Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

5,5,6,2512 52.63%
5,5,5,2460 5.26%
5,5,5,2435 5.26%
5,5,4,2165 5.26%
5,5,3,1938 5.26%
5,5,2,1800 15.79%
5,3,4,1278 5.26%
5,2,3,672 5.26%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegCloseKey, RegEnumKeyA, RegOpenKeyA, RegOpenKeyW, RegQueryValueExW, RegCreateKeyExA, RegOpenKeyExA, RegSetValueExA, RegCreateKeyA, RegQueryValueExA, RegDeleteValueA, RegCreateKeyW, RegSetValueExW, RegDeleteKeyA
comctl32.dll
ImageList_Destroy, ImageList_LoadImageA
comdlg32.dll
GetOpenFileNameW, GetSaveFileNameW, GetOpenFileNameA, GetSaveFileNameA, FindTextA
gdi32.dll
LineTo, MoveToEx, CombineRgn, OffsetRgn, CreateRectRgn, GetTextExtentPoint32A, CreateFontIndirectA, GetTextExtentPoint32W, CreatePolyPolygonRgn, CreatePen, Rectangle, RoundRect, CreateCompatibleBitmap, SetBkColor, GetBkColor, GetTextColor, CreateFontA, CreateSolidBrush, GetObjectA, FillRgn, SetTextColor, CreateRectRgnIndirect, StretchBlt, GetPixel, SetPixel, CreateBrushIndirect, SetDIBits, GetNearestColor, SetStretchBltMode, EnumFontsA, RestoreDC, SaveDC, CreateFontW, GetTextMetricsA, ExtSelectClipRgn, IntersectClipRect, GetFontLanguageInfo, GetObjectW, CreatePatternBrush, ExtTextOutW, SetTextAlign, SetBrushOrgEx, CreateFontIndirectW, GetCurrentObject, SetBkMode, UpdateColors, GetDeviceCaps, CreateCompatibleDC, SelectObject, RectVisible, GetDIBits, GetDIBColorTable, DeleteDC, DeleteObject, CreatePalette, CreateDIBSection, SelectPalette, RealizePalette, GetStockObject, BitBlt
kernel32.dll
FindClose, FindNextFileW, FindFirstFileW, lstrcpyW, GetShortPathNameW, lstrcmpW, FindNextFileA, FreeLibrary, LoadLibraryA, GetProcAddress, FindFirstFileA, SetThreadPriority, WriteFile, CreateFileA, CreateFileW, GetCurrentThreadId, LeaveCriticalSection, EnterCriticalSection, CompareStringW, DeleteFileA, GlobalUnlock, GlobalLock, SetCurrentDirectoryW, GetCurrentDirectoryW, GetEnvironmentVariableA, OutputDebugStringA, SetPriorityClass, GetCurrentProcess, RemoveDirectoryA, RemoveDirectoryW, MoveFileExW, GetLastError, SetEvent, CreateEventA, GetVersion, MulDiv, SystemTimeToFileTime, GetSystemTime, GetStringTypeExA, GetStringTypeExW, lstrcmpA, GetModuleHandleA, InitializeCriticalSection, DeleteCriticalSection, LocalFree, LocalAlloc, lstrcmpiW, lstrcatA, lstrcpyA, ReadFile, SetEndOfFile, SetFilePointer, MoveFileA, WaitForMultipleObjects, GetCurrentThread, ResetEvent, LoadLibraryExA, MoveFileW, ReleaseSemaphore, CreateSemaphoreA, CreateEventW, CreateProcessA, DuplicateHandle, GetExitCodeThread, GetCommandLineW, GetDriveTypeA, GetLogicalDrives, SetCurrentDirectoryA, GetShortPathNameA, GetPrivateProfileIntW, lstrcmpiA, QueueUserAPC, InterlockedIncrement, GetPrivateProfileStringW, GetSystemTimeAsFileTime, QueryPerformanceCounter, GetACP, LockResource, SizeofResource, LoadResource, FindResourceW, FindResourceA, FreeResource, LoadLibraryW, HeapFree, HeapAlloc, GetProcessHeap, GetFileSize, CompareStringA, GetPrivateProfileStructA, WritePrivateProfileStructA, GetStartupInfoA, RaiseException, InterlockedExchange, FindResourceExW, GetTimeFormatW, GetLocalTime, GlobalFree, GlobalAlloc, GetModuleFileNameW, lstrcpynW, lstrcpynA, lstrlenA, Sleep, GetTickCount, CreateThread, CloseHandle, WaitForSingleObject, GetLocaleInfoA, WideCharToMultiByte, MultiByteToWideChar, GetFullPathNameW, lstrlenW, OpenEventW, ExitProcess, TerminateProcess, OpenProcess, DeleteFileW, CopyFileW, CreateDirectoryW, GetPrivateProfileIntA, GetPrivateProfileStringA, WritePrivateProfileStringA, SetEnvironmentVariableA, GetModuleFileNameA, CreateProcessW, GetTempFileNameW, GetTempPathW, GetTempPathA, CreateDirectoryA, GetVersionExA
nscrt.dll
_vsnprintf, memset, sqrt, sin, pow, malloc, free, strncmp, _wfopen, fread, fclose, strstr, memcpy, isdigit, isalpha, strlen, realloc, _vsnwprintf, __CxxFrameHandler, strrchr, wcsstr, _wtoi, _purecall, strcmp, strchr, cos, fputc, fprintf, atoi, fgets, fopen, memcmp, wcslen, wcscmp, strtol, wcschr, _wcsdup, toupper, fwrite, ftell, fseek, labs, fabs, floor, abs, _CIpow, fputs, _wchmod, _waccess, wcsrchr, _i64tow, __dllonexit, _onexit, _c_exit, _exit, _XcptFilter, _ismbblead, _cexit, exit, _acmdln, _amsg_exit, __getmainargs, _initterm, __setusermatherr, _adjust_fdiv, __p__commode, __p__fmode, __set_app_type, _controlfp, _except_handler3, tan, log, _strdup, _wcsicmp, _wcsnicmp, _stricmp, _strnicmp, _access, _CxxThrowException, memmove
ole32.dll
CoInitialize, CoRegisterClassObject, RegisterDragDrop, OleInitialize, OleUninitialize, CoRevokeClassObject, RevokeDragDrop, CoCreateInstance, CoCreateGuid, CoInitializeEx, CoUninitialize, CoTaskMemAlloc, OleRun
shell32.dll
SHGetFolderPathW, ShellExecuteW, SHBrowseForFolderA, SHGetPathFromIDListW, SHFileOperationW, DragQueryPoint, Shell_NotifyIconW, SHGetSpecialFolderLocation, SHGetPathFromIDListA, SHGetMalloc, DragQueryFileW, DragFinish, SHChangeNotify, SHBrowseForFolderW, SHAppBarMessage
shlwapi.dll
PathCombineA, PathIsFileSpecA, PathIsRelativeA, PathFileExistsW, PathQuoteSpacesW, StrChrW, PathAppendA, PathQuoteSpacesA, PathIsRelativeW, PathIsFileSpecW, PathIsSameRootW, PathRemoveFileSpecA, PathIsUNCW, PathAddBackslashW, PathCommonPrefixW, StrToIntExW, PathCanonicalizeW, PathStripPathW, PathRemoveBlanksW, PathRemoveBackslashW, StrToIntW, PathUnquoteSpacesW, PathIsDirectoryW, PathIsRootW, PathFileExistsA, PathFindFileNameA, PathStripPathA, PathAddBackslashA, PathIsNetworkPathW, StrCmpIW, PathRemoveExtensionW, StrCmpNW, PathFindExtensionW, PathCombineW, StrCmpNIW, PathRemoveBlanksA, PathRemoveBackslashA, PathFindFileNameW, PathIsURLW, PathAppendW, PathRemoveFileSpecW
tataki.dll
Quit, Init
user32.dll
DllMain

Winamp.exe

Winamp by Nullsoft Inc. (Signed)

Remove Winamp.exe
Version:   5,3,4,1278
MD5:   1caa496916f9c6352c23e22c9bcfd08e
SHA1:   b6acd2c22386fb64ea825a39c27fc98b0850adff
SHA256:   72d2bc5aaa75237788217580b93e284683586f5a6d2b46d8c3dcae7b91b00223

What is Winamp.exe?

Winamp is a media player for Windows-based PCs and Android devices, written by Nullsoft, now a subsidiary of AOL. It is proprietary freeware/shareware, multi-format, extensible with plug-ins and skins, and is noted for its graphical sound visualization, playlist, and media library features.

About Winamp.exe (from Nullsoft Inc.)

The Ultimate Media Player for Android just went Pro! The Pro Bundle offers enriched audio, premium features & customization, and is available as an upgradable in-app purchase.

Overview

winamp.exe executes as a process with the local user's privileges. It configures an autoplay handler withing explorer.exe named WinampPlayMediaOnArrival that will launch the program automatically. It is installed with a couple of know programs including Winamp (remove only) published by Nullsoft, Inc and Winamp (remove only) published by Nullsoft, Inc. The file is digitally signed by Nullsoft Inc. which was issued by the America Online Inc. certificate authority (CA).

DetailsDetails

File name:winamp.exe
Publisher:Nullsoft
Product name:Winamp
Typical file path:C:\Program Files\winamp\winamp.exe
File version:5,3,4,1278
Product version:5.3.4.1278
Size:1.08 MB (1,128,448 bytes)
Build date:4/25/2007 8:46 AM
Certificate
Issued to:Nullsoft Inc.
Authority (CA):America Online Inc.
Expiration date:Sunday, December 19, 2010
Digital DNA
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Nullsoft, Inc
6% remove
Winamp is a media player for Windows-based PCs that is proprietary freeware/shareware, multi-format, extensible with plug-ins and skins, and is noted for its graphical sound visualization, playlist, and media library features. Winamp supports music playback using MP3, MIDI, MOD, MPEG-1 audio layers 1 and 2, AAC, M4A, FLAC, WAV and WMA. Winamp was one of the first common music players on Windows to support playback of Ogg Vorbis by defau...

BehaviorsBehaviors

Autoplay handler
Runs under the registry key 'SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers'
  • Handler name 'WinampPlayMediaOnArrival'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.04002009%
0.028634%
Kernel CPU:0.01671967%
0.013761%
User CPU:0.02330041%
0.014873%
Kernel CPU time:6,641 ms/min
100,923,805ms/min
Context switches:182/sec
284/sec
Memory
Private memory:36.87 MB
21.59 MB
Private (maximum):14.54 MB
Private (minimum):5.94 MB
Non-paged memory:36.87 MB
21.59 MB
Virtual memory:135.46 MB
140.96 MB
Virtual memory (peak):152.54 MB
169.69 MB
Working set:6.82 MB
18.61 MB
Working set (peak):33.56 MB
37.95 MB
Resource allocations
Threads:12
12
Handles:307
600
GUI GDI count:911
103
GUI USER count:259
49

BehaviorsProcess properties

Integrety level:Undefined
Platform:32-bit
Command line:"C:\Program Files\winamp\winamp.exe" -embedding
Owner:User
Parent process:svchost.exe (Generic Host Process for Win32 Services by Microsoft)

ResourcesThreads

Averages
 
winamp.exe (main module)
Total CPU:0.41816655%
0.272967%
Kernel CPU:0.19153970%
0.107585%
User CPU:0.22662685%
0.165382%
Context switches:68/sec
79/sec
Memory:1.15 MB
1.16 MB
in_wm.dll
Total CPU:0.08793955%
Kernel CPU:0.06132627%
User CPU:0.02661329%
Context switches:44/sec
Memory:324 KB
ole32.dll
Total CPU:0.00462476%
Kernel CPU:0.00115619%
User CPU:0.00346857%
Memory:1.24 MB
mswmdm.dll
Total CPU:0.00346612%
Kernel CPU:0.00115537%
User CPU:0.00231075%
Memory:328 KB
pmp_p4s.dll
Total CPU:0.00115448%
Kernel CPU:0.00000000%
User CPU:0.00115448%
Memory:120 KB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Ultimate 50.00%
Microsoft Windows XP 50.00%

Distribution by countryDistribution by country

RS installs about 33.33% of Winamp.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 66.67%
GIGABYTE 33.33%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE