netmodemmonitor.exe

NetModem

PC Micro Systems Inc.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘NetModem Client Monitor’.
Publisher:
PC Micro  (signed by PC Micro Systems Inc.)

Product:
NetModem

Description:
NetModem Client Monitor

Version:
3,6,1,0

MD5:
8bf13b5adc4961693fa3d20d539994ad

SHA-1:
db6c6c86c09812abb4c5f6fbfbaa7cf873054c94

SHA-256:
a3ad8381a2a6e3b51e60748595108a3799414a16839b9c984cd004fe7ecd3f7c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 10:22:34 AM UTC  (today)

File size:
122.8 KB (125,768 bytes)

Product version:
3,6,1,0

Copyright:
Copyright © 1997-2009 PC Micro Systems, Inc. and Odin SW.

Trademarks:
NetModem is a trademark of PC Micro Systems, Inc.

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\netmodem\client\netmodemmonitor.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
3/19/2008 3:15:10 PM

Valid to:
3/19/2009 3:15:10 PM

Subject:
E=support@pcmicro.com, CN=PC Micro Systems Inc., O=PC Micro Systems Inc., C=US

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
01000000000118C6A477F8

File PE Metadata
Compilation timestamp:
3/19/2008 9:00:38 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
3072:I27B6Iz6UCqaaWScTTVs9hscNHBHrOyfiwUscsG2oVW:IcBRmN9fO/jNHpOaiwUaoVW

Entry address:
0xBFE0

Entry point:
48, 83, EC, 28, E8, C7, 05, 00, 00, 48, 83, C4, 28, E9, BE, FC, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 48, 89, 5C, 24, 08, 48, 89, 6C, 24, 10, 48, 89, 74, 24, 18, 48, 89, 7C, 24, 20, 41, 54, 48, 83, EC, 20, 4D, 8B, 51, 38, 48, 8B, F2, 4D, 8B, E0, 41, 8B, 02, 48, 8B, E9, 49, 8B, D1, 48, 03, C0, 48, 8B, CE, 49, 8B, F9, 49, 8D, 5C, C2, 04, 4C, 8B, C3, E8, 2D, 06, 00, 00, F6, 45, 04, 66, 44, 8B, 1B, 75, 06, 41, 83, E3, 01, EB, 04, 41, 83, E3, 02, 45, 85, DB, 74, 13, 4C, 8B, CF, 4D, 8B...
 
[+]

Entropy:
5.3951

Code size:
46.5 KB (47,616 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
NetModem Client Monitor

Command:
C:\Program Files\netmodem\client\netmodemmonitor.exe


Scan netmodemmonitor.exe - Powered by Reason Core Security