qlipso_girafficinstall0.86.111.230.exe

GIRAFFIC TECHNOLOGIES LTD

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer.
Publisher:
Giraffic  (signed by GIRAFFIC TECHNOLOGIES LTD)

Product:
Giraffic

Version:
0.86.111.230

MD5:
c55e73ae34ed3625ad0d7055afe62c0a

SHA-1:
6200d11429e4fc4ffd557bba603b6255015a842d

SHA-256:
d8eed213802240a954e371458a2cace648c62a8ba9fdf2498eec395e19428be7

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 5:35:51 PM UTC  (today)

File size:
2.9 MB (2,999,912 bytes)

Product version:
0.86.111.230

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Common path:
C:\Program Files\veoh networks\veohwebplayer\qlipso_girafficinstall0.86.111.230.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
10/7/2010 9:00:00 AM

Valid to:
9/24/2011 8:59:59 AM

Subject:
CN=GIRAFFIC TECHNOLOGIES LTD, O=GIRAFFIC TECHNOLOGIES LTD, L=Tel Aviv, S=Israel, C=IL

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
2F2FFFF5770FD91BAECAD9660B3B5499

File PE Metadata
Compilation timestamp:
12/6/2009 7:50:46 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
49152:oEymd7FenS4n04OcO3QDgZ6kipow9Vy5aOrXa14u5oYsoz80SXwJg7trUKHC:cg5yVXA3QoJidry5awEVPoXwyVUT

Entry address:
0x323C

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 30, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 58, 3F, 42, 00, E8, 09, 2C, 00, 00, A3, A4, 3E, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 58, F4, 41, 00, FF, 15, 58, 71, 40, 00, 68, B8, 91, 40, 00, 68, A0, 36, 42, 00, E8, BC, 28, 00, 00, FF, 15, B0, 70, 40, 00, BF, 00, 90, 42, 00, 50, 57, E8, AA, 28, 00, 00...
 
[+]

Entropy:
7.9561

Packer / compiler:
Nullsoft install system v2.x

Code size:
23 KB (23,552 bytes)

The file qlipso_girafficinstall0.86.111.230.exe has been discovered within the following program.

Veoh Web Player  by Veoh Networks, Inc.
Veoh Web Player bundles a branded version of the Conduit Toolbar, designed to deliver search based advertising and results. During installation the user is presented in some cases with the option to install the toolbar (on by default).
www.veoh.com
48% remove it
 
Powered by Should I Remove It?

Scan qlipso_girafficinstall0.86.111.230.exe - Powered by Reason Core Security