pr2aq6eb.exe

FIM Speedway GP3

Protection Technology, Ltd.

It runs as a separate (within the context of its own process) windows Service named “FIM Speedway GP3 Drivers Auto Removal (pr2aq6eb)”.
Publisher:
Techland Sp.z o.o.  (signed by Protection Technology, Ltd.)

Product:
FIM Speedway GP3

Description:
FIM Speedway GP3 Drivers Auto Removal

Version:
2.09

MD5:
40d35f37cc0ef563234ace0cb0c20322

SHA-1:
5fb98ddc2539d5c35e7d61ba3e2ba254032a9f49

SHA-256:
92259bb88c508e8bd359e91d10fdc0bce37cffd7e545c9defc5e3a16165e2b7c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 12:35:05 AM UTC  (today)

File size:
405.4 KB (415,104 bytes)

Product version:
5.00.008.004

Copyright:
© Techland Sp.z o.o.

Original file name:
pr2aq6eb.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Windows\System32\pr2aq6eb.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
11/30/2007 1:00:00 AM

Valid to:
12/19/2008 12:59:59 AM

Subject:
CN="Protection Technology, Ltd.", OU=Software Development, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Protection Technology, Ltd.", L=Moscow, S=Not present, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
71AC882230039EBD4BE273E53DB4F6A3

File PE Metadata
Compilation timestamp:
5/16/2008 12:12:00 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
6144:K0XF371JiSaUZQP4qKh8raAV2tEYZEHBxY1VJheO+BH/tniZe8NUwcbnNF7egDPe:3571JiBPDKmrSF

Entry address:
0x1AF42

Entry point:
E8, 06, 5A, 00, 00, E9, 16, FE, FF, FF, 55, 8B, EC, 53, 56, 8B, 75, 08, 33, DB, 39, 5D, 14, 57, 75, 10, 3B, F3, 75, 10, 39, 5D, 0C, 75, 12, 33, C0, 5F, 5E, 5B, 5D, C3, 3B, F3, 74, 07, 8B, 7D, 0C, 3B, FB, 77, 1B, E8, 97, 1B, 00, 00, 6A, 16, 5E, 89, 30, 53, 53, 53, 53, 53, E8, DB, 44, 00, 00, 83, C4, 14, 8B, C6, EB, D5, 39, 5D, 14, 75, 04, 88, 1E, EB, CA, 8B, 55, 10, 3B, D3, 75, 04, 88, 1E, EB, D1, 83, 7D, 14, FF, 8B, C6, 75, 0F, 8A, 0A, 88, 08, 40, 42, 3A, CB, 74, 1E, 4F, 75, F3, EB, 19, 8A, 0A, 88, 08, 40...
 
[+]

Code size:
252 KB (258,048 bytes)

Service
Display name:
FIM Speedway GP3 Drivers Auto Removal (pr2aq6eb)

Service name:
pr2aq6eb

Description:
This service automatically uninstalls FIM Speedway GP3 drivers after FIM Speedway GP3 is uninstalled. After the drivers are uninstalled, the service uninstalls itself as well. If FIM Speedway GP3 is r

Type:
Win32OwnProcess