qlipso_girafficinstall0.85.876.230.exe

GIRAFFIC TECHNOLOGIES LTD

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer.
Publisher:
Giraffic  (signed by GIRAFFIC TECHNOLOGIES LTD)

Product:
Giraffic

Version:
0.85.876.230

MD5:
3c81a53ee14d6ba3a1c2a78d4bdedf28

SHA-1:
2ee0eb51b28de790f59d5ac3cca5c05aa5794633

SHA-256:
5aa7bd5aece2cbd222c24f31659e7e86fb50555d741d2b68c6ddb41ca08857b9

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
5/8/2024 6:28:24 PM UTC  (today)

Scan engine
Detection
Engine version

Comodo Security
Heur.Suspicious
15895

File size:
2.8 MB (2,958,776 bytes)

Product version:
0.85.876.230

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
Language Neutral

Common path:
C:\Program Files\veoh networks\veohwebplayer\qlipso_girafficinstall0.85.876.230.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
10/6/2010 8:00:00 PM

Valid to:
9/23/2011 7:59:59 PM

Subject:
CN=GIRAFFIC TECHNOLOGIES LTD, O=GIRAFFIC TECHNOLOGIES LTD, L=Tel Aviv, S=Israel, C=IL

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
2F2FFFF5770FD91BAECAD9660B3B5499

File PE Metadata
Compilation timestamp:
12/5/2009 5:50:46 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
49152:o3o+DDK3c+fgtGS04VgU+OuhT673nDgCCK3rEJA2UqTyognEONXSz:HIDKBhL4VguA6jDgPAoArqf2

Entry address:
0x323C

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 30, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 58, 3F, 42, 00, E8, 09, 2C, 00, 00, A3, A4, 3E, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 58, F4, 41, 00, FF, 15, 58, 71, 40, 00, 68, B8, 91, 40, 00, 68, A0, 36, 42, 00, E8, BC, 28, 00, 00, FF, 15, B0, 70, 40, 00, BF, 00, 90, 42, 00, 50, 57, E8, AA, 28, 00, 00...
 
[+]

Entropy:
7.9551

Packer / compiler:
Nullsoft install system v2.x

Code size:
23 KB (23,552 bytes)

The file qlipso_girafficinstall0.85.876.230.exe has been discovered within the following programs.

Veoh Web Player  by Veoh Networks, Inc.
Veoh Web Player bundles a branded version of the Conduit Toolbar, designed to deliver search based advertising and results. During installation the user is presented in some cases with the option to install the toolbar (on by default).
www.veoh.com
48% remove it
 
Powered by Should I Remove It?

Scan qlipso_girafficinstall0.85.876.230.exe - Powered by Reason Core Security