winamp5666_full_pl-pl.exe

Winamp Installer

Nullsoft Inc.

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. The file has been seen being downloaded from s6382.chomikuj.pl and multiple other hosts.
Publisher:
Nullsoft, Inc.  (signed by Nullsoft Inc.)

Product:
Winamp Installer

Version:
5.6.6.3516

MD5:
aea12e99505e31a24bba1042afdcd3f3

SHA-1:
023958648de6c9d15f3ef8ec4363dd87227c83d1

SHA-256:
f98ea9af702a0b50e4af02ca341f1570f3e7008a71cf1d805d2af96211961b61

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/2/2024 9:34:58 AM UTC  (today)

File size:
12.3 MB (12,892,432 bytes)

Product version:
5.66 Build 3516

Copyright:
Copyright © 1997-2013, Nullsoft, Inc.

Trademarks:
Nullsoft and Winamp are trademarks of Nullsoft, Inc.

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\winamp5666_full_pl-pl.exe

Digital Signature
Signed by:

Authority:
America Online Inc.

Valid from:
3/15/2011 1:25:39 PM

Valid to:
3/14/2016 1:25:39 PM

Subject:
CN=Nullsoft Inc., OU=Winamp, O=Nullsoft Inc., C=US

Issuer:
CN=AOL Member CA, O=America Online Inc., L=Dulles, S=Virginia, C=US

Serial number:
5AA8C9C387719F49A16AF24065565550

File PE Metadata
Compilation timestamp:
2/24/2012 1:19:59 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
393216:0YrxJ1FQtCx/s5Y2JkcLTPT51aEFW80p2J4vUG+:nrxJ1FQtME7LT7W8K2JH

Entry address:
0x39E3

Entry point:
81, EC, D4, 02, 00, 00, 53, 55, 56, 57, 6A, 20, 33, ED, 5E, 89, 6C, 24, 18, C7, 44, 24, 10, D8, 91, 40, 00, 89, 6C, 24, 14, FF, 15, 30, 80, 40, 00, 68, 01, 80, 00, 00, FF, 15, B8, 80, 40, 00, 55, FF, 15, C0, 82, 40, 00, 6A, 08, A3, B8, 2E, 47, 00, E8, 37, 2A, 00, 00, 55, 68, B4, 02, 00, 00, A3, D0, 2D, 47, 00, 8D, 44, 24, 38, 50, 55, 68, 1C, 93, 40, 00, FF, 15, 84, 81, 40, 00, 68, 04, 93, 40, 00, 68, C0, AD, 46, 00, E8, 19, 27, 00, 00, FF, 15, B4, 80, 40, 00, 50, BF, A0, 30, 4C, 00, 57, E8, 07, 27, 00, 00...
 
[+]

Entropy:
7.9952

Packer / compiler:
Nullsoft install system v2.x

Code size:
28 KB (28,672 bytes)

The file winamp5666_full_pl-pl.exe has been seen being distributed by the following 50 URLs.

http://s6382.chomikuj.pl/File.aspx?e=a7_YXQN74tEYdy9z08zxntMvN-0xYyhD-MwWztiZQ0OF1gcReynMj99YK6jbkWddrpJrjziOdvn_7LvCHvfHRFNFZw8-BiGheH26YjkVjuGKq5oB3Ow9gpnYZkY4RESwIXBwHdrQp2EFllOQN9VYcIJEktp1FrUUIdyHjRqEtsU&pv=2

http://www.darmoweprogramy.org/download-file/.../

http://pliki.programiki.pl/winamp5666_full_pl-pl_(www.programki.pl).exe

http://www.bytesendclear.com/h8Igvbyie c4HxcIEAymZkhm2PidFuwVrY0mNzI3Mvrm745v_LZOwvmdKR3HPCrBl0CwRIMQqTMlsKOyYmWhnNtOpyVk90yoljxV HBKfx5_SFhov_e5V i0aTLYGrKyh2 pBq9x0LtvFhew3_8jSOAm208b2yzswlU7n9Qu3gOtiiye3HjtJpr8d J6P7EeJapxFx1_ndaL9R46vKF7Wnhcu XVnv P_jOTwtZbGLautMUJV6HZwvB0K4tY7J3dLFLpD4Yqb4pJvh72E_N9zwsLWzYwG mLrAY5uYi9Di8DESeW5HKU2BuoTGZKMOtK8y2nbgoejcF_2f_Vpkl0sLzXqax3hMuoSxJDJuH8Xtl hj3o9 Ze29MGh2gLNjOrl2DxD2euOY5TsqIXXIakV_V_5FSm154p5FvQgjgz_m5ou7pwYp1g4swInG5n6QbuA9_ijYmn9D7MNjdaOz505bcUKoHZpZEkyz2Qdal8OqZ1ImT02codUCQh7ZLNLz7QcfqVPfylOcV4wIuiKJ88mme_IQ86iiXVnT1P378C0vliP7DZSCqGcE0gEjnGX0CdCW8hC1llJM3MQ7Opcv BTEmIY7JgtqK91YPQO7cYAKrT8oLd7qkVHywMyOe_0mGcbl_cJIQ-G1sAAORNd17T594xOjtDUkJWU6RY0zEOdEC_ZVhg0AFx2BgbXxCKTnpjLkqJO4JbEA_tbFcs8Bvbl6tT3ZXFcON3UiSdKQ6KM hxnOijvSC_AA==

http://www.bytesendclear.com/F4VDjvMRMECsnSRerVzrXo4aXSP6dQzLLrvVBEXQg22vsDSNe2DCUg6qnjy18bIdUokZg3sH_S4xHNYMGW20fOay8fakOZ1q1EhreMOh_33tVQ_pNVpZBplFYcIBCRZ_Rt8HhKXOWkUCFaiwcPlh1i9tx1m30Pmv3d_I6OnjfbqMFbVhYFQxZRRYKpnzqf1dv3nBtgW5XcS2ZfaKRHDTYDQuuJGfgB5PLCIwN__Gnj1uIgjn8EVViYjjjzm_vEyByhek PzHfc vSCZs7XCZOfmbKEulTl7q Z0YjfHmZ bS 2SwLaQjUvfGKvxse9uiyjiXk hdAiKsoOlmh7j8qOf8Qubypr0U67Ce2D4in9AP17MeFFOuCZQv0a5EEQrQFg4j0F0g5Qug4klk85fdbxMAeN0HBYcf4toAaudB_h5emGTwt6Pp4DdL5XLTFonaWEZA_paIgYpOd8hqVi_nbHw4RRJsx4e1llt8kNhn_S17zAgAZsF7y6rsWKPVzdG9Max ESKW1KrrPlFTQjHiBJROLzBLEXsrY0pzrCSXXdj24bRkSQZalYKi5J9mWM9th E9PE816qkbqWaNsGVNPxAYWwyW0 c563mwEVuzX_ d9nV6rM=-G1sAAORNd17T594xOjtDUkJWU6RY0zEOdEC_ZVhg0AFx2BgbXxCKTnpjLkqJO4JbEA_tbFcs8Bvbl6tT3ZXFcON3UiSdKQ6KM hxnOijvSC_AA==-E

http://www.bytesendclear.com/1u2BUiz k2l161BD8HlNaYC0V2g5iePv9LsbpZPtidEtWIdK3_g_95hF6l7x4m93fxdavzQtrj95ZGdD_t5nNHC7KvFSJGJVOXciBJ3j00RnxDQiigMSdnjP38wTOyXKoeiKtkQt UCFg1Z6AU3gbW5c20oCoYP0rDApsT8_rftKtBU7_v4S1x6QCDvmdLy5GZmbPnHqgsLgOpVbbHp_4rbCsTAO2Z2HgObBGYRGY WmJCAI1XrskRge4wl1JozIZHD_KlesnLA2yfynDT9sy32Av4yvVkaJtAfmz39iRYmawzJqZ3ZAngclCgwsAabgLHRnS6GPvbiR6WEmp WmVlBUswwmQIsgULf44JXOEkM43Q3YV9Xz69YuYJs1BhfyGG1n WRfnq21sGs1WxlwA2Er0xPUmpNBg40a8rFrUpmzUlGxrInMNzYBf_al8f6TVOtEgwA7Ac0CrYVt F3rtqZxovnQu3HuXrUb0eZ0KqOtGcA_YKE3DOVmgVuLYcfyuFDM19ONa_PSZplNyHFE7S vxHJQppqlDxzdlE9uh Rw3OppwD2mtEnqtNp6TMrLQrGLwTvYaO_n1s26TKQZW8qSnGbgOgIlDPKZf7AH_wwUBIbMnc=-G1sAAORNd17T594xOjtDUkJWU6RY0zEOdEC_ZVhg0AFx2BgbXxCKTnpjLkqJO4JbEA_tbFcs8Bvbl6tT3ZXFcON3UiSdKQ6KM hxnOijvSC_AA==-E

http://www.bytesendclear.com/kfPAlvL9i8tWWByhHJn qdcJ5xnddr7sWfm7 PPfvddvzxPtc8aRxflAwkEX4xvNpab IcEQ6u9aJBRuzGRgjlIajYugPIQduylaIQ8f_WZnMX3Ipw7G2zlyZb8kmDmrJIWZTAENH LzOWP5dD3k0HMdQifq8CyxyMeNg5vys8SoEvwPYk4fXMuipEZ4EGwEffimHoggSOFLC5xEX9vXrYaJrZrL_HpbQHwAH4KzaIu10POsoS27nNwYgJGm6zqzjski 5yFH6cnLLO7pCBG XnMSUgLsi t05dchVglYjEn1 Rm7uaj_Xjla2dW6ZVg7argleP02rqqMCwk7eVnxhwyLArf_RDWAIe3XxaYRH6rYfPWdkDC8N1rj30Z6OR L75W6729ypWWU6QLhECigIWgPppvI7437VlYdx0mts7ZqPdrVDbYGgJyoV7u284SdJQBWE0fzyNmi5BTO1otOFA948lF6ZKaYunST5FsmdWHNtL87Aar13Q yTg77nL3e9z87dPjMyeTdD TCEsNN1OowVvwayU7hD3QPt9WG_l_fXWU7ZToUQYl3UPgnW2i_eZ1XAw5f3l0VfuYfLUEWKDn3uxf5dvNND1KWM56OIS30b4ElNU=-G1sAAORNd17T594xOjtDUkJWU6RY0zEOdEC_ZVhg0AFx2BgbXxCKTnpjLkqJO4JbEA_tbFcs8Bvbl6tT3ZXFcON3UiSdKQ6KM hxnOijvSC_AA==

http://www.bytesendclear.com/4O61aoYS1WP2EkI3_6PNMEKBEplMlEI1Sx0rCoRZ68fb2IrogjUSndVNgbwM TCNXV9zkDVT54XBE83tFBjyeapi5j1UBVi0BoWkER9JlzPRRoImv22_mjbMvpXURVObSav73aQbu39OgnMaAlZHyGUA3dVQUcsVIodF_BRYosb_sex3KgCzpVfub6motd4NhyV7Zo5O46 6oTmx6CkoViCNzth6agQ8Ra5IzlhBtcFihiCxRhPHZDUw7hXSEvkdT_K2 edIMM 5dyHmugxbd7561Lw3shiKBsHx9d9AZOjVvPDuGWTT iyGEV9rWp954Tm5PBRxqC4rlYjaj1iD1o9vaYAv2506mKBxC5 v0V3aYChvc8lwUx0ScVzwCzDA2FurZ7Sal OCscdPsexqF1 DUlhukF5 TZvvMc5eDv8PLCn7msI nEVShh8DJ8JfJYTsttnVD2y6OA7Iy1RBcCb1j8Fz0aq6Cc44xqLcRkSO1p9bG1dhXOsb9HlGNyJNDNK5PBI6TQKK NNRQkMi25mq2bHoFPO7sZjLPp2iwovmuOy9cBXb9M2IAQn DZvOZRjMt_mbuZDzkQI7wfNv4R9LGCfVQT5zvawMlpxSpRaw8Qq9uZlpidMze5fpNvmf6oPiJ9T-G1sAAORNd17T594xOjtDUkJWU6RY0zEOdEC_ZVhg0AFx2BgbXxCKTnpjLkqJO4JbEA_tbFcs8Bvbl6tT3ZXFcON3UiSdKQ6KM hxnOijvSC_AA==-E

http://download2228.mediafire.com/9p77ftd3c9jg/.../winamp5666_full_pl-pl.exe

http://dpcdn-s11.pl/.../winamp5666_full_pl-pl.exe

https://winamp.softonic.pl/download-tracker?th=1/6CH9aeXedl4L8u BHNJXWTW LP1LFlnGQpxqjlxAOLEf/JLddIgeHAwy4WgrejnvbTN5/6DNyGnWvQhbQC7PU8A/T8QbpJ/cBTww6paYneBRU4thv3iuxiNx/.../rehEPHVQXvbEHGEVd7XsG5AJoEpOHQY60qA==

http://gsf-cf.softonic.com/aad/b15/.../file?SD_used=0&channel=WEB&fdh=no&id_file=30100&instance=softonic_pl&type=PROGRAM&Expires=1444442504&Signature=GaOWCAk2-qqWE35JsNKIHQBW7q7YwuZYX-a-UXelI~~L7XMBuU0Mi0aKTKxNL-EGN54TMdpelYfOwoQ5xLTu5wX-ZyPhroV5ABBXjTLhMqQak7q2q2k3-m7CMF-oVOAXfwU6KDX0zEiSEuSu6I-7-sZ7zp-eEY8z9VCWfs50RTs_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=winamp5666_full_pl-pl.exe

http://softonet.pl/wyslij35694-1.html

http://dpcdn-s09x.pl/.../winamp5666_full_pl-pl.exe

http://dpcdn-s11q.pl/.../winamp5666_full_pl-pl.exe

http://www.bytesendclear.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

http://l.facebook.com/l.php?u=http://dpcdn-s10q.pl/.../winamp5666_full_pl-pl.exe&h=RAQEIu4O4

temp:winamp5666_full_pl-pl.exe

Latest 30 of 50 download URLs

Scan winamp5666_full_pl-pl.exe - Powered by Reason Core Security