gora sah

Publisher Information

gora sah is a software publisher*. The company is a primary distributor of unwanted software. Thre are 2 additional code signing certificates issued to this publisher.
Remove gora sah Malware - Powered by Reason Core Security
Authority:
gora sah

Valid from:
12/31/2009 10:00:00 PM

Valid to:
12/31/2018 10:00:00 PM

Subject:
CN=gora sah

Issuer:
CN=gora sah

Serial number:
23007838c6e212bf41cfecbb6371c9db

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.gorasah.Installer (M), PUP.gorasah (M)
100.00%

Comodo Security
UnclassifiedMalware
8.00%

Vba32 AntiVirus
Trojan.Autoit.F
8.00%

CMC Antivirus
Trojan.Win32.Generic!O
6.00%

Jiangmin
TrojanDropper.Injector.bptf
6.00%

Baidu Antivirus
Hacktool.Win32.Autoit, Trojan.Win32.Autoit
6.00%

Trend Micro House Call
Suspicious_GEN.F47V0518, Suspicious_GEN.F47V1103
6.00%

Avira AntiVirus
SPR/AutoIt.Gen
4.00%

ESET NOD32
Win32/Packed.Autoit.H suspicious
4.00%

MicroWorld eScan
Trojan.GenericKD.2418991
4.00%

1 / 68      (Adware)
javase.exe (by Company 'gora-sah')  (96dd345a7e6b5587c445073f4b228c56)

1 / 68      (Adware)
buttonx86.exe (Button v5.1.0 [x86] by Company 'gora-sah')  (79d32b42fb491cafaecd3674542b2efd)

1 / 68      (Adware)

1 / 68      (Adware)
inputpath.exe (Button v4.3.7 by Company 'gora-sah')  (99b3403077a1f7e8a5cb8bea4c16b36c)

1 / 68      (Adware)

1 / 68      (Adware)
settools.exe (Tools v10.6 by Company 'gora-sah')  (bcdbef239904ee09cbd50136a930e01b)

1 / 68      (Adware)
7-zip.exe (7 Zip v9.30 alpha by Company 'gora-sah')  (2291e1802b43154ebabccd820302f4d7)

1 / 68      (Adware)

1 / 68      (Adware)
7-zip.exe (7 Zip v15.05 beta by Company 'gora-sah')  (d5f6a1411188eb4b2c47a03de92b3caf)

1 / 68      (Adware)
7-zip.exe (7-Zip v15.09 beta by Company 'gora-sah')  (2d9f7a635b4be881a7a0160782219f13)

1 / 68      (Adware)
7-zip.exe (7 Zip v9.30 alpha by Company 'gora-sah')  (44b9960de105adf212dc4fbb82df1051)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

27 / 68    (Adware)
SetupNet.exe (SetUp_Net #2.0 by Company 'gora-sah')  (969a404b1cd0fb84a50abae3235dbcd8)

1 / 68      (Adware)
309.exe (Tools v5.7 by Company 'gora-sah')  (ce85368d45400e9119fe3281f157d4e6)

1 / 68      (Adware)

1 / 68      (Adware)
7-zip.exe (7 Zip v9.30 alpha by Company 'gora-sah')  (1dc7eb65d4104bbc252f77ae30b8804d)

1 / 68      (Adware)

1 / 68      (Adware)
settools.exe (Tools v10.2 by Company 'gora-sah')  (303ce3a96e4cff6370519db16dd0109c)

1 / 68      (Adware)

1 / 68      (Adware)
irfanview.exe (IrfanView v4.40 ru by Company 'gora-sah')  (f6b2a21785adc2081eae582b21d0730e)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
7-zip.exe (7 Zip v9.30 alpha by Company 'gora-sah')  (09114ae5a4bf0eda9fcae57d097f3acf)

 
Latest 30 of 99 files

The certificates below are also signed by gora sah.

5E9A2CCAFFE48F8E401D9CBCDB1EA1B3  (Dec 31, 2009 to Dec 31, 2018)

ADAF0E82319793A54034B8E6FD6B222A  (Dec 31, 2009 to Dec 31, 2018)

The following publishers (by Authenticode signature organization name) are related.

Remove gora sah Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to gora sah by gora sah on December 31, 2009 with the serial number '23007838c6e212bf41cfecbb6371c9db'.