ProcessGovernor.exe

Process Lasso

Bitsum Technologies

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘ProcessGovernor’.
Publisher:
Bitsum Technologies  (signed and verified)

Product:
Process Lasso

Description:
Process Lasso core engine

Version:
3, 7, 0, 1

MD5:
2f104951a27cf31e6ab31c0a7ccfa78b

SHA-1:
faab8af2323b9dc2f09eab0aa0da134b871442ca

SHA-256:
4c7757ba24a35da79eafa730e4cc066f8b981bc2ea3b0aa0cef99c4d000c764e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 4:25:07 PM UTC  (today)

File size:
289 KB (295,952 bytes)

Product version:
3, 7, 0, 1

Copyright:
Copyright (C) 2009 Bitsum Technologies

Original file name:
ProcessGovernor.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\process lasso\processgovernor.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
9/30/2009 7:00:00 PM

Valid to:
10/1/2010 6:59:59 PM

Subject:
CN=Bitsum Technologies, O=Bitsum Technologies, STREET=1605 Allen Rd., L=Talbott, S=TN, PostalCode=37877, C=US

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
00FC594B2E2C30E2B41F4CA24B350BCA89

File PE Metadata
Compilation timestamp:
10/24/2009 11:07:43 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x249BC

Entry point:
48, 83, EC, 28, E8, 37, 59, 00, 00, 48, 83, C4, 28, E9, 56, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, 66, 66, 0F, 1F, 84, 00, 00, 00, 00, 00, 48, 8B, C1, 49, 83, F8, 08, 72, 53, 0F, B6, D2, 49, B9, 01, 01, 01, 01, 01, 01, 01, 01, 49, 0F, AF, D1, 49, 83, F8, 40, 72, 1E, 48, F7, D9, 83, E1, 07, 74, 06, 4C, 2B, C1, 48, 89, 10, 48, 03, C8, 4D, 8B, C8, 49, 83, E0, 3F, 49, C1, E9, 06, 75, 39, 4D, 8B, C8, 49, 83, E0, 07, 49, C1, E9, 03, 74, 11, 66, 66, 66, 90, 90, 48, 89, 11, 48, 83, C1, 08, 49, FF, C9, 75, F4...
 
[+]

Entropy:
6.1455

Code size:
215 KB (220,160 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
ProcessGovernor

Command:
C:\Program Files\process lasso\processgovernor.exe


Scan ProcessGovernor.exe - Powered by Reason Core Security