Author Topic: What is "is-GLDPO.exe?"  (Read 827 times)

0 Members and 1 Guest are viewing this topic.

Offline HansTheBlueFrog

  • Bronze Member
  • Posts: 6
    • Websplasher Web Design
What is "is-GLDPO.exe?"
« on: April 10, 2009, 02:44:45 AM »
I suspect this file came with a recent Webroot SpySweeper update, but I'm not certain. Does anyone know anything about this application? I'm concerned that it might be spyware. Since I have not been able to identify what it is, I decided to post here.

Hans


"Fred still lives."

Offline PCBruiser

  • Malware Removal Mentors
  • Administrator
  • Diamond Member
  • Posts: 7297
Re: What is "is-GLDPO.exe?"
« Reply #1 on: April 10, 2009, 06:28:19 AM »
Hi,

I suggest you upload the file to the following sites:

http://virusscan.jotti.org/
http://www.virustotal.com/en/indexx.html

and run scans on it there.  Post the results.  As of this morning, I cannot find any information on any file by that name anywhere.  It might (probably is) a random name.  Scanning on those two sites will help track down what it is.
Don't Read?  Can't learn!

Offline HansTheBlueFrog

  • Bronze Member
  • Posts: 6
    • Websplasher Web Design
Re: What is "is-GLDPO.exe?"
« Reply #2 on: April 10, 2009, 09:31:16 PM »
Thanks for your reply and the links PCBruiser. Apparently the file is safe. Here are the results of the scans:

Quote
RESULTS FROM virusscan.jotti.org:

Scan taken on 10 Apr 2009 19:02:06 (GMT) A-Squared
Found nothing
AntiVir
Found nothing
ArcaVir
Found nothing
Avast
Found nothing
AVG Antivirus
Found nothing
BitDefender
Found nothing
ClamAV
Found nothing
CPsecure
Found nothing
Dr.Web
Found nothing
F-Prot Antivirus
Found nothing
F-Secure Anti-Virus
Found nothing
Ikarus
Found nothing
Kaspersky Anti-Virus
Found nothing
NOD32
Found nothing
Norman Virus Control
Found nothing
Panda Antivirus
Found nothing
Quick Heal
Found nothing
Sophos Antivirus
Found nothing
VirusBuster
Found nothing
VBA32
Found nothing

The results from virustotal.com are a bit more detailed, so I hope this link works:

http://www.virustotal.com/analisis/f9c3db5e0f6a23778667a036d72dec6c

Hans
"Fred still lives."

Offline PCBruiser

  • Malware Removal Mentors
  • Administrator
  • Diamond Member
  • Posts: 7297
Re: What is "is-GLDPO.exe?"
« Reply #3 on: April 10, 2009, 09:46:49 PM »
Hi,

It looks like it belongs to some software recently installed.  Right click on the file.   Then choose Properties from the context menu.  Depending on your OS, go to the tab labeled Details, or any other tab that gives you info about the ownership of the file.  Let's see if that tells anything about what uses/created this file.

One other thing you can do is add .bak to the end of the file, i.e., change the name so that it is now named is-GLDPO.exe.bak  .  Use your system normally, and let's see what crashes or stops when looking for that file to execute.  Once we know what is looking for the file, we'll know what it is doing there and what created it.  Since we effectively "disappeared" the file by adding a non-executable extension, if anything needs it, we'll know.  And, it is simple to change back the extension once we know it is legitimate.
Don't Read?  Can't learn!