vlc-1.1.5-win32.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from dw.uptodown.com and multiple other hosts.
MD5:
988bc05f43e0790c6c0fd67118821d42

SHA-1:
11a14856e07b28d5c637c38f5191915f787fb85e

SHA-256:
e6751edc5137956352d63673eb3f161e90b76a80281c140740ee1f4dcddd00c2

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
12/25/2024 6:07:01 AM UTC  (today)

Scan engine
Detection
Engine version

Rising Antivirus
PE:Trojan.Win32.Generic.13381CED!322444525
23.00.65.131124

File size:
19.1 MB (19,985,265 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\vlc-1.1.5-win32.exe

File PE Metadata
Compilation timestamp:
5/7/2010 9:11:39 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.56

CTPH (ssdeep):
393216:xISf5M96Yq1LrwsQIoH3afAkCZMvOc27ggn/1GSPP6VlTmnZsyK6pPTQyA5Zn49p:xAk1osQIoXafArZMI7T/DPP6VRm3tpIc

Entry address:
0x4044

Entry point:
55, 89, E5, 57, 56, 53, 81, EC, AC, 01, 00, 00, E8, 1B, 57, 00, 00, C7, 04, 24, 01, 80, 00, 00, E8, 7F, 50, 00, 00, 56, C7, 04, 24, 00, 00, 00, 00, E8, 52, 57, 00, 00, A3, 50, 5B, 42, 00, 53, C7, 04, 24, 08, 00, 00, 00, E8, 26, 32, 00, 00, A3, 00, 5C, 42, 00, 8D, 85, 84, FE, FF, FF, 51, C7, 44, 24, 10, 00, 00, 00, 00, C7, 44, 24, 0C, 60, 01, 00, 00, 89, 44, 24, 08, C7, 44, 24, 04, 00, 00, 00, 00, C7, 04, 24, A4, B2, 40, 00, E8, EC, 55, 00, 00, 83, EC, 14, C7, 44, 24, 04, A5, B2, 40, 00, C7, 04, 24, 30, 5C...
 
[+]

Entropy:
7.9995  (probably packed)

Code size:
34.5 KB (35,328 bytes)

The file vlc-1.1.5-win32.exe has been discovered within the following programs.

PokerStars.eu  by PokerStars
About 1% of users remove it
Ready Reference CD  by Encyclopaedia Britannica, Inc.
Publisher's description - “Encyclopaedia Britannica, the world`s standard since 1768, is now easier to use and more accessible than ever. Britannica Ready Reference CD-ROM condenses 25,000 articles from the renowned 32-volume print set onto one CD-ROM to create an incomparably practical and powerful tool.”
support.britannica.com/other/readyreference/win
About 5% of users remove it
Secret Usenet Client  by Reluva AG
About 5% of users remove it
VLC Media Player  by VideoLAN Team
VLC media player (also known as VLC) is a highly portable free and open-source cross-platform media player and streaming media server written by the VideoLAN project.
www.videolan.org
12% remove it
 
Powered by Should I Remove It?

The file vlc-1.1.5-win32.exe has been seen being distributed by the following 33 URLs.

https://dw.uptodown.com/dwn/WGwowJOs42iIco5z-qNOMZlYE6I_GeGgxcRYgq2b0IoLzhg9s2y1v_AbbqS3TPkXBFYjH5xE0GLeXhvxjfR-KwHhPScrAeb-HOtdTkemZV9Z5wXTvgYIVU4B0w6cqj91/mdQvUXr5hqZiq_MKhGIwhJeOO1751pKLLsx08tZJYjfDTyg8KS8AeI5YA1C8mz1aTipyQLBxHuvZcWQIIbvQjFNJGOeihzizxv2eWvD9er8fBAkRlhW0GEkt20atYA0M/rFV5c_ntVdxebN3TXnOaU3_BqHTd8_baLT49Y_s3c6Clpjjdx6YOfwYHS9fjI_uMyfN730qy4fQK7PFtaQWHqAhZitC1i7lQo2K70m59Lqi33vL0JzjxrTQreuV-_OLE/.../

ftp://126.11.11.111/?´?§?´?‡/.../vlc-1.1.5-win32.exe

temp:vlc-1.1.5-win32.exe

https://dw.uptodown.com/dwn/wuZNHnlMasIWCKNA44SqbPMcvhIXo_thgM5XwFfRyUSKaN0ZRR1ycPDorfRddYiSsBXatIqc6UaJPGg0BPKnFz7Gj-ucUjYYcWRR3j8jEtseNJSz6FIv5y4yqYrHst8a/RyPux0AZNjmsLiAJHYg2AvovDrksXcH4eLIpRq9y0fnfpbv34jdY1uKLNw2ZkuJiPaKZQqVPM7AAywu4ZMQ4xAlHZSewgjitLMGm7FlFE3ALU2SILg-giAUGtRQrIScC/GEJ7vQZebMSzM-tMTVVtpHXHKoYrOM0wogMO-2lW4VFHQoEnUfIaRE1jjx8eJgjGaW2PSATmaltmmNf2qp-sC1pzEsaq136dwjjAprUph5DzSYGZeyzK10xb9ece5kcK/.../

Latest 30 of 33 download URLs

Scan vlc-1.1.5-win32.exe - Powered by Reason Core Security