pms-setup-windows-1.50.0.exe

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. The file has been seen being downloaded from ps3mediaserver.googlecode.com.
MD5:
fdd2a558ee0363a3c7e8eb9b5febd96e

SHA-1:
328dde64204d04d79656b67acbf5efab76b02810

SHA-256:
d9283a831b91c23fc16160cc6d0542c621a72bc93426d6f6093c1cb1db8e0da9

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 8:29:29 PM UTC  (today)

File size:
25.7 MB (26,904,974 bytes)

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Common path:
C:\users\{user}\downloads\pms-setup-windows-1.50.0.exe

File PE Metadata
Compilation timestamp:
12/6/2009 12:50:46 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
786432:4FNTaBwF3rSgyTc3ThWWYjNKjBQ/HEdqOx:6/tBYcjJYAjO/HQx

Entry address:
0x323C

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 30, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 58, 3F, 42, 00, E8, 09, 2C, 00, 00, A3, A4, 3E, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 58, F4, 41, 00, FF, 15, 58, 71, 40, 00, 68, B8, 91, 40, 00, 68, A0, 36, 42, 00, E8, BC, 28, 00, 00, FF, 15, B0, 70, 40, 00, BF, 00, 90, 42, 00, 50, 57, E8, AA, 28, 00, 00...
 
[+]

Packer / compiler:
Nullsoft install system v2.x

Code size:
23 KB (23,552 bytes)

The file pms-setup-windows-1.50.0.exe has been discovered within the following program.

PS3 Media Server  by PS3 Media Server
Publisher's description - “PS3 Media Server is a DLNA compliant Upnp Media Server for the PS3, written in Java, with the purpose of streaming or transcoding any kind of media files, with minimum configuration. It's backed up with the powerful Mplayer/FFmpeg packages.”
www.ps3mediaserver.org
About 7% of users remove it
 
Powered by Should I Remove It?

The file pms-setup-windows-1.50.0.exe has been seen being distributed by the following URL.

Scan pms-setup-windows-1.50.0.exe - Powered by Reason Core Security