pcpitstoprtservice.exe

PC Pitstop SuperShield

P.C. Pitstop LLC

It runs as a separate (within the context of its own process) windows Service named “PCPitstop Realtime”.
Publisher:
PC Pitstop LLC  (signed by P.C. Pitstop LLC)

Product:
PC Pitstop SuperShield

Description:
PC Pitstop SuperShield Service

Version:
1, 0, 0, 27

MD5:
3b9f3a375dbaf715e28253d5d89b4dfe

SHA-1:
02e99eef4ef78b76a392fd19f8cff70caf4db14f

SHA-256:
7f186748861d42acb015452c2fa0af237fa4c5267e931f62100246094f13a3d4

Scanner detections:
2 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/18/2024 11:15:44 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Dropper.Gen
7.11.30.172

Dr.Web
riskware program Program.Unwanted.685
9.0.1.05190

File size:
3.7 MB (3,827,896 bytes)

Product version:
1, 0, 0, 27

Copyright:
Copyright (C) 2012 PC Pitstop LLC

Original file name:
NTService.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\pcpitstop\pc maticrt\pcpitstoprtservice.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
1/3/2011 6:00:00 PM

Valid to:
2/20/2013 5:59:59 PM

Subject:
CN=P.C. Pitstop LLC, OU=SECURE APPLICATION DEVELOPMENT, O=P.C. Pitstop LLC, L=Dakota Dunes, S=South Dakota, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
38EE0815807BA985FBF99D5F3E5ECAB5

File PE Metadata
Compilation timestamp:
7/16/2012 4:08:04 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
9.0

CTPH (ssdeep):
49152:cGPWeHeC1T6gGatV8x0B8AW6C5GkcX5lYT99ahx3ZHJjCLiM3UG7nzPKGK6zosFe:eeHt1T6gGOv8AW6C7za7ZHWRKG4smL

Entry address:
0x27DBFF

Entry point:
E8, F2, 89, 01, 00, E9, A4, FE, FF, FF, 8B, FF, 55, 8B, EC, 8B, 55, 0C, 56, 8B, 75, 08, 57, 0F, B6, 06, 8D, 48, BF, 46, 83, F9, 19, 77, 03, 83, C0, 20, 0F, B6, 0A, 8D, 79, BF, 42, 83, FF, 19, 77, 03, 83, C1, 20, 85, C0, 74, 04, 3B, C1, 74, DA, 5F, 2B, C1, 5E, 5D, C3, 8B, FF, 55, 8B, EC, 83, EC, 10, 53, FF, 75, 10, 8D, 4D, F0, E8, CA, C6, FF, FF, 33, DB, 39, 5D, 08, 75, 2E, E8, 15, 70, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, A7, F8, FF, FF, 83, C4, 14, 38, 5D, FC, 74, 07, 8B, 45, F8, 83, 60...
 
[+]

Entropy:
6.4678

Code size:
2.8 MB (2,971,648 bytes)

Service
Display name:
PCPitstop Realtime

Description:
This service handles PC Pitstop's SuperShield protection

Type:
Win32OwnProcess


Scan pcpitstoprtservice.exe - Powered by Reason Core Security