ProcessAnalyzer.exe

Geek Squad MRI Toolset

Geek Squad, Inc

Publisher:
Geek Squad  (signed by Geek Squad, Inc)

Product:
Geek Squad MRI Toolset

Description:
MRI Process Analyzer

Version:
5.10.1.2230

MD5:
17e88d53bff7afb9df33a20e9998da25

SHA-1:
f07a03d0d6b2e3f8ca811a958e6a37a7f3552ed5

SHA-256:
692ea293961f9b711efb8c94f8883036809858af863ad7aa04e0841cd11d52cd

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
2/25/2025 10:13:17 AM UTC  (today)

File size:
119.2 KB (122,024 bytes)

Product version:
5.10.1.2230

Copyright:
Confidential Trade Secret of ©2004-2015 Best Buy Enterprise Services, Inc. For internal use only.

Original file name:
ProcessAnalyzer.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\logmein rescue applet\lmir0001.tmp\toolset\mri\bde\mri\processanalyzer.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
8/22/2012 7:00:00 PM

Valid to:
10/20/2015 6:59:59 PM

Subject:
CN="Geek Squad, Inc", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Geek Squad, Inc", L=Richfield, S=Minnesota, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
17B0F46F91056186FDA5574552E97B6A

File PE Metadata
Compilation timestamp:
10/8/2015 3:16:34 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
1536:maDCXOdbnirI+hH0UfBbUTx4dVAVO0qabkIajQUsIzNfO08REhHhCpZ/aqq:/KOdbOH0URUTOHA54IajQqzBBHQpZCqq

Entry address:
0x1000

Entry point:
B8, 5C, D0, 46, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, 6F, 4D, 80, D9, 42, AC, A5, 0D, F7, D0, 58, F9, 3A, 3F, 9D, 3D, 7B, C5, 74, CA, 82, 03, E3, FD, CF, 70, 1A, 92, E7, 05, 78, 16, 5D, EB, FB, 06, 62, 70, 88, CD, 46, 57, 37, 64, A2, 2F, 36, 61, DC, FE, 10, 06, 54, C8, 06, 4E, FD, 11, AD, 1F, 83, 9B, 74, E9, 14, 29, B8, E5, F2, F1, B5, 2D, B4, 70, 76, 5E, 56, B5, 09, E4, 3A, 9F, 58, F0, 1C, F3, F4, E8, C1, 62, 4C, DF, 41...
 
[+]

Entropy:
7.5400

Packer / compiler:
PECompact v2

Code size:
140.5 KB (143,872 bytes)

Scan ProcessAnalyzer.exe - Powered by Reason Core Security