Winamp.exe

Winamp

Nullsoft Inc.

Publisher:
Nullsoft, Inc.  (signed by Nullsoft Inc.)

Product:
Winamp

Version:
5.6.6.3510

MD5:
daa1628b938af6a415edb34ae988230c

SHA-1:
9ea1e5964c2546cb1bfd5371c9d04eb071110ab4

SHA-256:
b89472acf7920373dda70101fe5b5f0c3fdb21cc52d0476a2fe5c8509e1da77d

Scanner detections:
13 / 68

Status:
Clean  (13 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/24/2024 10:52:42 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Win32.Virtob.Gen.12
356

Avira AntiVirus
TR/Patched.Gen
7.11.30.172

avast!
Win32:Vitro
2014.9-160214

AVG
Worm/AutoRun
2017.0.2834

Clam AntiVirus
WIN.Worm.Brontok
0.98/21265

Emsisoft Anti-Malware
Win32.Virtob.Gen.12
8.16.02.14.09

F-Prot
W32/Agent.JX.gen
v6.4.6.5.141

F-Secure
Win32.Virtob.Gen.12
11.2016-14-02_1

McAfee
Virus.W32/Chir.gen!remnants
5600.6490

Microsoft Security Essentials
Threat.Undefined
1.213.3222.0

Norman
Win32.Virtob.Gen.12
11.20160214

Sophos
Virus 'W32/Scribble-B'
5.22

VIPRE Antivirus
Threat.4737366
46592

File size:
6.5 MB (6,799,360 bytes)

Product version:
5.6.6.3510

Copyright:
Copyright © 1997-2013 Nullsoft, Inc.

Trademarks:
Nullsoft and Winamp are trademarks of Nullsoft, Inc.

Original file name:
Winamp.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\winamp\winamp.exe

Digital Signature
Signed by:

Authority:
America Online Inc.

Valid from:
3/16/2011 1:25:39 AM

Valid to:
3/15/2016 1:25:39 AM

Subject:
CN=Nullsoft Inc., OU=Winamp, O=Nullsoft Inc., C=US

Issuer:
CN=AOL Member CA, O=America Online Inc., L=Dulles, S=Virginia, C=US

Serial number:
5AA8C9C387719F49A16AF24065565550

File PE Metadata
Compilation timestamp:
11/26/2013 9:17:14 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:avmrFua3PzsvTn4K5aYW5xxxM444xxxToz:avmrFua/uTnXaYyxxxM444xxxToz

Entry address:
0x98A71

Entry point:
E8, E2, 02, 00, 00, E9, 36, FD, FF, FF, CC, FF, 25, D4, B3, 49, 00, FF, 25, D0, B3, 49, 00, FF, 25, C4, B3, 49, 00, FF, 25, BC, B3, 49, 00, FF, 25, B8, B3, 49, 00, FF, 25, B0, B3, 49, 00, 68, F9, 8A, 49, 00, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, 28, 40, 4B, 00, 31, 45, FC, 33, C5, 50, 89, 65, E8, FF, 75, F8, 8B, 45, FC, C7, 45, FC, FE, FF, FF, FF, 89, 45, F8, 8D, 45, F0, 64, A3, 00, 00, 00, 00, C3, 8B, 4D, F0, 64, 89, 0D, 00, 00, 00, 00, 59, 5F...
 
[+]

Entropy:
2.7904

Code size:
614 KB (628,736 bytes)

Autoplay Handler
Display name:
WinampPlayMediaOnArrival


Scan Winamp.exe - Powered by Reason Core Security