PPINUPDT.EXE

Protector Plus for Windows

Proland Softwares Private Limited

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Protector Plus InstaUpdate’.
Publisher:
Proland Software Pvt Ltd.  (signed by Proland Softwares Private Limited)

Product:
Protector Plus for Windows

Version:
8, 0, 75, 1

MD5:
95b16a5435d8a00ed03d20d2fc18ee98

SHA-1:
013b5af900aff6f6457e210b15aea1fb7f39c1b9

SHA-256:
644b9a421a58b4d8b7380847c898f3d813e32132e07d3533162e92cef110a03c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 1:58:07 PM UTC  (today)

File size:
1.1 MB (1,173,096 bytes)

Product version:
8, 0, 75, 1

Copyright:
(c) Proland Software, 1991 - 2012

Trademarks:
Protector Plus

Original file name:
PPINUPDT.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
2/3/2012 2:00:00 AM

Valid to:
2/22/2013 1:59:59 AM

Subject:
CN=Proland Softwares Private Limited, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Proland Softwares Private Limited, L=Bangalore, S=Karnakata, C=IN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
60904A0573CF4C5EABC6A9995B79FB1D

File PE Metadata
Compilation timestamp:
12/5/2011 11:54:44 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0x38B0A

Entry point:
55, 8B, EC, 6A, FF, 68, 80, 96, 45, 00, 68, 58, 76, 43, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, FC, 52, 45, 00, 33, D2, 8A, D4, 89, 15, E0, 20, 48, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, DC, 20, 48, 00, C1, E1, 08, 03, CA, 89, 0D, D8, 20, 48, 00, C1, E8, 10, A3, D4, 20, 48, 00, 6A, 01, E8, 41, 2B, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, C3, 00, 00, 00, 59, E8, 82, 50, 00, 00, 85, C0, 75, 08, 6A, 10, E8, B2, 00, 00, 00, 59, 33, F6, 89, 75...
 
[+]

Entropy:
6.0110

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
336 KB (344,064 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Protector Plus InstaUpdate

Command:
C:\protec~1\ppinupdt.exe


Scan PPINUPDT.EXE - Powered by Reason Core Security