Safe
Win32 EXE named 'Wireless Network Watcher' flagged as riskware by 2 of 76 engines (APEX generic malicious, GData specific Riskware.WirelessNetworkWatcher), with all others clean.
c5e4cb7d9900d2f3ae…ec6436d9aeThe verdict, reasoned out.
Not a rules engine. The MT AI Engine reads every signal we collected, weighs them against history, and commits to an answer.
The file presents as 'Wireless Network Watcher', a 1.3 MB Win32 EXE first seen in mid-2025. Out of 76 antivirus engines, only APEX calls it generic malicious and GData labels it Win32.Riskware.WirelessNetworkWatcher.OIW9U4, while 70 others report it undetected. No tier-1 engines like BitDefender, Kaspersky, ESET, or Avast flag it malicious. This low detection count points to a potential false positive on a legitimate network scanner tool. If run, it would likely just monitor WiFi devices without harm, but check the download source.
- 70 of 76 engines report undetected, including BitDefender, Kaspersky, ESET-NOD32, Avast, and Fortinet.
- No popular threat labels or names assigned.
- File name directly matches GData's riskware naming, suggesting a known legitimate tool.
- No timeouts or type-unsupported issues beyond mobile scanners.
- APEX detects it as malicious.
- GData flags Win32.Riskware.WirelessNetworkWatcher.OIW9U4, indicating potential unwanted network monitoring behavior.
- PE imphash 3fee945c7fbdb903f72e5a732ecd09b0 seen in prior scans.
- First seen recently on 2025-06-11.
If from the official NirSoft site, run it safely as a network viewer. Otherwise, quarantine and delete; rescan your system with updated antivirus.
Riskware.WirelessNetworkWatcher corroborated by 1 source
- MT AI EngineRiskware.WirelessNetworkWatcher
1 contradiction resolved by the scoring engine
2 detections across 76 engines
Forensic fingerprint
- File name
- Wireless Network Watcher
- Size
- 1.29 MB
- MIME type
- (unknown)
- Detected type
- Win32 EXE
- SHA-256
- c5e4cb7d9900d2f3aec665c46bea071d43c1eadef6fe311002b7d2ec6436d9ae
- MD5
- 72e6cd9a0180500a609a938a241fb02e
- SHA-1
- 5861f6eb34201c21700038d778e17ee7f02c6464
- PE imphash
- 3fee945c7fbdb903f72e5a732ecd09b0
- First seen (VT)
- 6/11/2025, 12:48:18 PM
- Last analysis (VT)
- 4/10/2026, 12:51:53 AM
- First scan (MalwareTips)
- 4/20/2026, 6:45:33 AM
- Last scan (MalwareTips)
- 4/20/2026, 2:30:10 PM
- Community reputation
- +2trusted
Reviews & malware reports(0)
Tell the community what you saw. Tag the sample — Trojan, Adware, False Positive — and share what the file did on your system. Your report helps confirm or dispute the AV verdict.