Gaming Mouse.exe

Gaming Mouse

Areson Technology

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘AFPH0216 Configuration’.
Publisher:
Areson  (signed by Areson Technology)

Product:
Gaming Mouse

Version:
1.0.0.1

MD5:
1ea1a130d64123d503b313f723687254

SHA-1:
ff5716d13ee9bacab482784498f71275f7cc6f65

SHA-256:
dad3b4b84434cc45e462ec82172825de77e2b6e54a8ba1f1614334daef572591

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/20/2024 4:57:38 PM UTC  (today)

File size:
10.3 MB (10,840,688 bytes)

Product version:
1.0.0.1

Original file name:
Gaming Mouse.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\adx\afph0216 configuration\gaming mouse.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
8/10/2015 8:00:00 AM

Valid to:
10/9/2018 7:59:59 AM

Subject:
CN=Areson Technology, O=Areson Technology, L=New Taipei City, S=Taiwan, C=TW

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
6B92E97E5CCBE330A04C562CE782AA6F

File PE Metadata
Compilation timestamp:
10/21/2016 7:15:16 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

CTPH (ssdeep):
196608:HJ1lzvIxgnWs14sFAi3aSZ+IrSXzkCBq7GYCG1BjmBDphUkGbyPWFLOyomFHKnPh:p1B5nWs+aZ+IrYz5BtnGmekGeuFU

Entry address:
0x826BC

Entry point:
E8, 5B, 0C, 00, 00, E9, 8E, FE, FF, FF, 3B, 0D, 24, 25, 4C, 00, F2, 75, 02, F2, C3, F2, E9, 9F, 06, 00, 00, 55, 8B, EC, FF, 75, 08, E8, 60, A2, FD, FF, 59, 5D, C3, 55, 8B, EC, 8B, 45, 08, 56, 8B, 48, 3C, 03, C8, 0F, B7, 41, 14, 8D, 51, 18, 03, D0, 0F, B7, 41, 06, 6B, F0, 28, 03, F2, 3B, D6, 74, 19, 8B, 4D, 0C, 3B, 4A, 0C, 72, 0A, 8B, 42, 08, 03, 42, 0C, 3B, C8, 72, 0C, 83, C2, 28, 3B, D6, 75, EA, 33, C0, 5E, 5D, C3, 8B, C2, EB, F9, E8, 88, 10, 00, 00, 85, C0, 75, 03, 32, C0, C3, 64, A1, 18, 00, 00, 00, 56...
 
[+]

Entropy:
7.8004  (probably packed)

Code size:
640.5 KB (655,872 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
AFPH0216 Configuration

Command:
"C:\Program Files\adx\afph0216 configuration\gaming mouse.exe" \hide


Scan Gaming Mouse.exe - Powered by Reason Core Security