Gaming Mouse.exe

Gaming Mouse

Areson Technology

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘AFXLM0417 Configuration’.
Publisher:
Areson  (signed by Areson Technology)

Product:
Gaming Mouse

Version:
1.0.0.1

MD5:
9910ed6e0271f2ad5f9ab17f2693708a

SHA-1:
f217b7bc892be18cc730367cd15ba38473233e4a

SHA-256:
36936b411c692c325e81d83337370ad1e5ef2c8e65fab5a9db335d4d48c78c29

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
6/3/2024 9:08:26 AM UTC  (today)

File size:
10.3 MB (10,847,856 bytes)

Product version:
1.0.0.1

Original file name:
Gaming Mouse.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\afx\afxlm0417 configuration\gaming mouse.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
8/10/2015 8:00:00 AM

Valid to:
10/9/2018 7:59:59 AM

Subject:
CN=Areson Technology, O=Areson Technology, L=New Taipei City, S=Taiwan, C=TW

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
6B92E97E5CCBE330A04C562CE782AA6F

File PE Metadata
Compilation timestamp:
11/1/2016 11:18:59 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

CTPH (ssdeep):
196608:nWUfO4RAdnWs14sFAi3aSZ+IrSXzkCBq7GYCG1BjmBDphUkGbyPVFLOyomFHKnPk:WUWJnWs+aZ+IrYz5BtnGmekGedFJ

Entry address:
0x82718

Entry point:
E8, 5F, 0C, 00, 00, E9, 8E, FE, FF, FF, 3B, 0D, 24, 25, 4C, 00, F2, 75, 02, F2, C3, F2, E9, 9F, 06, 00, 00, 55, 8B, EC, FF, 75, 08, E8, 64, A2, FD, FF, 59, 5D, C3, 55, 8B, EC, 8B, 45, 08, 56, 8B, 48, 3C, 03, C8, 0F, B7, 41, 14, 8D, 51, 18, 03, D0, 0F, B7, 41, 06, 6B, F0, 28, 03, F2, 3B, D6, 74, 19, 8B, 4D, 0C, 3B, 4A, 0C, 72, 0A, 8B, 42, 08, 03, 42, 0C, 3B, C8, 72, 0C, 83, C2, 28, 3B, D6, 75, EA, 33, C0, 5E, 5D, C3, 8B, C2, EB, F9, E8, 8C, 10, 00, 00, 85, C0, 75, 03, 32, C0, C3, 64, A1, 18, 00, 00, 00, 56...
 
[+]

Entropy:
7.8007  (probably packed)

Code size:
640.5 KB (655,872 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
AFXLM0417 Configuration

Command:
"C:\Program Files\afx\afxlm0417 configuration\gaming mouse.exe" \hide


Scan Gaming Mouse.exe - Powered by Reason Core Security