wincdemu-3.6.exe

WinCDEmu

Sysprogs UG (haftungsbeschraenkt)

This is a self-extracting archive and installer. The file has been seen being downloaded from dl-web.dropbox.com and multiple other hosts.
Publisher:
SysProgs.org  (signed by Sysprogs UG (haftungsbeschraenkt))

Product:
WinCDEmu

Description:
WinCDEmu installer

Version:
3.6

MD5:
b88b3fb326acf9d6882c9901d297d6a1

SHA-1:
ab69a293680948da9bc865d29becb02bad5b2d94

SHA-256:
1b7b29308b5a17c7d94486f53c441752663d77d90294f005d06f1bb101e1e5a6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 11:18:29 AM UTC  (today)

File size:
812 KB (831,496 bytes)

Product version:
3.6

Copyright:
LGPL

Trademarks:
SysProgs.org

Original file name:
WinCDEmu-installer.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\wincdemu-3.6.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/7/2011 8:00:00 PM

Valid to:
8/7/2012 7:59:59 PM

Subject:
CN=Sysprogs UG (haftungsbeschraenkt), OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Sysprogs UG (haftungsbeschraenkt), L=Kaiserslautern, S=Rheinland-Pfalz, C=DE

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1734AA23F6C88B7F2E7FC68F7118423E

File PE Metadata
Compilation timestamp:
6/20/2011 7:35:37 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:EhsirfWd7N4NGJ38WytDJ6MWcOgRVB71NOtcDI5AluVu+hHs4m:EhsggN4N6sD4HcZbXy0IquVhHsh

Entry address:
0x810F0

Entry point:
60, BE, 00, A0, 45, 00, 8D, BE, 00, 70, FA, FF, 57, 83, CD, FF, EB, 10, 90, 90, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, 0B, 75, 28, 8B, 1E, 83, EE, FC, 11, DB, 72, 1F, 48, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, EB, D4, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, EB, 52, 31, C9, 83, E8, 03, 72, 11, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 75, D1, F8, 89...
 
[+]

Entropy:
7.9576

Packer / compiler:
UPX 2.90LZMA]

Code size:
160 KB (163,840 bytes)

The file wincdemu-3.6.exe has been discovered within the following programs.

iTunes  by Apple Inc.
Apple's iTunes is a proprietary media player computer program, used for playing and organizing digital music and video files on desktop computers. It can also manage contents on iPod, iPhone and iPad.
www.apple.com/itunes
9% remove it
WinCDEmu  by Bazis
WinCDEmu is an open-source utility for mounting disk image files in Microsoft Windows. It installs a Windows device driver which allows a user to access an image of a CD or DVD as if it were a physical drive. WinCDEmu supports ISO, CUE/BIN, CCD/IMG, NRG, MDS/MDF and RAW formats.
wincdemu.sysprogs.org
9% remove it
 
Powered by Should I Remove It?

The file wincdemu-3.6.exe has been seen being distributed by the following 28 URLs.

https://dl-web.dropbox.com/get/.../WinCDEmu-3.6.exe

https://d1ob5g40gc5b6g.cloudfront.net/41/405669/.../WinCDEmu3.6.exe

http://download1654.mediafire.com/beqgmf03urlg/.../WinCDEmu v3.6.exe

http://download.heise.de/software/fbcbbbe23dcaa3153e88e31a5279dabf/54f4b007/.../wincdemu-3.6.exe

http://ufpr.dl.sourceforge.net/project/wincdemu/wincdemu/.../WinCDEmu-3.6.exe

http://stahnu.cz/download/vypalovaci-programy/wincdemu/lfdfrme2dihfqgtkhmm8gi0c66/.../wincdemu_3.6.exe

http://vorboss.dl.sourceforge.net/project/wincdemu/wincdemu/.../WinCDEmu-3.6.exe

http://123.briian.com/forum.php?mod=attachment&aid=NjM5fGU1YjIyOTc3fDE0MTMyMDg0ODZ8MHwxNjk=

Scan wincdemu-3.6.exe - Powered by Reason Core Security