tmrmon.exe

GUANGDONG SOMIC INDUSTRIAL CO.,LTD

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘TMRGMMouseRun’.
Publisher:
GUANGDONG SOMIC INDUSTRIAL CO.,LTD  (signed and verified)

Version:
1.0.0.104

MD5:
79c9169579ce39cb2308505ff695b221

SHA-1:
8935f1aefcecb5c6d4252e17cd77a3bd951ef6b5

SHA-256:
e8f98d5e172d4b4d0d3993981593bbd30b6d99657af5060dafb654ce16fe2ee8

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 11:21:48 PM UTC  (a few moments ago)

File size:
3 MB (3,196,752 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\jizz gaming mouse\magic lord\tmrmon.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/6/2013 8:00:00 AM

Valid to:
9/7/2014 7:59:59 AM

Subject:
CN="GUANGDONG SOMIC INDUSTRIAL CO.,LTD", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="GUANGDONG SOMIC INDUSTRIAL CO.,LTD", L=Guangzhou, S=Guangdong, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7F747551499EBEF614E6BE166EBF8825

File PE Metadata
Compilation timestamp:
10/21/2013 11:42:59 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:6DgxemT4SI70vP8pXk6fH47FscaTIjXO981Qi:6D8PfP8pXk6gBVvf

Entry address:
0x20E41C

Entry point:
55, 8B, EC, 83, C4, F0, 53, 56, B8, 20, 34, 60, 00, E8, A6, C8, DF, FF, 8B, 35, 60, A3, 61, 00, A1, 34, A5, 61, 00, 8B, 00, E8, FC, 8D, DF, FF, 50, 6A, 00, 68, 01, 00, 1F, 00, E8, 3F, E3, DF, FF, 85, C0, 75, 73, A1, 34, A5, 61, 00, 8B, 00, E8, DF, 8D, DF, FF, 50, 6A, FF, 6A, 00, E8, 31, E0, DF, FF, 8B, D8, 85, DB, 79, 05, E8, F6, 69, DF, FF, 8B, 06, E8, 3F, 2A, EC, FF, 8B, 06, 33, D2, E8, 72, 47, EC, FF, 8B, 06, C6, 40, 5B, 00, 8B, 0D, E0, A3, 61, 00, 8B, 06, 8B, 15, B0, 97, 5F, 00, E8, 35, 2A, EC, FF, 8B...
 
[+]

Entropy:
6.6431

Developed / compiled with:
Microsoft Visual C++

Code size:
2 MB (2,149,376 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
TMRGMMouseRun

Command:
"C:\Program Files\jizz gaming mouse\magic lord\tmrmon.exe" -runauto


Scan tmrmon.exe - Powered by Reason Core Security