Winamp.exe

Winamp

Nullsoft Inc.

Publisher:
Nullsoft, Inc.  (signed by Nullsoft Inc.)

Product:
Winamp

Version:
5,6,0,3091

MD5:
e84d4f46e2260d7102e9b48a63c9fb2f

SHA-1:
142fce6409c8fd91d2e06958f6c8bef711e13be9

Scanner detections:
17 / 68

Status:
Clean  (17 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/25/2024 6:48:44 PM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Win32/ChiHack.6652
2015.10.13

Avira AntiVirus
W32/Virut.Gen
7.11.30.172

avast!
Win32:Oncer
2014.9-160211

Clam AntiVirus
WIN.Worm.Brontok
0.98/20959

Comodo Security
EmailWorm.Win32.Runonce.~v001
23405

Dr.Web
Win32.Runonce.6652
9.0.1.042

F-Prot
W32/Thecid.B@mm
v6.4.7.1.166

IKARUS anti.virus
Email-Worm.Win32.Runouce
t3scan.1.9.5.0

K7 AntiVirus
EmailWorm
13.210.17516

Microsoft Security Essentials
Threat.Undefined
1.207.2827.0

NANO AntiVirus
Trojan.Win32.IframeExec.dteiuc
0.30.26.3947

Panda Antivirus
Generic Malware
16.02.11.08

Quick Heal
W32.Runouce.B
2.16.14.00

Rising Antivirus
PE:Worm.Runouce!1.9DC6[F1]
23.00.65.16209

Vba32 AntiVirus
Virus.Win32.Chur.A
3.12.26.4

VIPRE Antivirus
Threat.219451
43798

Zillya! Antivirus
Worm.RunOnce.Win32.2
2.0.0.2441

File size:
1.5 MB (1,595,904 bytes)

Product version:
5.6.0.3091

Copyright:
Copyright © 1997-2010, Nullsoft, Inc.

Trademarks:
Nullsoft and Winamp are trademarks of Nullsoft, Inc.

Original file name:
Winamp.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\winamp\winamp.exe

Digital Signature
Signed by:

Authority:
America Online Inc.

Valid from:
12/19/2008 8:59:38 AM

Valid to:
12/19/2010 8:59:38 AM

Subject:
CN=Winamp, OU=Nullsoft, O=Nullsoft Inc., C=US

Issuer:
CN=AOL Member CA, O=America Online Inc., L=Dulles, S=Virginia, C=US

Serial number:
70000B3C

File PE Metadata
Compilation timestamp:
12/6/2010 2:03:09 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:8JqfTsy60r8BdVZHfAsjcOuVS6LCQ8oqqiaM/cD:8IfQMihUS9oJ

Entry address:
0x8CC9B

Entry point:
E8, 65, 04, 00, 00, E9, 36, FD, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 80, F9, 40, 73, 16, 80, F9, 20, 73, 06, 0F, AD, D0, D3, FA, C3, 8B, C2, C1, FA, 1F, 80, E1, 1F, D3, F8, C3, C1, FA, 1F, 8B, C2, C3, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 56, 8B, 44, 24, 14, 0B, C0, 75, 28, 8B, 4C, 24, 10, 8B, 44, 24, 0C, 33, D2, F7, F1, 8B, D8, 8B, 44, 24, 08, F7, F1, 8B, F0, 8B, C3, F7, 64, 24, 10, 8B, C8, 8B, C6, F7, 64, 24, 10, 03, D1, EB, 47, 8B, C8, 8B, 5C, 24, 10, 8B, 54, 24, 0C...
 
[+]

Entropy:
6.5610

Code size:
566.5 KB (580,096 bytes)

Scan Winamp.exe - Powered by Reason Core Security