gom.exe

GOM Player

GRETECH

Publisher:
GRETECH  (signed and verified)

Product:
GOM Player

Version:
2, 2, 57, 5189

MD5:
3f58bb34cb843261638842486acc28b3

SHA-1:
e04930ca04caf9d1dcc95a8e7909616be75e1bce

SHA-256:
2c0e4a160287bb2b669ea9217b91f96e8c3214e3172c6ad3d97abb5c906f1078

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/27/2024 12:15:28 AM UTC  (today)

Scan engine
Detection
Engine version

Emsisoft Anti-Malware
Win32.Worm.Downadup.Gen
8.16.02.14.10

File size:
8.2 MB (8,586,191 bytes)

Product version:
2, 2, 57, 5189

Copyright:
Copyright(C) Gretech Corp. All rights reserved. Since 2003

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\gretech\gomplayer\gom.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
5/2/2013 12:00:00 AM

Valid to:
6/1/2015 11:59:59 PM

Subject:
CN=GRETECH, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=GRETECH, L=Gangnam-gu, S=Seoul, C=KR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
78A2255D0AB283A4DC76EF94B250B7ED

File PE Metadata
Compilation timestamp:
3/31/2014 2:59:26 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
196608:JHikA/2H1Yyo9qVL55T9lIL1P2o/FlNNvpLNVFPFkN2sSGN2Fu2:Et/cOq8Bd/FlNNvpLNVFPFkN2sSGN2FD

Entry address:
0x3EEF1D

Entry point:
BB, D2, C3, 1B, 82, 93, E9, 20, 01, 00, 00, 76, 1C, 7F, 7B, 27, AB, 7F, 7B, 5F, 9F, 7F, FF, FF, 7F, FF, FF, 4B, FF, FF, FF, 5E, 30, 35, 30, 2F, 30, 38, 36, 35, FF, FF, FF, 73, 60, 79, 64, 61, 60, 6C, 60, 2D, 63, 6B, 6B, FF, FF, FF, FF, 5B, FF, FF, FF, 45, 71, 64, 64, 4B, 68, 61, 71, 60, 71, 78, FF, 42, 71, 64, 60, 73, 64, 43, 68, 71, 64, 62, 73, 6E, 71, 78, 40, FF, FF, FF, FF, 46, 64, 73, 56, 68, 6D, 63, 6E, 76, 72, 43, 68, 71, 64, 62, 73, 6E, 71, 78, 40, FF, FF, FF, FF, 46, 64, 73, 4C, 6E, 63, 74, 6B, 64...
 
[+]

Entropy:
6.3711

Code size:
4.5 MB (4,685,824 bytes)

Autoplay Handler
Display name:
GOMPlayDVDOnArrival


Scan gom.exe - Powered by Reason Core Security