winampa.exe

  • File Path: C:\Program Files (x86)\Winamp\winampa.exe
  • Description: Winamp Agent

Hashes

Type Hash
MD5 56FAF648C545FA927C1F3838306AB27E
SHA1 E14DCAAB608C1F17B4A7F7F7BB72336CA2E07840
SHA256 A1F99CA6126BEE8AA2BD493584B3C3A2EE30077E31DE8325C66FC25B8295E0E1
SHA384 E9D432E7D788C0A6C0F604E202B8A374DEA96F857F3D0F6AF54FC54AA598A49C2A12BFA8D2E2F149EC3D7F82805ECDCD
SHA512 ACC1D2A52104E3A9CAAA0D0420F67FA9B81427E4769CFDF96799A0DC8B17DF0FA52C54D3186E6D222AFE093C2E625F9311F20C26BA0108D816DC2B83128D48C7
SSDEEP 768:KCkuxMkuaAWYEmBopWG+XkgGmBMQ/U1w/UXoMS1gsYOez6gmSDe22HR:K0MKRWxVz7MW/UXVue/mSDe2sR
IMP 6B6DE861145E3CED2A5C9A7AEB0C4F44
PESHA1 94302D864A92F3AD73575BD2B57623B93B669038
PE256 A6FFF01F6739F87D61F46E0E11439CBFAA11437FCC8E374989796EE389A829F9

Runtime Data

Open Handles:

Path Type
(RW-) C:\Windows File
(RW-) C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9625_none_508ef7e4bcbbe589 File
(RW-) C:\xCyclopedia File
\BaseNamedObjects\NLS_CodePage_1252_3_2_0_0 Section
\BaseNamedObjects\NLS_CodePage_437_3_2_0_0 Section
\Sessions\1\BaseNamedObjects\windows_shell_global_counters Section
\Sessions\1\Windows\Theme2547664911 Section
\Windows\Theme3854699184 Section

Loaded Modules:

Path
C:\Program Files (x86)\Winamp\winampa.exe
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\System32\wow64.dll
C:\Windows\System32\wow64cpu.dll
C:\Windows\System32\wow64win.dll

Signature

  • Status: Signature verified.
  • Serial: 3BA0DE68EE9CCED6F60B4FCD75203C05
  • Thumbprint: C334E08D86580284EAA279348DA89415E917D660
  • Issuer: CN=thawte SHA256 Code Signing CA, O=”thawte, Inc.”, C=US
  • Subject: CN=Winamp SA, O=Winamp SA, L=Bruxelles, C=BE

File Metadata

  • Original Filename: winampa.exe
  • Product Name: Winamp
  • Company Name: Winamp SA
  • File Version: 5,8,0,3660
  • Product Version: 5,8,0,3660
  • Language: English (United States)
  • Legal Copyright: Copyright 1997-2019 Winamp SA
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/72
  • VirusTotal Link: https://www.virustotal.com/gui/file/a1f99ca6126bee8aa2bd493584b3c3a2ee30077e31de8325c66fc25b8295e0e1/detection/

File Similarity (ssdeep match)

File Score
C:\Program Files (x86)\Winamp\elevator.exe 49

MIT License. Copyright (c) 2020-2021 Strontic.