ElevateProcess.exe

Elevate

Overplay, Inc

This is installed with Overplay.
Publisher:
Overplay, Inc  (signed and verified)

Product:
Elevate

Description:
Elevate Process

Version:
1.0.0.0

MD5:
412e47b7541dd810dbfccb0bdf91a3e4

SHA-1:
4c0a4ffe05e1316e38eceac4a975138a6ec84c5a

SHA-256:
18eb91a29ef71007a1b0638f3a95b69f8675be0c129d7141daa82fb444cabea0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/6/2025 2:33:56 PM UTC  (today)

File size:
14.6 KB (14,928 bytes)

Product version:
1.0.0.0

Original file name:
ElevateProcess.exe

File type:
Executable application (Win64 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\overplay\elevateprocess.exe

Digital Signature
Signed by:

Authority:
Starfield Technologies, Inc.

Valid from:
1/18/2016 2:02:39 PM

Valid to:
1/18/2019 2:02:39 PM

Subject:
CN="Overplay, Inc", O="Overplay, Inc", L=Winter Park, S=Florida, C=US

Issuer:
CN=Starfield Secure Certificate Authority - G2, OU=http://certs.starfieldtech.com/repository/, O="Starfield Technologies, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
24F797EC124B2D75

File PE Metadata
Compilation timestamp:
12/5/2016 3:58:56 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
48.0

.NET CLR dependent:
Yes

Entry address:
0x33EE

Entry point:
4D, 5A, 90, 00, 03, 00, 00, 00, 04, 00, 00, 00, FF, FF, 00, 00, B8, 00, 00, 00, 00, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 80, 00, 00, 00, 0E, 1F, BA, 0E, 00, B4, 09, CD, 21, B8, 01, 4C, CD, 21, 54, 68, 69, 73, 20, 70, 72, 6F, 67, 72, 61, 6D, 20, 63, 61, 6E, 6E, 6F, 74, 20, 62, 65, 20, 72, 75, 6E, 20, 69, 6E, 20, 44, 4F, 53, 20, 6D, 6F, 64, 65, 2E, 0D, 0D, 0A, 24, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.2970

Code size:
5 KB (5,120 bytes)

The file ElevateProcess.exe has been discovered within the following program.

Overplay  by Overplay, Inc
About 4% of users remove it
 
Powered by Should I Remove It?

Scan ElevateProcess.exe - Powered by Reason Core Security