Winamp.exe

Winamp

Nullsoft Inc.

Publisher:
Nullsoft, Inc.  (signed by Nullsoft Inc.)

Product:
Winamp

Version:
5,6,2,3199

MD5:
bdb64060c696cd2875d7fe341efd1018

SHA-1:
fc17feb5a4ad02d98be732343ef51216581ac27f

SHA-256:
25e6bb6a9afcf89a1ac5636042cec5a4e498643569e05da90a4f438cb113d627

Scanner detections:
21 / 68

Status:
Clean  (21 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/18/2024 2:47:10 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Win32.Virtob.Gen.12
355

Avira AntiVirus
TR/Patched.Gen
7.11.30.172

avast!
Win32:Vitro
2014.9-160214

AVG
Worm/AutoRun
2017.0.2833

Clam AntiVirus
WIN.Worm.Brontok
0.98/21265

Emsisoft Anti-Malware
Win32.Virtob.Gen.12
8.16.02.14.05

F-Prot
W32/Agent.JX.gen
v6.4.6.5.141

F-Secure
Win32.Virtob.Gen.12
11.2016-14-02_1

McAfee
Virus.W32/Chir.gen!remnants
5600.6489

Microsoft Security Essentials
Threat.Undefined
1.213.3222.0

Norman
Win32.Virtob.Gen.12
11.20160214

Sophos
Virus 'W32/Scribble-B'
5.22

VIPRE Antivirus
Threat.4737366
46592

File size:
5.8 MB (6,068,864 bytes)

Product version:
5.6.2.3199

Copyright:
Copyright © 1997-2011, Nullsoft, Inc.

Trademarks:
Nullsoft and Winamp are trademarks of Nullsoft, Inc.

Original file name:
Winamp.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\winamp\winamp.exe

Digital Signature
Signed by:

Authority:
America Online Inc.

Valid from:
3/16/2011 2:25:39 AM

Valid to:
3/15/2016 2:25:39 AM

Subject:
CN=Nullsoft Inc., OU=Winamp, O=Nullsoft Inc., C=US

Issuer:
CN=AOL Member CA, O=America Online Inc., L=Dulles, S=Virginia, C=US

Serial number:
5AA8C9C387719F49A16AF24065565550

File PE Metadata
Compilation timestamp:
12/10/2011 1:23:23 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:598/LKqg6jA5rByQbzGykvO6LCQ8oqqiaMqMKr:5quqr2cWkvY9o+

Entry address:
0x8C8AB

Entry point:
E8, 65, 04, 00, 00, E9, 36, FD, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 80, F9, 40, 73, 16, 80, F9, 20, 73, 06, 0F, AD, D0, D3, FA, C3, 8B, C2, C1, FA, 1F, 80, E1, 1F, D3, F8, C3, C1, FA, 1F, 8B, C2, C3, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 56, 8B, 44, 24, 14, 0B, C0, 75, 28, 8B, 4C, 24, 10, 8B, 44, 24, 0C, 33, D2, F7, F1, 8B, D8, 8B, 44, 24, 08, F7, F1, 8B, F0, 8B, C3, F7, 64, 24, 10, 8B, C8, 8B, C6, F7, 64, 24, 10, 03, D1, EB, 47, 8B, C8, 8B, 5C, 24, 10, 8B, 54, 24, 0C...
 
[+]

Entropy:
2.2602

Code size:
565.5 KB (579,072 bytes)

Autoplay Handler
Display name:
WinampPlayMediaOnArrival


Scan Winamp.exe - Powered by Reason Core Security