ppmon64.exe

LESUEUR JEAN-PIERRE VINCENT

This is installed with PhrozenSoft VirusTotal Uploader version 2.2.
Publisher:
PhrozenSoft  (signed by LESUEUR JEAN-PIERRE VINCENT)

Version:
1.0.0.0

MD5:
ef5c490b0ae1dc7adc25ed3d400db540

SHA-1:
70a3cb1e77db6e788b445938b8bcc5a5829b7688

SHA-256:
c170d0042fa795231f8abf85417d17c4708bb42fe90f97788e96cec0b012d969

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 7:24:16 PM UTC  (today)

File size:
336.5 KB (344,584 bytes)

Product version:
1.0.0.0

Copyright:
phrozensoft.com

Trademarks:
phrozensoft.com

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\roaming\phrozensoft\pvtuploader\ppmon64.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
7/18/2013 2:00:00 AM

Valid to:
7/19/2014 1:59:59 AM

Subject:
CN=LESUEUR JEAN-PIERRE VINCENT, O=LESUEUR JEAN-PIERRE VINCENT, STREET=12 Bis rue de la muette, L=Maisons Laffitte, S=Yvelines, PostalCode=78600, C=FR

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00B1A4D9D55C68FA3452E8826B8894ABDC

File PE Metadata
Compilation timestamp:
4/13/2013 3:32:46 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
3072:CbfeH/qT/+SgnEY2lA5wKSw5HmgSbTK9Bgx90Y0SZ8+QC1lgzv6yr:GWH/YCESBGgN9uISfQiE

Entry address:
0x28930

Entry point:
55, 48, 83, EC, 30, 48, 8B, EC, 48, C7, 45, 20, 00, 00, 00, 00, 48, 89, 6D, 28, 90, 48, 8D, 0D, 44, CA, FF, FF, E8, FF, 44, FE, FF, 90, 90, 48, 8D, 0D, F2, 00, 00, 00, B2, 01, E8, 4F, BD, FF, FF, 48, 8B, 05, 60, 48, 00, 00, C6, 00, 01, 48, 8D, 0D, 46, EA, 00, 00, C7, C2, 01, 00, 00, 00, E8, 73, CF, FD, FF, 48, 8D, 0D, 3C, EA, 00, 00, C7, C2, 02, 00, 00, 00, E8, 61, CF, FD, FF, 48, 8B, 0D, 2A, EA, 00, 00, E8, 65, 40, FF, FF, 48, 63, C0, 48, 89, 05, 0B, EA, 00, 00, 48, 8D, 4D, 20, E8, 52, C6, FF, FF, 48, 8D...
 
[+]

Entropy:
5.7357

Code size:
159 KB (162,816 bytes)

The file ppmon64.exe has been discovered within the following program.

www.phrozensoft.com
About 7% of users remove it
 
Powered by Should I Remove It?

Scan ppmon64.exe - Powered by Reason Core Security