gifanimator.exe

Evgeny Gorshkov

Publisher:
Evgeny Gorshkov  (signed and verified)

Version:
4.0.0.0

MD5:
79c1b8b468bf3f92bc0bdbf4a697e22f

SHA-1:
00b9955efb6a85c60199fca3c6d028f535420b63

SHA-256:
83820a4c40ba1a1fdc1d9b25d229af7a6ebe10f25f53d60cc64e19b8202faf74

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/17/2024 12:51:06 AM UTC  (today)

Scan engine
Detection
Engine version

Rising Antivirus
PE:Malware.XPACK-LNR/Heur!1.5594
23.00.65.14831

File size:
7.5 MB (7,859,336 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\gif animator\gifanimator.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
2/6/2013 7:00:00 PM

Valid to:
2/7/2014 6:59:59 PM

Subject:
CN=Evgeny Gorshkov, O=Evgeny Gorshkov, STREET=Demakova 18-27, L=Novosibirsk, S=Novosibirsk, PostalCode=630128, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00D2179B83DB7F2C8F49277493BDB937DD

File PE Metadata
Compilation timestamp:
2/25/2013 2:19:46 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:UZ+a7lHSlP0+a1UJdoqoBFJQlQn024u2ehKUzLZ0Z3QucCIyogqJFAZ:UZZ7lHSlP0+a1UJdoNBFJQl04u2ehKUU

Entry address:
0x60F5B7

Entry point:
E9, 35, 8B, FD, FF, 5B, 39, FD, BC, 8C, C7, 3D, 93, FF, F6, 3E, 36, F8, 75, 69, 7E, 43, 5D, 3C, 83, EC, 0C, 53, 56, 57, E8, 24, 02, 00, E9, E8, B8, FE, FF, 5B, 0F, 83, 08, 6F, 12, 00, E9, 99, CA, 12, 00, 68, 62, 21, 00, DA, 5F, 23, 3D, F7, 59, 9E, 00, 81, C7, B1, D2, B4, 00, 87, 3C, 24, E9, 09, 28, FB, FF, 81, E0, 86, 4B, 62, D3, 81, F0, B1, 57, 26, C7, 03, C5, 81, C0, CB, E0, 99, 38, 8B, 00, E9, 55, FC, FB, FF, 89, 1C, 24, 5B, 87, 04, 24, 8B, D0, 68, 59, 48, B5, 00, E9, 0C, 27, FF, FF, 81, FB, 27, 14, 27...
 
[+]

Entropy:
6.4710

Packer / compiler:
Xtreme-Protector v1.05

Code size:
5.3 MB (5,538,816 bytes)

The file gifanimator.exe has been discovered within the following program.

GIF Animator 4.0  by Creabit
www.gif-animator.com
About 9% of users remove it
 
Powered by Should I Remove It?

Scan gifanimator.exe - Powered by Reason Core Security