monitor.exe

BACK Monitor Application

Sunplus Innovation Technology Inc.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Toshiba Camera_Monitor’.
Publisher:
Sunplus Innovation Technology Inc.  (signed and verified)

Product:
BACK Monitor Application

Version:
2.3.2.21

MD5:
03d662e3fac1ad67d02fa655ced6b33c

SHA-1:
cf10044a44de0d9ec63d1f82183f067cc696fe05

SHA-256:
a20f77449bc41b325e41e54db6fb9ecb311b114043cd6f744461ae52cbb8f94d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 2:29:31 PM UTC  (today)

File size:
1.6 MB (1,698,680 bytes)

Product version:
2.3.2.21

Copyright:
CopyRight (C) 2010-2015

Original file name:
BACK.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\toshiba camera\monitor.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
11/27/2011 8:00:00 AM

Valid to:
12/6/2013 7:59:59 AM

Subject:
CN=Sunplus Innovation Technology Inc., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Sunplus Innovation Technology Inc., L=Hsinchu, S=Hsinchu, C=TW

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6D657D8F8000BA22EE6E6937D7F1B80C

File PE Metadata
Compilation timestamp:
1/8/2013 5:29:18 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

Entry address:
0x120DD8

Entry point:
E8, 20, C6, 00, 00, E9, 00, 00, 00, 00, 6A, 14, 68, 70, 06, 59, 00, E8, 32, 21, 00, 00, E8, AA, C7, 00, 00, 0F, B7, F0, 6A, 02, E8, B3, C5, 00, 00, 59, B8, 4D, 5A, 00, 00, 66, 39, 05, 00, 00, 40, 00, 74, 04, 33, DB, EB, 33, A1, 3C, 00, 40, 00, 81, B8, 00, 00, 40, 00, 50, 45, 00, 00, 75, EB, B9, 0B, 01, 00, 00, 66, 39, 88, 18, 00, 40, 00, 75, DD, 33, DB, 83, B8, 74, 00, 40, 00, 0E, 76, 09, 39, 98, E8, 00, 40, 00, 0F, 95, C3, 89, 5D, E4, E8, 9F, A9, 00, 00, 85, C0, 75, 08, 6A, 1C, E8, D0, 00, 00, 00, 59, E8...
 
[+]

Entropy:
6.4575

Code size:
1.3 MB (1,348,608 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Toshiba Camera_Monitor

Command:
C:\Program Files\toshiba camera\monitor.exe


Scan monitor.exe - Powered by Reason Core Security