pcmaticrt.exe

Super Shield Realtime Protection

P.C. Pitstop LLC

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘PC Matic’.
Publisher:
PC Pitstop  (signed by P.C. Pitstop LLC)

Product:
Super Shield Realtime Protection

Description:
PC Matic Super Shield Super Shield

Version:
2.0.0.9

MD5:
a8349001b34693247669ae6ae6dc0b9d

SHA-1:
d9140c0fd5eb910db82a1501975d7f274173f9b8

SHA-256:
2826cd7ead54ad17e0bd3bec1f459885d393a50a09889c8ddab10ae8e0a61011

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 4:38:11 AM UTC  (today)

File size:
2 MB (2,144,064 bytes)

Product version:
2.0.0.9

Copyright:
2017 (c) PC Pitstop. All rights reserved.

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\pcpitstop\super shield\pcmaticrt.exe

Digital Signature
Authority:
thawte, Inc.

Valid from:
2/16/2015 7:00:00 PM

Valid to:
2/19/2017 6:59:59 PM

Subject:
CN=P.C. Pitstop LLC, OU=SECURE APPLICATION DEVELOPMENT, O=P.C. Pitstop LLC, L=Dakota Dunes, S=South Dakota, C=US

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
77839F6B3495BDFC0655103349051160

File PE Metadata
Compilation timestamp:
1/13/2017 1:50:27 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x3B76B

Entry point:
E8, 13, 0A, 01, 00, E9, 78, FE, FF, FF, CC, CC, CC, 68, 10, B8, 43, 00, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, 68, AA, 47, 00, 31, 45, FC, 33, C5, 50, 89, 65, E8, FF, 75, F8, 8B, 45, FC, C7, 45, FC, FE, FF, FF, FF, 89, 45, F8, 8D, 45, F0, 64, A3, 00, 00, 00, 00, C3, 8B, 4D, F0, 64, 89, 0D, 00, 00, 00, 00, 59, 5F, 5F, 5E, 5B, 8B, E5, 5D, 51, C3, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8B, 07, 83, F8, FE, 74, 0D, 8B, 4F, 04, 03...
 
[+]

Entropy:
4.2921

Code size:
404.5 KB (414,208 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
PC Matic

Command:
C:\Program Files\pcpitstop\super shield\pcmaticrt.exe


Scan pcmaticrt.exe - Powered by Reason Core Security