fraps 3.5.99eemmer.exe

AutoPlay Media Studio Launcher

This is a setup program which is used to install the application. The file has been seen being downloaded from download1695.mediafire.com and multiple other hosts.
Product:
AutoPlay Media Studio Launcher

Description:
AutoPlay Application

Version:
8.1.0.0

MD5:
8b3157d32c7d8b8fc91b2ad6b0b22e62

SHA-1:
21e322cd4d3929cc392b4927f7cd3e9bb57983c5

SHA-256:
af7070ae05619f256aed041cc1596149cfd84d6b31ba1d857f2810fb51cac7a8

Scanner detections:
2 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
12/25/2024 3:29:04 AM UTC  (today)

Scan engine
Detection
Engine version

Norman
Suspicious_Gen2.VKEGT
11.20150811

VIPRE Antivirus
Trojan.Win32.Generic
22224

File size:
7.2 MB (7,600,193 bytes)

Product version:
8.1.0.0

Copyright:
Runtime Engine Copyright © 2012 Indigo Rose Corporation (www.indigorose.com)

Trademarks:
AutoPlay Media Studio is a Trademark of Indigo Rose Corporation

Original file name:
ams_launch.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\fraps 3.5.99eemmer.exe

File PE Metadata
Compilation timestamp:
6/15/2012 2:11:00 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
196608:1mY+Sp4RjsqpyQIwQxN0zqPWgUZyqFhfIuRV7epHonpsLUwL4Sik9LL:XgFy7Fx2zRtyqFiuRV7GBLJ4CLL

Entry address:
0x2CBBC

Entry point:
E8, 15, C6, 00, 00, E9, 78, FE, FF, FF, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, 0C, 06, 45, 00, 33, C5, 50, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D, 45, F4, 64, A3, 00, 00, 00, 00, C3, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, 0C, 06, 45, 00, 33, C5, 50, 89, 65, F0, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D, 45, F4, 64, A3, 00, 00, 00, 00, C3, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B...
 
[+]

Entropy:
7.9843  (probably packed)

Code size:
253.5 KB (259,584 bytes)

The file fraps 3.5.99eemmer.exe has been seen being distributed by the following 50 URLs.

http://download1695.mediafire.com/n6ejbeaotnvg/.../Fraps 3.5.99EeMMeR.exe

http://download1633.mediafire.com/gaho9u925izg/.../Fraps 3.5.99EeMMeR.exe

http://download1695.mediafire.com/ddxkyw2hbd0g/.../Fraps 3.5.99EeMMeR.exe

http://download1904.mediafire.com/46xzl1slhr1g/.../Fraps 3.5.99EeMMeR.exe

http://download1401.mediafire.com/1eev71z011vg/.../Fraps 3.5.99EeMMeR.exe

http://download1633.mediafire.com/6j9sl4p2bveg/.../Fraps 3.5.99EeMMeR.exe

http://download1167.mediafire.com/5f9osx984thg/.../Fraps 3.5.99EeMMeR.exe

http://download1904.mediafire.com/deh5mras72jg/.../Fraps 3.5.99EeMMeR.exe

http://download2062.mediafire.com/gu7100v53g0g/.../Fraps 3.5.99EeMMeR.exe

http://download1695.mediafire.com/11fgqr9f1ptg/.../Fraps 3.5.99EeMMeR.exe

http://download1167.mediafire.com/r47zml1uu7gg/.../Fraps 3.5.99EeMMeR.exe

http://download1695.mediafire.com/uonhx4fo3bsg/.../Fraps 3.5.99EeMMeR.exe

http://download1695.mediafire.com/pg9dxzzmrlng/.../Fraps 3.5.99EeMMeR.exe

http://download2145.mediafire.com/os6eq82syzbg/.../Fraps 3.5.99EeMMeR.exe

http://download684.mediafire.com/pbtlrgxxt2rg/.../Fraps 3.5.99EeMMeR.exe

http://download1695.mediafire.com/4354stc4e9ag/.../Fraps 3.5.99EeMMeR.exe

http://download1633.mediafire.com/rfa0o58323lg/.../Fraps 3.5.99EeMMeR.exe

http://download1695.mediafire.com/ypsxb2pvjxgg/.../Fraps 3.5.99EeMMeR.exe

http://download903.mediafire.com/vl65a3383a4g/.../Fraps 3.5.99EeMMeR.exe

http://download1633.mediafire.com/e3ystl46nt4g/.../Fraps 3.5.99EeMMeR.exe

http://download1728.mediafire.com/p88c6d1whejg/.../Fraps 3.5.99EeMMeR.exe

http://download903.mediafire.com/d5cm89sgxjhg/.../Fraps 3.5.99EeMMeR.exe

http://download1429.mediafire.com/8r1fy9svfbjg/.../Fraps 3.5.99EeMMeR.exe

http://download1695.mediafire.com/wne7fk4qxgvg/.../Fraps 3.5.99EeMMeR.exe

http://download767.mediafire.com/4xhp22mmpjlg/.../Fraps 3.5.99EeMMeR.exe

http://download1633.mediafire.com/5c3v41bbyatg/.../Fraps 3.5.99EeMMeR.exe

http://download1728.mediafire.com/14rxx7ko5wrg/.../Fraps 3.5.99EeMMeR.exe

http://download1633.mediafire.com/2bpg6wmtcrdg/.../Fraps 3.5.99EeMMeR.exe

http://download610.mediafire.com/8dh9gyzvvhcg/.../Fraps 3.5.99EeMMeR.exe

http://download903.mediafire.com/76xnlgz387zg/.../Fraps 3.5.99EeMMeR.exe

Latest 30 of 164 download URLs

Scan fraps 3.5.99eemmer.exe - Powered by Reason Core Security