poreg64.exe

Pelles C for Windows

Per Orinius

This is installed with Pelles C for Windows (remove only).
Publisher:
Pelle Orinius  (signed by Per Orinius)

Product:
Pelles C for Windows

Description:
Pelles Registry Editor

Version:
6.50.0

MD5:
c9504d181afe45962c2d881975c51a44

SHA-1:
7d573bd5358fa261dbb218954cc802ad775bd5d8

SHA-256:
8a08308cda4f0c29b6c80254c607618c01825460727cac31e7b90712dab17ae9

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/13/2017 12:51:44 AM UTC  (today)

File size:
145.2 KB (148,648 bytes)

Product version:
6.50

Copyright:
Copyright © Pelle Orinius 2002-2011

Original file name:
POREG.EXE

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\pellesc\bin\poreg64.exe

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
4/30/2010 11:21:01 PM

Valid to:
5/1/2012 11:52:39 AM

Subject:
E=pelle@smorgasbordet.com, CN=Per Orinius, OU=StartCom Verified Certificate Member, L=Stockholm, S=Stockholms, C=SE, Description=188892-g02RZJk7FwL969zw

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
012F

File PE Metadata
Compilation timestamp:
4/16/2011 10:17:36 AM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
2.50

CTPH (ssdeep):
3072:2BknU+ToaF2uCx8ZLeq+tuiJXJxXRd7DPRHqRGDKIwff:CkndToaFE8RepRdDXDXRHqF

Entry address:
0xA9F0

Entry point:
53, 56, 48, 81, EC, 88, 00, 00, 00, B9, 00, 00, 00, 02, E8, 8D, 26, 00, 00, 48, 89, 05, B6, C8, 00, 00, E8, 01, 0A, 00, 00, 85, C0, 74, 09, E8, 38, 04, 00, 00, 85, C0, 75, 0F, B9, 01, 00, 00, 00, E8, 5A, 10, 00, 00, E9, B8, 00, 00, 00, E8, 60, 10, 00, 00, E8, 9B, 10, 00, 00, E8, B6, 15, 00, 00, E8, 91, 16, 00, 00, 48, 8D, 1D, 2A, B6, 00, 00, 48, 8D, 05, 23, B6, 00, 00, 48, 39, C3, 73, 12, FF, 13, 48, 83, C3, 08, 48, 8D, 05, 11, B6, 00, 00, 48, 39, C3, 72, EE, C7, 44, 24, 5C, 00, 00, 00, 00, 48, 8D, 4C, 24...
 
[+]

Entropy:
5.9354

Code size:
65 KB (66,560 bytes)

The file poreg64.exe has been discovered within the following program.

www.smorgasbordet.com/pellesc
About 4% of users remove it
 
Powered by Should I Remove It?

Scan poreg64.exe - Powered by Reason Core Security