emilywantstoplay.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from dc742.4shared.com and multiple other hosts.
MD5:
532bae2987c56b137c93a53eae56061c

SHA-1:
32d8c145998f97d88a48da6a00f9fd7bed2bec63

SHA-256:
3a5e2dfa6e8b0012859cead053e4a7644439f0e87ef03ffd5e13f7b0e67f16a0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 6:01:49 AM UTC  (today)

File size:
1.1 MB (1,170,432 bytes)

File type:
Executable application (Win64 EXE)

File PE Metadata
Compilation timestamp:
9/28/2015 4:50:02 PM

OS version:
6.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
12288:6xjDVP/4uh5y9ErCV6L7kR5y8MgDGjZc2aHvyJe/eGmKmAMtN7:6pt/LBrCQL7kR5yzk2aHK0/e1T

Entry address:
0x21C4

Entry point:
48, 83, EC, 28, E8, 9F, 1C, 00, 00, 48, 83, C4, 28, E9, 36, FE, FF, FF, CC, CC, 48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 20, 48, 8B, D9, 48, 83, F9, E0, 77, 7C, BF, 01, 00, 00, 00, 48, 85, C9, 48, 0F, 45, F9, 48, 8B, 0D, 0D, 4A, 01, 00, 48, 85, C9, 75, 20, E8, 33, 19, 00, 00, B9, 1E, 00, 00, 00, E8, 9D, 19, 00, 00, B9, FF, 00, 00, 00, E8, 67, 0E, 00, 00, 48, 8B, 0D, E8, 49, 01, 00, 4C, 8B, C7, 33, D2, FF, 15, 65, AE, 00, 00, 48, 8B, F0, 48, 85, C0, 75, 2C, 39, 05, 2B, 54, 01, 00, 74, 0E, 48...
 
[+]

Code size:
45 KB (46,080 bytes)

The file emilywantstoplay.exe has been discovered within the following program.

Emily Wants To Play  by Shawn Hitchcock
www.emilywantstoplay.com
About 8% of users remove it
 
Powered by Should I Remove It?

The file emilywantstoplay.exe has been seen being distributed by the following 2 URLs.

http://dc742.4shared.com/download/.../EmilyWantsToPlay.exe

Scan emilywantstoplay.exe - Powered by Reason Core Security