Veohwebplayer.exe

Veoh Web Player Beta

Veoh Networks

The executable Veohwebplayer.exe has been detected as malware by 1 anti-virus scanner. It runs as a scheduled task under the Windows Task Scheduler. This file is typically installed with the program Veoh Web Player by Veoh Networks, Inc..
Publisher:
Veoh Networks  (signed and verified)

Product:
Veoh Web Player Beta

Version:
1.2.0.1196

MD5:
98d04c95ff815217237576830f7ed5f2

SHA-1:
bd4a7e1e5ae41929918aee488a1b80059870055e

SHA-256:
97aed042156829c42d6909adbd902ed38f0fad33bb8ff21785899f79ac29074b

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
4/25/2024 8:56:49 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic
16.1.19.5

File size:
2.5 MB (2,633,976 bytes)

Product version:
1.2.0.1196

Copyright:
Copyright (C) Veoh Networks 2009

Original file name:
Veohwebplayer.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\veoh networks\veohwebplayer\veohwebplayer.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
5/5/2009 5:00:00 PM

Valid to:
5/27/2010 4:59:59 PM

Subject:
CN=Veoh Networks, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Veoh Networks, L=San Diego, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
21898FE1B1ED06E34E3935739C58DB65

File PE Metadata
Compilation timestamp:
2/18/2010 4:46:25 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:5vJ+GuK6DE0RQGmp4s/6AMTa7nGgNdZjTds/6G6ZOU5SkIKmzhtHYTo:H0k9ls/6HZOESkw

Entry address:
0x1B2DAC

Entry point:
E8, D7, 04, 00, 00, E9, 36, FD, FF, FF, 3B, 0D, C0, 2E, 65, 00, 75, 02, F3, C3, E9, 59, 05, 00, 00, 8B, FF, 55, 8B, EC, FF, 75, 14, FF, 75, 10, FF, 75, 0C, FF, 75, 08, 68, B6, 2D, 5B, 00, 68, C0, 2E, 65, 00, E8, 3F, 06, 00, 00, 83, C4, 18, 5D, C3, CC, CC, CC, CC, CC, CC, 51, 8D, 4C, 24, 08, 2B, C8, 83, E1, 0F, 03, C1, 1B, C9, 0B, C1, 59, E9, 8A, FA, FF, FF, 51, 8D, 4C, 24, 08, 2B, C8, 83, E1, 07, 03, C1, 1B, C9, 0B, C1, 59, E9, 74, FA, FF, FF, CC, CC, CC, CC, 80, F9, 40, 73, 15, 80, F9, 20, 73, 06, 0F, A5...
 
[+]

Entropy:
6.5213

Code size:
1.8 MB (1,934,336 bytes)

Scheduled Task
Task name:
RunAsStdUser Task for VeohWebPlayer

Trigger:
Registration (Runs on registration)


The file Veohwebplayer.exe has been discovered within the following program.

Veoh Web Player  by Veoh Networks, Inc.
Veoh Web Player bundles a branded version of the Conduit Toolbar, designed to deliver search based advertising and results. During installation the user is presented in some cases with the option to install the toolbar (on by default).
www.veoh.com
48% remove it
 
Powered by Should I Remove It?

Remove Veohwebplayer.exe - Powered by Reason Core Security