GridinSoft Threat Intelligence

SentinelKeyW.dll threat report

Detected as SUSP.XORed_MSDOS File reputation report
MD5 b5713ba60e3a0f4e5c56f47e21be4e1a
Latest seen 2023-04-27 23:29:05 (3 years ago)
First seen 2023-04-27 23:29:05 (3 years ago)
Size 2 MB
Publisher SafeNet, Inc.
Product Sentinel Keys

GridinSoft Anti-Malware detection

Detected by GridinSoft before you download

The current ThreatInfo record shows this exact file hash detected as SUSP.XORed_MSDOS. Download GridinSoft Anti-Malware to scan the device, confirm whether this file is present, and remove the detected object if it is found.

Detection name
SUSP.XORed_MSDOS
Recommended action
Scan and remove
Last analysis
2023-04-27 23:29:05 (3 years ago)
File hash
b5713ba60e3a0f4e5c56f47e21be4e1a
Download Anti-Malware

Why it matters

Why GridinSoft flags this file

Detection

GridinSoft identifies the sample as SUSP.XORed_MSDOS, part of the Susp threat category.

Category context

Suspicious files with signals that require additional review before trust. Related Susp reports help compare this file with nearby detections, publishers, and hashes.

Timeline

First seen 2023-04-27 23:29:05 (3 years ago); latest analysis 2023-04-27 23:29:05 (3 years ago).

Publisher context

Company metadata: SafeNet, Inc.. Product metadata: Sentinel Keys.

Observed locations

ThreatInfo has seen this file in user or system paths listed below. Unexpected locations increase the need for local verification.

Recommended action

What to do next

  1. Compare the MD5 above with the file found on the device.
  2. Check whether the file appears in the observed locations or under one of the alternate names.
  3. Run GridinSoft Anti-Malware to confirm the detection and remove the file if it is present. Review the Susp category for related samples and common context.

SentinelKeyW.dll is a Windows file recorded in the ThreatInfo database. It is associated with Sentinel Keys. The reported company name is SafeNet, Inc.. The current detection status is SUSP.XORed_MSDOS, based on the latest analysis from 2023-04-27 23:29:05 (3 years ago). ThreatInfo groups this verdict with Susp reports for broader family-level investigation.

If SentinelKeyW.dll appears on your computer unexpectedly, treat it as suspicious. Check its location, digital signature, and recent system changes before allowing it to run. A full anti-malware scan is recommended when this file is detected as SUSP.XORed_MSDOS.

Product Name: Sentinel Keys
Company Name: SafeNet, Inc.
MD5: b5713ba60e3a0f4e5c56f47e21be4e1a
Size: 2 MB
First Published: 2023-04-27 23:29:05 (3 years ago)
Latest Published: 2023-04-27 23:29:05 (3 years ago)
Status: SUSP.XORed_MSDOS (on last analysis)
Analysis Date: 2023-04-27 23:29:05 (3 years ago)
SentinelKeyW.dll detection screenshot

The screenshot is a visual record of a GridinSoft Anti-Malware detection for this sample. Use the hash and metadata above as the primary identifiers when comparing the file on your system.

%programfiles%

ThreatInfo has observed SentinelKeyW.dll in the locations listed above. Files found in temporary folders, user profile folders, startup locations, or unusual application directories should be reviewed more carefully than files installed under a known program directory.

Windows 10 100.0%

The most common operating system signal for SentinelKeyW.dll is Windows 10 with 100.0% of observed hits. If your system differs from the common profile, check whether the file was introduced by a specific installer, archive, or removable device.

SentinelKeyW.dll is identified as pe for 32-bit systems. The subsystem is Windows GUI. PE header values are useful for triage, especially when they do not match the expected publisher, product, or release timeline.

Format pe
Architecture 32-bit
Subsystem Windows GUI
Entry point 0x00060c90
Image base 0x10000000

PE Sections:

Sections 52
Raw data 2950286

Section layout highlights raw-size concentration, repeated names, packer markers, and hashes that can be compared across related samples.

0000001 212992 bytes · 7.2% of section data
Uncommon name
MD5 365f32312f0ec2f6dd311e395e6fa07f
0000002 8192 bytes · 0.3% of section data
Uncommon name
MD5 dd6aaeb8eb853df14df75817e126f544
0000003 28672 bytes · 1.0% of section data
Uncommon name
MD5 e2c156a7d096cf9de735cbd7670de4ee
.rsrc 4096 bytes · 0.1% of section data
MD5 ebdc2577b4a5f0d0170d7cfd9823200d
0000005 12288 bytes · 0.4% of section data
Uncommon name
MD5 6593df777ad3ec91e1f7cb207a71269f
0000006 61440 bytes · 2.1% of section data
Uncommon name
MD5 3ecd87506952372a20742f69c3ce9057
0000007 4096 bytes · 0.1% of section data
Uncommon name
MD5 9e370b33b033378e4c5d16d766960af5
0000008 65536 bytes · 2.2% of section data
Uncommon name
MD5 27f4ac5dd3a11b63369f57839e9ae817
0000009 8192 bytes · 0.3% of section data
Uncommon name
MD5 fef39c903149480db792e967e056f77f
0000010 61440 bytes · 2.1% of section data
Uncommon name
MD5 c3aebe7f128ebd423c083cafcee694f3
0000011 65536 bytes · 2.2% of section data
Uncommon name
MD5 555889d1e40e707ededbc10809c53d90
0000012 2852 bytes · 0.1% of section data
Uncommon name
MD5 b87d310065b7f39c0a6efcdf117ad75b
0000013 61440 bytes · 2.1% of section data
Uncommon name
MD5 6ab06bb142163fa780704223394aedf0
0000014 65536 bytes · 2.2% of section data
Uncommon name
MD5 f55489ac108bbfc44e026fa3bfea2644
0000015 61440 bytes · 2.1% of section data
Uncommon name
MD5 5439a64d198b999e5f6aab2b02f887f1
0000016 65536 bytes · 2.2% of section data
Uncommon name
MD5 f841b4104f3b215e4d8b151b090307be
0000017 61440 bytes · 2.1% of section data
Uncommon name
MD5 b51565b6c6141137fcb2b9f3fb2b6273
0000018 65536 bytes · 2.2% of section data
Uncommon name
MD5 69184f74a77ad54c2dbcfe5e1089596b
0000019 61440 bytes · 2.1% of section data
Uncommon name
MD5 5031020bb81556faf49b93d536d583eb
0000020 65536 bytes · 2.2% of section data
Uncommon name
MD5 e5860702aa2ed07434cadd22affbfbc4
0000021 61440 bytes · 2.1% of section data
Uncommon name
MD5 b02dc9773be8decf5691528c04012609
0000022 65536 bytes · 2.2% of section data
Uncommon name
MD5 9298b05fc9bfc17ea12237e372ae28b0
0000023 61440 bytes · 2.1% of section data
Uncommon name
MD5 942d4873094c35970dc14cf564399974
0000024 65536 bytes · 2.2% of section data
Uncommon name
MD5 fab8db557a322a5ce2d3a5d3ef3660cf
0000025 61440 bytes · 2.1% of section data
Uncommon name
MD5 a01cb045f81e444f3393398c77098ec8
0000026 57344 bytes · 1.9% of section data
Uncommon name
MD5 ef55f49319bd06ded58ba910a2cddc1e
0000027 61440 bytes · 2.1% of section data
Uncommon name
MD5 e4356fcf837a138f6a21c73dd04db0d3
0000028 65536 bytes · 2.2% of section data
Uncommon name
MD5 d6a5b6e0dd8ee761a3bc6d88fef76123
0000029 61440 bytes · 2.1% of section data
Uncommon name
MD5 90d50b6e5dc6e8f22a9fc1bebfc9bfed
0000030 65536 bytes · 2.2% of section data
Uncommon name
MD5 ca0e9131358525877921519a28b69d5f
0000031 61440 bytes · 2.1% of section data
Uncommon name
MD5 b5b7f54107de7bfc7771ca81b5aa48fd
0000032 65536 bytes · 2.2% of section data
Uncommon name
MD5 ea7f66501d4d71db3390f0131683d418
0000033 61440 bytes · 2.1% of section data
Uncommon name
MD5 8db7e02f73734820ca959e0051643cc7
0000034 57344 bytes · 1.9% of section data
Uncommon name
MD5 d6b2b927a75bf94f1782a786db96e803
0000035 61440 bytes · 2.1% of section data
Uncommon name
MD5 3a11993fdcd9f2bfe529680e1ceabb23
0000036 65536 bytes · 2.2% of section data
Uncommon name
MD5 e3388c80b72dc2f77fd3edbaffe8f8ec
0000037 61440 bytes · 2.1% of section data
Uncommon name
MD5 6d5b4ff19646f860818d3a38dc253f5c
0000038 57344 bytes · 1.9% of section data
Uncommon name
MD5 82d04cb7626627441e955f630cca8199
0000039 61440 bytes · 2.1% of section data
Uncommon name
MD5 51aca6f56545c4fd004ce94058bb6412
0000040 65536 bytes · 2.2% of section data
Uncommon name
MD5 bfde56178a9350de1044980299812162
0000041 61440 bytes · 2.1% of section data
Uncommon name
MD5 74eda94a9034f067fa8ec668aadd9a21
0000042 45056 bytes · 1.5% of section data
Uncommon name
MD5 2f1fbdaa5d17a019b2f3b70d9b969c3b
0000043 61440 bytes · 2.1% of section data
Uncommon name
MD5 100092bb9781ab746c530821ad4fa42f
0000044 65536 bytes · 2.2% of section data
Uncommon name
MD5 ae92f0399d24211cbf3db8e2bbb8326c
0000045 61440 bytes · 2.1% of section data
Uncommon name
MD5 d6a0e945b2a0b2bc731edbd4c0042eb6
0000046 49152 bytes · 1.7% of section data
Uncommon name
MD5 60261dec220f7ef8fc2d78c790ede2c4
0000047 61440 bytes · 2.1% of section data
Uncommon name
MD5 1e8ce1c049426ff32f87d02546793597
0000048 65536 bytes · 2.2% of section data
Uncommon name
MD5 46321aea9a0bfee566f5574cef8fb038
0000049 61440 bytes · 2.1% of section data
Uncommon name
MD5 1bbbc7b751d7d9a654a6c5aabc7bd1a0
0000050 32768 bytes · 1.1% of section data
Uncommon name
MD5 c3164fd74d12f97bf2c844e7045571d4
0000051 2230 bytes · 0.1% of section data
Uncommon name
MD5 591d78cecef30b63b9bedef8d92a2d72
0000052 94388 bytes · 3.2% of section data
Uncommon name
MD5 fd307124517b09bbe6240df3b1009144

PE section names and hashes can reveal packing, injected resources, or unusual build artifacts. Sections with uncommon names, very large raw data, or hashes that differ from a trusted copy deserve additional review.

Report conclusion

GridinSoft detects this file as SUSP.XORed_MSDOS

This report identifies SentinelKeyW.dll by MD5 b5713ba60e3a0f4e5c56f47e21be4e1a. It is part of the Susp report group. If the same file is present on your device, scan the system and remove the detected object after confirming the hash and location.

Download GridinSoft Anti-Malware Scan the device and confirm whether this exact hash is present. Check this hash on VirusTotal

Recommended next steps

  • Compare the local file MD5 with b5713ba60e3a0f4e5c56f47e21be4e1a.
  • Check the file path, publisher, and signature against the details in this report.
  • Run a GridinSoft scan and remove the object if the same hash is found. Use the Susp category to compare similar reports.