PPTBC.EXE

Protector Plus 2000 for Windows

Proland Softwares Private Limited

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Protector Plus Taskbar Control’.
Publisher:
Proland Software   (signed by Proland Softwares Private Limited)

Product:
Protector Plus 2000 for Windows

Description:
Protector Plus 2000 for Windows System tray program

Version:
9, 0, 0, 2

MD5:
2ab9ff1a36c4480418cd01cb64e7fc9b

SHA-1:
4400394b21d1c443471792feed148b43e1441d96

SHA-256:
1bc98d1cfe179944148dd3ff691171fc94effe91e16ab1c6041a87f4259a53c4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 2:53:03 AM UTC  (today)

File size:
1.6 MB (1,660,560 bytes)

Product version:
9, 0, 0, 2

Copyright:
(c) Proland Software, 1991 - 2012

Trademarks:
Protector Plus

Original file name:
PPTBC.EXE

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
2/3/2012 1:00:00 AM

Valid to:
2/22/2013 12:59:59 AM

Subject:
CN=Proland Softwares Private Limited, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Proland Softwares Private Limited, L=Bangalore, S=Karnakata, C=IN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
60904A0573CF4C5EABC6A9995B79FB1D

File PE Metadata
Compilation timestamp:
7/30/2012 1:19:52 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
12288:Sa8SRoXPFjD0steYLY33wqtTEk8YkNNwU04LPq9237U0ftYul8JeTTT+MS:SaoJL96wskNNwU04I301F8JeTTTI

Entry address:
0x702A0

Entry point:
48, 83, EC, 28, E8, F7, D4, 00, 00, 48, 83, C4, 28, E9, 0E, FD, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 48, 83, EC, 38, 48, C7, 44, 24, 20, 00, 00, 00, 00, E8, 8E, D5, 00, 00, 48, 83, C4, 38, C3, CC, CC, CC, CC, CC, CC, CC, CC, CC, 48, 8B, C1, 0F, B7, 10, 48, 83, C0, 02, 66, 85, D2, 75, F4, 48, 2B, C1, 48, D1, F8, 48, 83, E8, 01, C3, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 66, 66, 66, 90, 66, 66, 66, 90, 66, 90, 48, 8B, C1, 48, F7, D9, 48, A9, 07, 00, 00, 00, 74, 0F, 66, 90...
 
[+]

Code size:
551 KB (564,224 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Protector Plus Taskbar Control

Command:
C:\protec~1\pptbc.exe


Scan PPTBC.EXE - Powered by Reason Core Security