qlipso_girafficinstall0.85.671.230.exe

GIRAFFIC TECHNOLOGIES LTD

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer.
Publisher:
Giraffic  (signed by GIRAFFIC TECHNOLOGIES LTD)

Product:
Giraffic

Version:
0.85.671.230

MD5:
fc49bd5efa4b8fe593d0acbff1231ef7

SHA-1:
a0a3b84c59fae31dec4ef3ed293a03de064a5c69

SHA-256:
2ecb94e623a295d46f4fef26f73b573dbcccfc52b33255df6f6895c1c3fbd981

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 6:17:10 PM UTC  (today)

File size:
2.8 MB (2,974,248 bytes)

Product version:
0.85.671.230

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Common path:
C:\Program Files\veoh networks\veohwebplayer\qlipso_girafficinstall0.85.671.230.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
10/7/2010 9:00:00 AM

Valid to:
9/24/2011 8:59:59 AM

Subject:
CN=GIRAFFIC TECHNOLOGIES LTD, O=GIRAFFIC TECHNOLOGIES LTD, L=Tel Aviv, S=Israel, C=IL

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
2F2FFFF5770FD91BAECAD9660B3B5499

File PE Metadata
Compilation timestamp:
12/6/2009 7:50:46 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
49152:YnKTJ1Q2CA52jdl3KNSt4X7zzTsimxoWK/OoYIvflRlCDXft4/OYcZttqa4vxGie:oYJ1QNAor/kzTOoVOJUdfEXfdYiUxG6

Entry address:
0x323C

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 30, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 58, 3F, 42, 00, E8, 09, 2C, 00, 00, A3, A4, 3E, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 58, F4, 41, 00, FF, 15, 58, 71, 40, 00, 68, B8, 91, 40, 00, 68, A0, 36, 42, 00, E8, BC, 28, 00, 00, FF, 15, B0, 70, 40, 00, BF, 00, 90, 42, 00, 50, 57, E8, AA, 28, 00, 00...
 
[+]

Entropy:
7.9555

Packer / compiler:
Nullsoft install system v2.x

Code size:
23 KB (23,552 bytes)

The file qlipso_girafficinstall0.85.671.230.exe has been discovered within the following program.

Veoh Web Player  by Veoh Networks, Inc.
Veoh Web Player bundles a branded version of the Conduit Toolbar, designed to deliver search based advertising and results. During installation the user is presented in some cases with the option to install the toolbar (on by default).
www.veoh.com
48% remove it
 
Powered by Should I Remove It?

Scan qlipso_girafficinstall0.85.671.230.exe - Powered by Reason Core Security