qlipso_girafficinstall0.85.884.230.exe

GIRAFFIC TECHNOLOGIES LTD

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer.
Publisher:
Giraffic  (signed by GIRAFFIC TECHNOLOGIES LTD)

Product:
Giraffic

Version:
0.85.884.230

MD5:
9f263964050fca24a1717f6385145cdd

SHA-1:
8f32dbf1d2ab98e46b602530e432cd7ad0e7d07b

SHA-256:
87ee942122c08aa290020bcdd0835b34a3741386a1c869f38743b773c3a18254

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/18/2024 4:06:15 AM UTC  (today)

File size:
2.8 MB (2,960,912 bytes)

Product version:
0.85.884.230

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
Language Neutral

Common path:
C:\Program Files\veoh networks\veohwebplayer\qlipso_girafficinstall0.85.884.230.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
10/6/2010 7:00:00 PM

Valid to:
9/23/2011 6:59:59 PM

Subject:
CN=GIRAFFIC TECHNOLOGIES LTD, O=GIRAFFIC TECHNOLOGIES LTD, L=Tel Aviv, S=Israel, C=IL

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
2F2FFFF5770FD91BAECAD9660B3B5499

File PE Metadata
Compilation timestamp:
12/5/2009 4:50:46 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
49152:VpLMSPaevl/BlZJyYJOg+dVcBJRlTQ/IizgJcZwcnuZBCTBXEXJUub:HLTPl9/vyYQg+duBrMrZhuZBC9EZUub

Entry address:
0x323C

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 30, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 58, 3F, 42, 00, E8, 09, 2C, 00, 00, A3, A4, 3E, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 58, F4, 41, 00, FF, 15, 58, 71, 40, 00, 68, B8, 91, 40, 00, 68, A0, 36, 42, 00, E8, BC, 28, 00, 00, FF, 15, B0, 70, 40, 00, BF, 00, 90, 42, 00, 50, 57, E8, AA, 28, 00, 00...
 
[+]

Entropy:
7.9551

Packer / compiler:
Nullsoft install system v2.x

Code size:
23 KB (23,552 bytes)

The file qlipso_girafficinstall0.85.884.230.exe has been discovered within the following program.

Veoh Web Player  by Veoh Networks, Inc.
Veoh Web Player bundles a branded version of the Conduit Toolbar, designed to deliver search based advertising and results. During installation the user is presented in some cases with the option to install the toolbar (on by default).
www.veoh.com
48% remove it
 
Powered by Should I Remove It?

Scan qlipso_girafficinstall0.85.884.230.exe - Powered by Reason Core Security