winamp5623_full_emusic-7plus_tr-tr.exe

Winamp Installer

Nullsoft Inc.

This is a self-extracting archive and installer. The file has been seen being downloaded from download.nullsoft.com.
Publisher:
Nullsoft, Inc.  (signed by Nullsoft Inc.)

Product:
Winamp Installer

Version:
5.6.2.3199

MD5:
697d3937b296309313bff578fbf03133

SHA-1:
816a0584b4b0eb2540ca2dc87b592c5532b43ed0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 12:01:31 PM UTC  (today)

File size:
12.2 MB (12,774,728 bytes)

Product version:
5.62 Build 3199

Copyright:
Copyright © 1997-2011, Nullsoft, Inc.

Trademarks:
Nullsoft and Winamp are trademarks of Nullsoft, Inc.

File type:
Executable application (Win32 EXE)

Language:
Yansiz Dil

Common path:
C:\documents and settings\user\belgelerim\downloads\winamp5623_full_emusic-7plus_tr-tr.exe

Digital Signature
Signed by:

Authority:
America Online Inc.

Valid from:
3/15/2011 8:25:39 PM

Valid to:
3/14/2016 8:25:39 PM

Subject:
CN=Nullsoft Inc., OU=Winamp, O=Nullsoft Inc., C=US

Issuer:
CN=AOL Member CA, O=America Online Inc., L=Dulles, S=Virginia, C=US

Serial number:
5AA8C9C387719F49A16AF24065565550

File PE Metadata
Compilation timestamp:
4/10/2010 3:19:31 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
196608:ZKCtUgdaRPxekrR927wjvkocX5bmO2fsRbI/nivACqf7VoAnOT/y7:Z7tU2YP002Uv/O2fsNSfVoAnf

Entry address:
0x354B

Entry point:
60, 56, 8D, 15, F1, F0, F3, EA, 0F, C0, E7, 0F, B7, D9, 5D, D1, E1, 15, 5D, AC, BF, 86, F7, C3, 3C, 0F, 96, 01, 6A, 00, FF, 15, F0, 80, 40, 00, E8, 00, 00, 00, 00, 31, EA, 0F, A4, D3, D1, 0F, AD, D8, 0F, B7, FD, 5B, 81, C3, D6, E0, 15, 03, 0F, A5, F7, FF, C1, 0F, CF, 81, EB, 4A, 36, E9, 02, 0F, BC, FE, 0F, BA, FF, BC, C1, D1, 4C, 53, 81, C3, 00, 00, 00, 00, 81, D1, 2F, 36, 21, 60, D2, CA, 41, 81, C3, CD, 04, 00, 00, 0F, C1, C8, 47, F7, D1, 81, C3, F0, 00, 00, 00, C7, C1, 3C, 0F, 96, 01, 0F, BE, C6, EB, 01...
 
[+]

Code size:
25 KB (25,600 bytes)

The file winamp5623_full_emusic-7plus_tr-tr.exe has been seen being distributed by the following URL.

Scan winamp5623_full_emusic-7plus_tr-tr.exe - Powered by Reason Core Security