publishing, Inc.  (signed and verified)

Product:
WTFast client

Description:
WTFast

Version:
4.3.0.889

MD5:
406e58aca297b2e4b8d22ab738f23cc8

SHA-1:
f0afe119e046447fac6bf3ee52430abee74a070d

SHA-256:
466bc1f9f5f45d6d87dd8eba142f0f3598915cda8921612ed9e5d53e92747083

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/27/2024 7:34:25 AM UTC  (today)

Scan engine
Detection
Engine version

Clam AntiVirus
Win.Trojan.TinyPacker-6015372-0
0.98/23203

File size:
7.1 MB (7,420,024 bytes)

Product version:
4.3.0.889

Copyright:
Copyright © AAA Internet Publishing, Inc. 2017

Original file name:
WTFast.exe

File type:
Executable application (Win32 EXE)

Language:
Turkish (Turkey)

Common path:
C:\Program Files\wtfast\wtfast.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
3/17/2015 3:00:00 AM

Valid to:
3/17/2018 2:59:59 AM

Subject:
CN="AAA Internet Publishing, Inc.", O="AAA Internet Publishing, Inc.", STREET=3248 Stonegate Court, L=West Kelowna, S=BC, PostalCode=V4T 1A7, C=CA

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
155DDE848F309A85F2E1E27759446899

File PE Metadata
Compilation timestamp:
3/14/2017 8:14:22 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
48.0

Entry address:
0xB96000

Entry point:
EB, 08, 0F, 00, 71, 00, 00, 00, 00, 00, E9, 00, 20, 00, 00, 54, 41, 47, 47, 00, 20, 00, 00, B7, 1B, 00, 00, 01, 00, 30, 82, 1B, B3, 06, 09, 2A, 86, 48, 86, F7, 0D, 01, 07, 02, A0, 82, 1B, A4, 30, 82, 1B, A0, 02, 01, 01, 31, 09, 30, 07, 06, 05, 2B, 0E, 03, 02, 1A, 30, 82, 0F, 21, 06, 09, 2A, 86, 48, 86, F7, 0D, 01, 07, 01, A0, 82, 0F, 12, 04, 82, 0F, 0E, D0, 00, 01, 00, 01, C1, B1, A1, 02, 00, 04, 00, 05, 00, 00, 00, 26, 00, 00, 00, 01, 00, 0D, 1A, 8A, 30, 05, 59, 29, 89, 7F, E4, B6, 3B, 35, 9C, 92, 5E, 56...
 
[+]

Code size:
7 MB (7,353,856 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
WTFast Tray

Command:
"C:\Program Files\wtfast\wtfast.exe" trayonly


Scan WTFast.exe - Powered by Reason Core Security