StormPlayer.exe

暴风影音5

Beijing Baofeng Technology Co., Ltd.

The executable StormPlayer.exe has been detected as malware by 3 anti-virus scanners.
Publisher:
北京暴风科技股份有限公司  (signed by Beijing Baofeng Technology Co., Ltd.)

Product:
暴风影音5

Version:
5.44.1230.0

MD5:
12c257a6f128a4c336cb3b6703de36c7

SHA-1:
657c9bd3aef8682dec9c52d3fb6ded63a5ae0659

SHA-256:
622a59b6e6dcea8fb8b206c8a44297311d1f6818c0bfc85e98929381785fcd65

Scanner detections:
3 / 68

Status:
Malware

Analysis date:
11/5/2024 10:13:45 PM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Win32/Floxif.H virus
6.3.12010.0

F-Prot
W32/Floxif.B
4.6.5.141

F-Secure
Win32.Floxif.A
5.16.24

File size:
337.8 KB (345,927 bytes)

Product version:
5.44.1230.0

Copyright:
Copyright (C) 2007-2014 北京暴风科技股份有限公司

Original file name:
StormPlayer.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\baofeng\stormplayer\stormplayer.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
2/22/2012 8:00:00 AM

Valid to:
2/22/2015 7:59:59 AM

Subject:
CN="Beijing Baofeng Technology Co., Ltd.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Beijing Baofeng Technology Co., Ltd.", L=Beijing, S=Beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1183EF096F14D7BCF9F0699CEA156B7F

File PE Metadata
Compilation timestamp:
12/29/2014 8:44:22 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0x9867

Entry point:
E9, FB, CB, FF, FF, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 20, 8B, 45, 08, 56, 57, 6A, 08, 59, BE, 50, 63, 41, 00, 8D, 7D, E0, F3, A5, 89, 45, F8, 8B, 45, 0C, 5F, 89, 45, FC, 5E, 85, C0, 74, 0C, F6, 00, 08, 74, 07, C7, 45, F4, 00, 40, 99, 01, 8D, 45, F4, 50, FF, 75, F0, FF, 75, E4, FF, 75, E0, FF, 15, 68, 60, 41, 00, C9, C2, 08, 00, B8, BA, D7, 40, 00, A3, 68, C2, 41, 00, C7, 05, 6C, C2, 41, 00, B0, CE, 40, 00, C7, 05, 70, C2, 41, 00, 64, CE, 40, 00, C7, 05, 74, C2, 41, 00, 9D, CE, 40, 00, C7, 05...
 
[+]

Entropy:
7.3771

Packer / compiler:
tElock 0.99 - 1.0 private

Code size:
83 KB (84,992 bytes)

Autoplay Handler
Display name:
BaofengPlayerDVDHandler


Remove StormPlayer.exe - Powered by Reason Core Security