netserialmon.exe

PC Micro Systems Inc.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘NetSerial Monitor’.
Publisher:
PC Micro Systems Inc.  (signed and verified)

MD5:
95081c96df1d0ca2c2df924e0182696c

SHA-1:
ddccb8d2c931727e2e13f569c29814f027391612

SHA-256:
a56f20b6d4997888dcd879f396ed7914902761129bc97b9272e4958522dc6e51

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
7/5/2025 8:50:25 PM UTC  (today)

File size:
95.8 KB (98,128 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\sealevel systems\sealink\netserialmon.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
4/30/2010 12:51:59 AM

Valid to:
4/30/2012 12:51:57 AM

Subject:
E=support@pcmicro.com, CN=PC Micro Systems Inc., O=PC Micro Systems Inc., L=Thousand Oaks, S=CA, C=US

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
010000000001284BC49063

File PE Metadata
Compilation timestamp:
10/6/2010 1:54:54 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
1536:xEvkxtbOsDoGp8RJ+Gwkzf64g3g9O7sDkgQ4GsC++oYKz:CuOsDoP0GwkDk3g9O7s4fP2+of

Entry address:
0x8F64

Entry point:
E8, 0B, 05, 00, 00, E9, 39, FD, FF, FF, CC, CC, 68, C7, 8F, 40, 00, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, 20, 00, 41, 00, 31, 45, FC, 33, C5, 89, 45, E4, 50, 89, 65, E8, FF, 75, F8, 8B, 45, FC, C7, 45, FC, FE, FF, FF, FF, 89, 45, F8, 8D, 45, F0, 64, A3, 00, 00, 00, 00, C3, 8B, 4D, E4, 33, CD, E8, C7, FB, FF, FF, E9, 7A, 02, 00, 00, FF, 74, 24, 10, FF, 74, 24, 10, FF, 74, 24, 10, FF, 74, 24, 10, 68, 89, 8B, 40, 00, 68, 20, 00, 41, 00, E8, 22, 05...
 
[+]

Entropy:
5.8037

Code size:
36.5 KB (37,376 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
NetSerial Monitor

Command:
"C:\Program Files\sealevel systems\sealink\netserialmon.exe"


Scan netserialmon.exe - Powered by Reason Core Security