gg.exe

Nowe Gadu-Gadu

GG Network S.A.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Nowe Gadu-Gadu’. This is installed with Nowe Gadu-Gadu.
Publisher:
GG Network S.A.  (signed and verified)

Product:
Nowe Gadu-Gadu

Version:
8,0,0,9453

MD5:
19fceb672ed36353fe279e66cd16c582

SHA-1:
c773254f0d34628b05b57f2f96cbadc654c3c3bb

SHA-256:
61423009fcb67e164a710821c72cca64238ec0420a6bcbb5d2f38d0de196ac81

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 5:50:11 PM UTC  (today)

File size:
10.9 MB (11,391,592 bytes)

Product version:
8,0,0,9453

Copyright:
Copyright (C) 2000-2009

Original file name:
gg.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\nowe gadu-gadu\gg.exe

Digital Signature
Signed by:

Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
2/24/2009 1:00:00 AM

Valid to:
2/25/2010 12:59:59 AM

Subject:
CN=GG Network S.A., O=GG Network S.A., L=Warszawa, S=Mazowieckie, C=PL

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
7636DE0BAEB9C1C85F74CE1E4C5C17A2

File PE Metadata
Compilation timestamp:
8/31/2009 6:05:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
98304:ZhR1fayLVuUWvqiNka1DsrwWzjiUSvx5gbJ3E2dRWZCg12renh:Z5VOqJHcWiFvx5gdE2dRsPgenh

Entry address:
0x338CB4

Entry point:
E8, CB, 03, 00, 00, E9, 39, FD, FF, FF, FF, 25, 24, C6, A1, 00, FF, 25, 1C, C6, A1, 00, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 38, EC, EC, 00, 89, 0D, 34, EC, EC, 00, 89, 15, 30, EC, EC, 00, 89, 1D, 2C, EC, EC, 00, 89, 35, 28, EC, EC, 00, 89, 3D, 24, EC, EC, 00, 66, 8C, 15, 50, EC, EC, 00, 66, 8C, 0D, 44, EC, EC, 00, 66, 8C, 1D, 20, EC, EC, 00, 66, 8C, 05, 1C, EC, EC, 00, 66, 8C, 25, 18, EC, EC, 00, 66, 8C, 2D, 14, EC, EC, 00, 9C, 8F, 05, 48, EC, EC, 00, 8B, 45, 00, A3, 3C, EC, EC, 00, 8B, 45, 04, A3, 40...
 
[+]

Code size:
6.1 MB (6,402,048 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Nowe Gadu-Gadu

Command:
"C:\Program Files\nowe gadu-gadu\gg.exe"


The file gg.exe has been discovered within the following program.

Nowe Gadu-Gadu  by GG Network S.A.
About 7% of users remove it
 
Powered by Should I Remove It?

Scan gg.exe - Powered by Reason Core Security