tvrc.exe

NEC Remote Controller(x64)

NEC Personal Products, Ltd.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘NECTVRC’.
Publisher:
NEC Corporation, NEC Personal Products, Ltd.  (signed by NEC Personal Products, Ltd.)

Product:
NEC Remote Controller(x64)

Description:
tvrc

Version:
5, 0, 0, 7

MD5:
5f1d9df0f5a86e665c4b95c995786faa

SHA-1:
5aac44a64091ce6198bfd9120fb978bdd267ec11

SHA-256:
f5ec27fba9f7f0789f27ea4aa54c2d9084014ca852345987e1cd9047eb33c2c9

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 12:00:15 PM UTC  (today)

File size:
238.4 KB (244,096 bytes)

Product version:
5, 0, 0, 0

Copyright:
Copyright (C) NEC Corporation, NEC Personal Products, Ltd. 2001-2010

Trademarks:
NEC

Original file name:
tvrc.exe

File type:
Executable application (Win64 EXE)

Common path:
C:\Program Files\nectvrc\tvrc.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/19/2010 9:00:00 AM

Valid to:
1/20/2011 8:59:59 AM

Subject:
CN="NEC Personal Products, Ltd.", OU=001, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="NEC Personal Products, Ltd.", L=Shinagawa-ku, S=Tokyo, C=JP

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
4B7679F9B13287594EEDDF37C84586CC

File PE Metadata
Compilation timestamp:
3/3/2010 4:44:56 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
6144:CTG+QMla7VDMgJqdmp7+fWcFJg/Ip6fTZOoN6H4oSYjnN:D+ngVp7xzW8T9NNq7N

Entry address:
0x18050

Entry point:
48, 83, EC, 28, E8, 77, 92, 00, 00, 48, 83, C4, 28, E9, 0E, FD, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 48, 89, 4C, 24, 08, 48, 81, EC, 88, 00, 00, 00, 48, 8D, 0D, 3D, B0, 04, 00, FF, 15, B7, 12, 01, 00, 48, 8B, 05, 28, B1, 04, 00, 48, 89, 44, 24, 58, 45, 33, C0, 48, 8D, 54, 24, 60, 48, 8B, 4C, 24, 58, E8, 51, 0A, 01, 00, 48, 89, 44, 24, 50, 48, 83, 7C, 24, 50, 00, 74, 41, 48, C7, 44, 24, 38, 00, 00, 00, 00, 48, 8D, 44, 24, 48, 48, 89, 44, 24, 30, 48, 8D, 44, 24, 40, 48, 89, 44, 24...
 
[+]

Entropy:
6.2089

Code size:
159.5 KB (163,328 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
NECTVRC

Command:
C:\Program Files\nectvrc\tvrc.exe \initlcd


Scan tvrc.exe - Powered by Reason Core Security