POSIGN.EXE

Pelles C för Windows

Per Orinius

This is installed with Pelles C for Windows (remove only).
Publisher:
Pelle Orinius  (signed by Per Orinius)

Product:
Pelles C för Windows

Description:
Pelles kodsignerare

Version:
6.50.0

MD5:
92a60dd32334ffb8afc18120e4842abf

SHA-1:
8420644c198fedd13f0eee0c07dc4fe048bd7ae5

SHA-256:
f08b14903410cb814088539b04bcf607dbaaf47e5bc6ed1398addb5fb892ac76

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/13/2017 2:43:09 PM UTC  (today)

File size:
66.7 KB (68,264 bytes)

Product version:
6.50

Copyright:
Copyright © Pelle Orinius 2006-2011

Original file name:
POSIGN.EXE

File type:
Executable application (Win32 EXE)

Language:
Swedish (Sweden)

Common path:
C:\Program Files\pellesc\bin\posign.exe

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
4/30/2010 11:21:01 PM

Valid to:
5/1/2012 11:52:39 AM

Subject:
E=pelle@smorgasbordet.com, CN=Per Orinius, OU=StartCom Verified Certificate Member, L=Stockholm, S=Stockholms, C=SE, Description=188892-g02RZJk7FwL969zw

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
012F

File PE Metadata
Compilation timestamp:
4/16/2011 10:03:14 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
2.50

CTPH (ssdeep):
1536:VKfi15k4rMeWcEwrqdjmkvrV/XAOAgMwOGoG:VbI4rLuwreSMh/XAOAgR

Entry address:
0x4110

Entry point:
55, 89, E5, 6A, FF, 68, F0, C3, 40, 00, 68, 88, 4D, 40, 00, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 83, EC, 0C, 53, 56, 57, 89, 65, E8, 68, 00, 00, 00, 02, E8, 90, 28, 00, 00, 59, A3, F4, E6, 40, 00, E8, 35, 0B, 00, 00, 85, C0, 75, 0D, 6A, 01, E8, AA, 06, 00, 00, 59, E9, 9B, 00, 00, 00, C7, 45, FC, 00, 00, 00, 00, E8, 38, 0E, 00, 00, E8, C3, 0E, 00, 00, E8, 0E, 0F, 00, 00, E8, 69, 13, 00, 00, E8, 04, 14, 00, 00, BB, 04, D9, 40, 00, 81, FB, 04, D9, 40, 00, 73, 0D, FF, 13, 83, C3, 04, 81, FB...
 
[+]

Entropy:
6.5350

Code size:
41 KB (41,984 bytes)

The file POSIGN.EXE has been discovered within the following program.

www.smorgasbordet.com/pellesc
About 4% of users remove it
 
Powered by Should I Remove It?

Scan POSIGN.EXE - Powered by Reason Core Security