elevatedshell.exe

Birdstep Technology AB

Publisher:
Birdstep Technology AB  (signed and verified)

MD5:
eabf618fb703d19084fad63d18f9d6f0

SHA-1:
3d7708cbabfb7e35cb7d7b81f1f411fc2adcd3d5

SHA-256:
dd3765fec8ba45cf167d8350e13d70664df5f56d35ca4edd00cb19133e923065

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 10:08:55 PM UTC  (today)

File size:
76.4 KB (78,280 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\3 mobile broadband\3connect\elevatedshell.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
6/28/2012 1:00:00 AM

Valid to:
9/28/2013 12:59:59 AM

Subject:
CN=Birdstep Technology AB, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Birdstep Technology AB, L=Stockholm, S=Stockholms Län, C=SE

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0157AC300204F2A8AAA26FE49ED94451

File PE Metadata
Compilation timestamp:
10/31/2012 1:51:43 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
1536:C9Y6j5Z9KczMZEKIUNPHvwDdKCqN9qzOXqcPAd:qY6FKcuPehqN9qzOX

Entry address:
0x67F2

Entry point:
E8, 21, 06, 00, 00, E9, 37, FD, FF, FF, FF, 25, 68, 81, 40, 00, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, A4, E0, 40, 00, 33, C5, 50, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D, 45, F4, 64, A3, 00, 00, 00, 00, C3, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, A4, E0, 40, 00, 33, C5, 50, 89, 65, F0, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D, 45, F4, 64, A3, 00, 00, 00, 00, C3, 50, 64, FF, 35, 00, 00, 00...
 
[+]

Entropy:
5.3323

Code size:
28 KB (28,672 bytes)

The file elevatedshell.exe has been discovered within the following program.

3Connect  by 3 Mobile Broadband
Publisher's description - “You can use your 3Connect dashboard to connect to the internet once you've plugged in your dongle. Your dashboard has some other features that will help you get the best out of your Mobile Broadband.”
www.three.co.uk/dashboardstartlink
20% remove it
 
Powered by Should I Remove It?

Scan elevatedshell.exe - Powered by Reason Core Security