vlc.exe

VLC media player

the VideoLAN Team

The executable vlc.exe has been detected as malware by 14 anti-virus scanners. Infected by an entry-point obscuring polymorphic file infector which will create a peer-to-peer botnet and receives URLs of additional files to download.
Publisher:
the VideoLAN Team

Product:
VLC media player

Version:
1.1.11

MD5:
92b981e36da01338134f0c6a4e910b27

SHA-1:
c3b1862bbd709d2c1eabf9bacb1ff448ead9efb1

SHA-256:
fce366dade03efa2438fa67aa0a100648ae08f5e33fe9b311629c848cd7a7800

Scanner detections:
14 / 68

Status:
File is infected by a Virus

Explanation:
The file is infected by a polymorphic file infector virus.

Analysis date:
4/26/2024 11:58:51 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Win32.Sality.3
5813571

Avira AntiVirus
W32/Sality.AT
7.11.30.172

avast!
Win32:Sality
160118-1

AVG
Win32/Sality
2015.0.4522

Dr.Web
Win32.Sector.22
9.0.1.05190

Emsisoft Anti-Malware
Win32.Sality
10.0.0.5366

ESET NOD32
Win32/Sality.NBA virus
7.0.302.0

F-Prot
W32/Sality.gen2
4.6.5.141

F-Secure
Win32.Sality.3
5.15.21

McAfee
Virus.W32/Sality.gen.z
18.0.204.0

Microsoft Security Essentials
Threat.Undefined
1.213.5053.0

Norman
Win32.Sality.3
11.01.2016 17:30:26

Sophos
Virus 'Mal/Sality-D'
5.22

VIPRE Antivirus
Threat.4721115
46908

File size:
181.5 KB (185,856 bytes)

Product version:
1,1,11,0

Copyright:
(c) 1996-2011 the VideoLAN Team

Original file name:
vlc.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\videolan\vlc\vlc.exe

File PE Metadata
Compilation timestamp:
7/14/2011 5:21:11 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.56

CTPH (ssdeep):
3072:pu5JHgFcO+V8kB2k9Hc3/nl6LAHkzI1UfgEA6IIyRSMb52jnaZetum2OLudug2xP:pcJHgFyVDUk96kAD6km2OWglbZ

Entry address:
0x1110

Entry point:
8A, E2, 84, FF, 4E, 80, FE, 44, FE, C7, 0F, B7, D7, 29, C8, 84, E5, 8D, 0D, EF, 01, 51, 79, 8D, 1D, CB, 99, 51, D9, 2B, EE, 0F, AF, FB, BE, C8, DE, 55, 24, 88, DA, 89, FE, E8, 41, 00, 00, 00, FE, CF, 84, F8, 84, CE, 8A, EC, 88, DB, 49, 81, C1, D4, 41, AA, 75, 8B, F8, 0F, BF, CA, 8A, EE, BD, E1, 69, 9E, 13, BB, F4, EA, 53, AD, B1, 16, 57, FF, C1, 58, 80, FB, 34, 69, C9, E7, DD, E3, F5, BD, 41, FD, 99, D6, 03, D0, 3B, EA, 74, 05, C6, C1, 8E, 86, C9, 0F, AF, D1, 0F, AF, F9, 88, F4, 8B, DB, C7, C7, F9, B0, 54...
 
[+]

Entropy:
7.5554

Code size:
25 KB (25,600 bytes)

Autoplay Handler
Display name:
VLCPlayCDAudioOnArrival


Remove vlc.exe - Powered by Reason Core Security