ffdshow_rev4532_20140717_clsid.exe

ffdshow

This is a setup and installation application. The file has been seen being downloaded from netcologne.dl.sourceforge.net and multiple other hosts.
Publisher:
ffdshow

Product:
ffdshow

Description:
ffdshow Setup

Version:
1.3.4532.0

MD5:
4df77b83402e099638e99f6028543593

SHA-1:
14ccc4c9308f2f694452a22ba287ada6d8c21923

SHA-256:
d2a639f6d484c4c725f63e427787f71cbf6f9563b4d49220f2abbb26fcfd655b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 5:17:07 AM UTC  (today)

File size:
4.5 MB (4,765,279 bytes)

Product version:
1.3.4532.0

Copyright:
GNU

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\ffdshow_rev4532_20140717_clsid.exe

File PE Metadata
Compilation timestamp:
7/9/2014 9:58:13 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:YWFZgS1JiX6vzQhEqCcHM+PBMdtSuKwwhcRpleqv:YAVwiMhNCcs+adtSuKlhcRjdv

Entry address:
0x113BC

Entry point:
55, 8B, EC, 83, C4, A4, 53, 56, 57, 33, C0, 89, 45, C4, 89, 45, C0, 89, 45, A4, 89, 45, D0, 89, 45, C8, 89, 45, CC, 89, 45, D4, 89, 45, D8, 89, 45, EC, B8, 2C, 00, 41, 00, E8, E8, 51, FF, FF, 33, C0, 55, 68, 9E, 1A, 41, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 5A, 1A, 41, 00, 64, FF, 32, 64, 89, 22, A1, 48, 5B, 41, 00, E8, 16, D8, FF, FF, E8, 65, D3, FF, FF, 80, 3D, DC, 2A, 41, 00, 00, 74, 0C, E8, 2B, D9, FF, FF, 33, C0, E8, 80, 32, FF, FF, 8D, 55, EC, 33, C0, E8, E2, A3, FF, FF, 8B, 55, EC, B8, 50, 86...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
63.5 KB (65,024 bytes)

The file ffdshow_rev4532_20140717_clsid.exe has been discovered within the following programs.

D3DGear  by D3DGear Technologies
Publisher's description - “D3DGear is a very fast video game recording software, video game recorder and game screen capture software for PC. It allows user to record video game screen without slowing down the game.”
www.d3dgear.com
11% remove it
D3DGear - Game Recording and Streaming  by D3DGear Technologies
About 7% of users remove it
 
Powered by Should I Remove It?

The file ffdshow_rev4532_20140717_clsid.exe has been seen being distributed by the following 40 URLs.

https://netcologne.dl.sourceforge.net/project/ffdshow-tryout/SVN builds by clsid/.../ffdshow_rev4532_20140717_clsid.exe

http://lb.cdn.m6web.fr/d/c/a/f316524d0cec5e1885117d15ae9111b0/57f16737/soft/.../ffdshow-mpeg-4-video-decoder_1-3-rev4532_en_72902_32.exe

http://sourceforge.mirrorservice.org/f/ff/ffdshow-tryout/SVN builds by clsid/.../ffdshow_rev4532_20140717_clsid.exe

https://superb-dca2.dl.sourceforge.net/project/ffdshow-tryout/SVN builds by clsid/.../ffdshow_rev4532_20140717_clsid.exe

https://netix.dl.sourceforge.net/project/ffdshow-tryout/SVN builds by clsid/.../ffdshow_rev4532_20140717_clsid.exe

http://cdn.straightstoragehouse.com/c?x=4wDuQxALeV31ZKzrObZ8OwbqNzKeDUpx2JzJkPMxLwQ=&c=ya0FKm9IjqK5fdAunHZNIQpOrIVKltrT430NJej2bVR9I2/cVQFzbwnA5b/RnCSTZRtm5h94HSy8o4j27ILgnm6pZQjMO8jvlSvxdatPlSJR1h0ursYLZd/4P5xP2p7S&fallback_url=http://sourceforge.net/projects/ffdshow-tryout/files/SVN builds by clsid/generic builds/.../download&downloadAs=ffdshow-mpeg-4-video-decoder-32-bits.exe

http://www.bytesendclear.com/GmiCZquRhO8yh21o lVl Cz O5MhB98Og3OZMVF4EVDmbD fVTOV7HfT2ZgygNQC wUR2J3xrRd3dcOY9D48k3WgwpaZf3OdqsTUXDoMPQ GxsjCpJti8RtnfPro4LTGlMKlnNcRZ0cc0l4aqHjys1LWkxopdqmEnH7 ZUtltncER uOtk0fS8E7FIoDTwrrtikq7fcZrE2HG9R1qeObhauIh65S brjkwq3a7rahzS1KnEiOGcJBDuLleuHjVAFgdtyK54d06jjmlJYdQifUrjswHsKel_F20zXYmKGVIv7QXEIeqVrYLBCBqLyBVnZIFZRd 95uVx4ccvJ_f4zs8WNd3qPwKdu_rp_8xUGkNl7cP7aT5jEZYtYyVFZFpS2qbnW eA4jrEHwvvsUp2SELkDWIs_Mm_enro00XYMqvXFlH3KMch3aP5D1sPK1oK_shq_o1p5f67v1HKkNKG03uyuMzfcPos0jNZnfzyfAsGKgXtVU2wCQgwr56EZzAhCtXXH09c 6S37KpD48Nu 0umrxSyT884vmGnYYiEh3BMgEsLgwRzmxuSmjX3i0ecwafzx1ZyXUlYNaycr1cXXOS_mUoMDvFtZr6IncELabl46AT5 nP8=-G00AAMTc9XzZPm_J21vdaE0mpQAOOXD4HiYQMNYStoG8MUUNuh8t3xVTDd73ozU4n_ sxqIQ5 QQU24NpvBIrgA=-E

http://excellmedia.dl.sourceforge.net/project/ffdshow-tryout/SVN builds by clsid/.../ffdshow_rev4532_20140717_clsid.exe

http://skylink.dl.sourceforge.net/project/ffdshow-tryout/SVN builds by clsid/.../ffdshow_rev4532_20140717_clsid.exe

http://liquidtelecom.dl.sourceforge.net/project/ffdshow-tryout/SVN builds by clsid/.../ffdshow_rev4532_20140717_clsid.exe

http://kent.dl.sourceforge.net/project/ffdshow-tryout/SVN builds by clsid/.../ffdshow_rev4532_20140717_clsid.exe

http://vorboss.dl.sourceforge.net/project/ffdshow-tryout/SVN builds by clsid/.../ffdshow_rev4532_20140717_clsid.exe

Latest 30 of 40 download URLs

Scan ffdshow_rev4532_20140717_clsid.exe - Powered by Reason Core Security