vlc-2.1.5-win32.exe

The executable vlc-2.1.5-win32.exe has been detected as malware by 1 anti-virus scanner. The program is a setup application that uses the Nullsoft Install System installer, however the file is not signed with an authenticode signature from a trusted source. The file has been seen being downloaded from global-shared-files-l3.softonic.com and multiple other hosts.
MD5:
f78940628eb76ab6e654c19ee33f2f89

SHA-1:
bc5e2b879c110c7702973fa3c380550ea2856689

SHA-256:
6c166362ad87722a31eda088e41be5af15e55da0699cec09dd456762517b9b84

Scanner detections:
1 / 68

Status:
Malware

Explanation:
This is part of the Crossrider Internet browser extension framework which may modify the user's web browser settings including changing the home and search pages.

Note:
Crossrider is the owner of a platform that enables the creation of cross-browser extensions by developers but is not the owner of this detected application.

Analysis date:
11/2/2024 1:44:01 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
(M)
16.6.17.23

File size:
23.6 MB (24,743,106 bytes)

File type:
Executable application (Win32 EXE)

Installer:
Nullsoft Install System

Common path:
C:\users\{user}\appdata\local\temp\vlc-2.1.5-win32.exe

File PE Metadata
Compilation timestamp:
1/5/2012 7:21:23 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.22

CTPH (ssdeep):
393216:tD7GvuOJAew9ccitbCfXNp0cnM9bWBdnCieZuLEOm/ha0fm4+7iFvTGs1h+RbGSI:d7Gv9Ae2itO1KJbOnxljmg0k7sGkDJs4

Entry address:
0x4327

Entry point:
55, 89, E5, 57, 56, 53, 81, EC, AC, 01, 00, 00, FF, 15, 74, 93, 42, 00, C7, 04, 24, 01, 80, 00, 00, FF, 15, 58, 94, 42, 00, 53, C7, 04, 24, 00, 00, 00, 00, FF, 15, 98, 94, 42, 00, 56, A3, 40, 7B, 42, 00, C7, 04, 24, 08, 00, 00, 00, E8, 8D, 3B, 00, 00, A3, 9C, 7B, 42, 00, 8D, 85, 84, FE, FF, FF, 57, C7, 44, 24, 10, 00, 00, 00, 00, C7, 44, 24, 0C, 60, 01, 00, 00, 89, 44, 24, 08, C7, 44, 24, 04, 00, 00, 00, 00, C7, 04, 24, 01, B3, 40, 00, FF, 15, AC, 94, 42, 00, 83, EC, 14, C7, 44, 24, 04, 02, B3, 40, 00, C7...
 
[+]

Code size:
34.5 KB (35,328 bytes)

The file vlc-2.1.5-win32.exe has been seen being distributed by the following 50 URLs.

http://global-shared-files-l3.softonic.com/bc5/e2b/.../file?nvb=20150116070919&nva=20150116191019&token=0a41e18655954b11b1794&SD_used=0&channel=WEB&fdh=yes&id_file=25339&instance=softonic_en&type=PROGRAM&filename=vlc-2-1-5-win32.exe

http://lb.cdn.m6web.fr/d/c/a/21113030f0d32cd2f96490d8550421f3/53ec8a18/soft/.../vlc-media-player_2-1-5_fr_10829_32.exe

http://vlc-media-player.bg.softonic.com/.../3tjQyeLV3cjDp-Hw3sCixsiGa5-flqSHpKClkZQ=

http://global-shared-files-l3.softonic.com/bc5/e2b/.../file?nvb=20150119155849&nva=20150120035949&token=044d4881badae14203d00&SD_used=0&channel=WEB&fdh=yes&id_file=25339&instance=softonic_es&type=PROGRAM&filename=vlc-2-1-5-win32.exe

http://lb.cdn.m6web.fr/d/c/a/5a0ffe243e0aefab551be8305e272920/5457a006/soft/.../vlc-media-player_2-1-5_fr_10829_32.exe

http://filehippo.com/download/file/.../

http://letoltes.szoftverbazis.hu/pseTS5LMG5iQG9nV8BdPhA/1439450075/.../vlc-2.1.5-win32.exe

http://ftp-stahuj.centrum.cz/dl/6ab681cf49f8ff922e676c0f504ac17f/549b1a79/stahuj/download/software/secured/v/vlc-media-player/215/.../vlc-2.1.5-win32.exe

http://filehippo.com/download/file/.../

http://163.20.238.177/~dhtml/com/menu/files/.../vlc.exe

http://lb.cdn.m6web.fr/d/c/a/8a979030d878f0220af074e56721fe01/53d919b5/soft/.../vlc-media-player_2-1-5_fr_10829_32.exe

http://fs37.filehippo.com/3267/.../vlc-2.1.5-win32.exe

http://ndl2.emasti.pk/sft/.../vlc-2.1.5-win32.exe

http://download001.fshare.vn/dl/.../SinhvienIT.Net-vlc-2.1.5-win32.exe

http://prohappyblog.ru/bin/.../vlc-2.1.5-win32.exe

http://vlc-media-player.ro.softonic.com/start-download/.../6ecd83e2afca983fb897ba25fec2ea38

http://lb.cdn.m6web.fr/d/c/a/2fbe75516be4b44dd1ebe555a94dfbd9/549b3eee/soft/.../vlc-media-player_2-1-5_fr_10829_32.exe

http://ftp-stahuj.centrum.cz/dl/2e5e16b8084749ef272939f32307c7dc/54568df2/stahuj/download/software/secured/v/vlc-media-player/215/.../vlc-2.1.5-win32.exe

http://lb.cdn.m6web.fr/d/c/a/18ae628795e43021859a3d07c04ee44f/54837f18/soft/.../vlc-media-player_2-1-5_fr_10829_32.exe

http://dw.uptodown.com/dl/1420248629/.../vlc-media-player-2-1-5-multi-win.exe

http://lb.cdn.m6web.fr/d/c/a/d9cdea1d0edef00ef4b6713c46d2da82/5471fe1b/soft/.../vlc-media-player_2-1-5_fr_10829_32.exe

http://dw.br.uptodown.com/dl/1423365821/.../vlc-media-player-2-1-5-multi-win.exe

http://filehippo.com/download/file/.../

http://lb.cdn.m6web.fr/d/c/a/1cf271fb5fd5c96859964f12b9a298f2/548d7ca2/soft/.../vlc-media-player_2-1-5_fr_10829_32.exe

http://lb.cdn.m6web.fr/d/c/a/5b8d60bc2dcba77aa5660478eb583274/5487dcb2/soft/.../vlc-media-player_2-1-5_fr_10829_32.exe

http://www.filehippo.com/download/file/.../

http://software.naturalbd.com:81/vlc-2.1.5-win32.exe

http://filehippo.com/download/file/.../

http://ziggi.uol.com.br/.../91709

http://www.slunecnice.cz/sw/vlc-media-player/stahnout/.../?m=6d8e3c202757de6b7480a15b021df909&t=54ba8c73

Latest 30 of 822 download URLs

Remove vlc-2.1.5-win32.exe - Powered by Reason Core Security