PPTBC.EXE

Protector Plus for Windows

Proland Software Private Limited

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Protector Plus Taskbar Control’.
Publisher:
Proland Software   (signed by Proland Software Private Limited)

Product:
Protector Plus for Windows

Description:
Protector Plus for Windows System tray component

Version:
8, 0, 79, 4

MD5:
1bf46e1b27d48f5332b2de31fee73963

SHA-1:
ce0db1eb3a0b770d482a9b09c968e4ee758aae86

SHA-256:
980e3ce76d757db43fcb178f52671c695c9d95d4c7d2b7ab673cb2d8c7e48405

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 1:10:02 AM UTC  (today)

File size:
2.4 MB (2,550,088 bytes)

Product version:
8, 0, 79, 4

Copyright:
(c) Proland Software, 1991 - 2015

Trademarks:
Protector Plus

Original file name:
PPTBC.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
4/28/2014 5:00:00 PM

Valid to:
4/28/2015 4:59:59 PM

Subject:
CN=Proland Software Private Limited, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Proland Software Private Limited, L=Bangalore, S=India, C=IN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5A8768E56756AAEE2A0A28540265B0E4

File PE Metadata
Compilation timestamp:
3/9/2015 5:11:48 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:d26w3f30A1FJhkFcs4kpHjI0GbisDmU6y7iM0Mw4d3QHIhuP:d26w8QkFcKDRUDmU6y2M0Mw4d3QHIE

Entry address:
0x24881

Entry point:
55, 8B, EC, 6A, FF, 68, 38, 96, 44, 00, 68, 10, 39, 42, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, 00, 43, 44, 00, 33, D2, 8A, D4, 89, 15, 10, 29, 46, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, 0C, 29, 46, 00, C1, E1, 08, 03, CA, 89, 0D, 08, 29, 46, 00, C1, E8, 10, A3, 04, 29, 46, 00, 6A, 01, E8, 3A, 36, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, C3, 00, 00, 00, 59, E8, 5B, 24, 00, 00, 85, C0, 75, 08, 6A, 10, E8, B2, 00, 00, 00, 59, 33, F6, 89, 75...
 
[+]

Entropy:
4.1493

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
268 KB (274,432 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Protector Plus Taskbar Control

Command:
C:\protec~1\pptbc.exe


Scan PPTBC.EXE - Powered by Reason Core Security