GSBootSvc.exe

GSBootSvc

Geek Squad

Publisher:
Geek Squad  (signed and verified)

Product:
GSBootSvc

Description:
MRI Boot Service

Version:
5.5.1.790

MD5:
250a9c8b61a6f3713c308140328c660b

SHA-1:
f55ac9e22d13ff672c1094f1253b36aa7a597fcb

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/26/2024 4:14:18 PM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Packed/PECompact
7.1.1

K7 AntiVirus
Virus
13.184.13741

File size:
47.6 KB (48,704 bytes)

Product version:
5.5.1.790

Copyright:
Confidential Trade Secret of ©2004-2011 Best Buy Enterprise Services, Inc. For internal use only.

Original file name:
GSBootSvc.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Documents and Settings\{user}\Application data\geek squad\customizer\gsbootsvc.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
8/25/2009 8:00:00 PM

Valid to:
10/20/2012 7:59:59 PM

Subject:
CN=Geek Squad, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Geek Squad, L=Richfield, S=Minnesota, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
44980722CAD26153548BCFFFE3B23D73

File PE Metadata
Compilation timestamp:
1/13/2011 4:42:23 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
9.0

CTPH (ssdeep):
768:KfAv6jr5aIM5BFJwGSieX9oWKa9qZHyGS2MUTaCpVaqSCq8CG3dbL6fbCaMms:KtaLN2GSNNjbq0GS2M9CpVwoCGtWCaDs

Entry address:
0x68E8

Entry point:
B8, 58, A2, 41, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, 9E, 45, 8B, F9, DA, 93, 3F, 37, 5E, 68, 09, 7E, 38, 1F, 74, 24, 5F, 36, 23, B5, 62, 06, AB, 6D, AD, CD, A9, 92, 44, 09, D2, 1B, E3, 15, 69, DA, 9E, 9F, F3, 45, 83, 80, 36, 49, 4E, AC, 20, 25, 3A, DA, 46, 94, 2B, 6C, 66, 64, 60, 9D, A5, 52, 16, AD, B9, 6E, 52, 25, 2A, F0, 45, 99, 45, 0C, 98, 94, EC, 99, 05, F2, FC, 80, F5, 44, EF, 80, 2E, 8C, 72, A3, 70, D9, F0, 94, DB...
 
[+]

Entropy:
7.8451

Packer / compiler:
PECompact v2

Code size:
63 KB (64,512 bytes)

Scan GSBootSvc.exe - Powered by Reason Core Security