rootcerts.exe

CopyAResources

Wrocklage Intermedia GmbH

This is installed with Aloaha PDF Saver.
Publisher:
Wrocklage Intermedia GmbH  (signed and verified)

Product:
CopyAResources

Version:
1.00.0006

MD5:
1da734f16cfa054f46f349e88f4b870a

SHA-1:
61a03a2d22689432c9eee0b6b95dcf978b972c38

SHA-256:
dc2c272c14493dea022f282589d5f25c22d127da11895f298cbf2010a38fa29e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 4:15:24 AM UTC  (today)

File size:
34.6 KB (35,464 bytes)

Product version:
1.00.0006

Trademarks:
Aloaha Software

Original file name:
CopyResources.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\wrocklage\rootcerts.exe

Digital Signature
Authority:
StartCom Ltd.

Valid from:
4/5/2013 11:42:01 AM

Valid to:
4/5/2015 5:32:50 PM

Subject:
E=info@wrocklage.de, CN=Wrocklage Intermedia GmbH, O=Wrocklage Intermedia GmbH, L=Ibbenbueren, S=Nordrhein-Westfalen, C=DE, Description=0xC3J0qHPGjDilu1

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
095B

File PE Metadata
Compilation timestamp:
8/25/2011 11:52:43 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
384:KNoGtoiqQIxX02r9sg7YXlY/NxGy3ItLHoc4dZy2TenYPLoVVPLLB00594l:DGtoPX0CWg7yY/rG0Itsm1VVPLLa059c

Entry address:
0x132C

Entry point:
68, C4, 13, 40, 00, E8, F0, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 48, 00, 00, 00, 00, 00, 00, 00, A7, EE, F0, E9, D0, 9E, 22, 4B, B4, B7, 6D, FF, 80, AF, C2, E3, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 43, 6F, 70, 79, 41, 6C, 6F, 61, 68, 61, 52, 65, 73, 6F, 75, 72, 63, 65, 73, 00, 48, 19, 36, 02, 00, 00, 00, 00, 06, 00, 00, 00, 98, 19, 40, 00, 01, 00, 00, 00, AC, 16, 40, 00, 00, 00, 00, 00, FF, FF, FF, FF, FF, FF, FF, FF, 00, 00, 00, 00, 00, 17, 40, 00, 08, 30, 40, 00...
 
[+]

Entropy:
5.4513

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
8 KB (8,192 bytes)

The file rootcerts.exe has been discovered within the following program.

Aloaha PDF Saver  by Wrocklage Intermedia GmbH
www.aloaha.com/wi-software-en/aloaha-pdf-saver.php
About 4% of users remove it
 
Powered by Should I Remove It?

Scan rootcerts.exe - Powered by Reason Core Security