PDUpgrade.EXE

ProDoc

Thomson Reuters

Publisher:
Thomson Reuters  (signed and verified)

Product:
ProDoc

Description:
ProDoc Database Upgrade Utility

Version:
5.53

MD5:
d7a2902675154b5829398e9e8c98c5d3

SHA-1:
f5facc5e4151bd3f11f9b77c299beeb559cf4d70

SHA-256:
83b2d5fa7b2cc74ad75c006a7161b0268d16fed28516dd34b2dc5a367f3f13d8

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/5/2024 4:47:43 PM UTC  (today)

File size:
1.9 MB (1,957,680 bytes)

Product version:
5.53

Copyright:
Thomson Reuters

Original file name:
PDUpgrade.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\pdupgrade.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
4/10/2014 7:00:00 PM

Valid to:
4/11/2016 6:59:59 PM

Subject:
CN=Thomson Reuters, OU=Digital ID Class 3 - Microsoft Software Validation v2, OU=Legal, O=Thomson Reuters, L=Eagan, S=Minnesota, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1A1E81A4BC5075036614E95601416F1D

File PE Metadata
Compilation timestamp:
11/11/2010 3:40:30 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.50

CTPH (ssdeep):
24576:rqAOPZLxh13Iu1JXMCcoN2RuNq8KByObVK3Yg3EkjSaZ7YcCnjdwNnmFWvjHU+i+:rq5VJXyoN+Rbz5aadwNzg5S

Entry address:
0x98EC4

Entry point:
DB, E3, 31, C0, BB, AC, 49, 53, 00, 89, C1, E8, F4, A0, 04, 00, 09, C0, 74, 14, B8, 6C, 7C, 4C, 00, E8, 8E, AA, 04, 00, E8, A1, C7, 08, 00, B8, 00, 00, 00, 00, E8, 53, A6, FA, FF, 90, 90, 90, B8, 84, C0, D2, 00, E8, 76, 27, 00, 00, 89, C1, B8, 58, B9, D2, 00, E8, 6A, 27, 00, 00, 89, C3, 89, C8, E8, 9D, 01, 03, 00, 89, D8, E8, F6, B2, F6, FF, C3, 90, 56, 57, B8, 58, B9, D2, 00, E8, 4C, 27, 00, 00, 89, C7, B8, 78, C0, D2, 00, E8, 40, 27, 00, 00, 89, C6, B8, 7C, C0, D2, 00, E8, 34, 27, 00, 00, 89, C2, B8, 80...
 
[+]

Entropy:
6.3797

Code size:
1.1 MB (1,200,128 bytes)

Scan PDUpgrade.EXE - Powered by Reason Core Security