PrintCtrl.exe

PrintCtrl

ActMask Group Co., Ltd

It runs as a separate (within the context of its own process) windows Service named “Printer Control”.
Publisher:
ActMask Co.,Ltd - HTTP://WWW.ALL2PDF.COM  (signed by ActMask Group Co., Ltd)

Product:
PrintCtrl

Description:
PrintCtrl 64bit

Version:
1, 0, 4, 8

MD5:
d39dc74dab48d20b27591090cab1dc90

SHA-1:
846e7e9afbf5f17abd20811d4d00b1aeebb45f19

SHA-256:
c039481a578fdaf58b7df53e240bfc198c20c0db68aa7631bca3820ab1cba562

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
3/7/2017 12:42:24 PM UTC  (seven months ago)

File size:
124.5 KB (127,456 bytes)

Product version:
1, 0, 4, 8

Copyright:
Copyright ? 1998-2011 ActMask Co.,Ltd - HTTP://WWW.ALL2PDF.COM

Original file name:
PrintCtrl.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Windows\System32\printctrl.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
7/18/2013 4:30:00 AM

Valid to:
7/19/2014 4:29:59 AM

Subject:
CN="ActMask Group Co., Ltd", O="ActMask Group Co., Ltd", STREET="Chase Business Center, 39-41 Chase Side", L=London, S=England, PostalCode=N14 5BP, C=GB

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
04B86CE0892C1FA76A07415ABB69419E

File PE Metadata
Compilation timestamp:
10/21/2012 9:06:16 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

Entry address:
0x70B0

Entry point:
48, 8B, C4, 48, 81, EC, A8, 00, 00, 00, 48, 89, 58, 18, 48, 89, 78, 20, 48, 8D, 48, 88, FF, 15, 64, C2, 00, 00, 90, FF, 15, 55, C2, 00, 00, 48, 8B, C8, 33, D2, 41, B8, 94, 00, 00, 00, FF, 15, 14, C2, 00, 00, 48, 8B, D8, 48, 85, C0, 75, 0A, B8, FF, 00, 00, 00, E9, 62, 02, 00, 00, C7, 00, 94, 00, 00, 00, 48, 8B, C8, FF, 15, 1B, C2, 00, 00, 85, C0, 75, 1E, FF, 15, 19, C2, 00, 00, 48, 8B, C8, 4C, 8B, C3, 33, D2, FF, 15, BB, C1, 00, 00, B8, FF, 00, 00, 00, E9, 31, 02, 00, 00, 8B, 43, 10, 89, 05, 7C, 81, 01, 00...
 
[+]

Entropy:
6.4055

Code size:
70 KB (71,680 bytes)

Service
Display name:
Printer Control

Type:
Win32OwnProcess


Scan PrintCtrl.exe - Powered by Reason Core Security