mudramouse_lm.exe

Leap Motion Inc

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Mudra Mouse’.
Publisher:
Leap Motion Inc  (signed and verified)

MD5:
08a1718c096849721193405f4e999246

SHA-1:
9f59016ada0157a03757446b44520bbd3fd327e6

SHA-256:
826f6bd4d3a6099e0d8d8975508238d71f48f3534467db95bf5087feabdb2af4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 9:09:04 AM UTC  (today)

File size:
5.5 MB (5,742,400 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\airspaceapps\mudramouse\mudramouse_lm.exe

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
4/13/2014 8:00:00 PM

Valid to:
5/26/2015 8:00:00 AM

Subject:
CN=Leap Motion Inc, O=Leap Motion Inc, L=San Francisco, S=California, C=US

Issuer:
CN=DigiCert High Assurance Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0DF9B49B868C4268C57AF7BC4ED165AC

File PE Metadata
Compilation timestamp:
12/18/2014 7:18:22 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
24576:qD6dmJBiYUkEQcQxkC1qxnl3oTHgr4LRtc9XXXXXLecesc4AMgtjl3Nf0JM:qOdN2dhqxnl3NcQecesc4AMgtjl3Nfp

Entry address:
0x29000

Entry point:
EB, 28, B5, 7D, 7F, FB, AA, 55, F7, 81, 0B, 1C, 74, BD, 18, B9, 38, EB, 1E, 90, 32, 61, 00, 49, 6D, AF, F4, 4D, 9D, B7, F5, A0, AF, 79, E5, BA, 23, 27, 34, 6B, 5E, B5, A1, 53, 90, 42, 00, 35, 4E, 08, 0F, A6, 05, 00, 90, 42, 00, FF, E0, 36, 39, 5D, 45, 92, 0A, FE, E4, 84, EF, 58, 18, BE, 5A, CF, 55, 59, E5, 8E, C3, C4, F5, 2D, B5, 3C, 08, 0F, A6, B9, B8, 77, 7F, E1, 81, F5, BB, 9F, 10, C0, C0, F5, 5E, 7C, 13, 7E, 78, 21, 4E, 2A, BC, E8, 15, BB, 2D, 05, 33, C0, 50, 50, B8, 24, 50, 4C, 00, 50, B8, 41, 51, 4C...
 
[+]

Entropy:
3.1093

Code size:
76.5 KB (78,336 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Mudra Mouse

Command:
"C:\users\{user}\appdata\local\airspaceapps\mudramouse\mudramouse_lm.exe"


Scan mudramouse_lm.exe - Powered by Reason Core Security