mousotron.exe

Mousotron

Peter Boey

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Mousotron’.
Publisher:
Blacksun Software  (signed by Peter Boey)

Product:
Mousotron

Version:
10.1.0.0

MD5:
7128fd9e5b9c794b1eb1cab7ed915d2a

SHA-1:
41f82ad94434163713ea6e9d16fe186266dff201

SHA-256:
233d1ab198fe7b9a05cd50c954210aa612cb975e24fe893d44565f6c7e1b7d8f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/8/2024 8:51:41 AM UTC  (today)

File size:
2.1 MB (2,157,712 bytes)

Product version:
10.1

Copyright:
Blacksun Software

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\mousotron\mousotron.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
5/13/2015 2:00:00 AM

Valid to:
5/13/2017 1:59:59 AM

Subject:
CN=Peter Boey, O=Peter Boey, STREET=Bergbeemden 40, L=Turnhout, S=Antwerpen, PostalCode=2300, C=BE

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
454EAC5FFC381F0A73CA192F307BFDF8

File PE Metadata
Compilation timestamp:
12/15/2015 5:28:58 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:9VfyqEtMKFa33UXFIijd2JLp2+8hBHSr2rov0QgJ/0YWduWkXtLtiKSH0rfdIaGE:TxAdOsRSeJ/0Yw6tiK/fdWE698b

Entry address:
0x198AFC

Entry point:
55, 8B, EC, 83, C4, F0, 53, B8, 34, EA, 58, 00, E8, A3, 25, E7, FF, 8B, 1D, 28, 08, 5A, 00, 8B, 03, E8, E6, 6B, F4, FF, 8B, 03, C6, 40, 5B, 00, 8B, 03, 33, D2, E8, CB, 88, F4, FF, 8B, 03, BA, 90, 8B, 59, 00, E8, 03, 66, F4, FF, 8B, 03, 83, C0, 50, E8, 9D, E4, E6, FF, 8B, 0D, 18, 06, 5A, 00, 8B, 03, 8B, 15, A4, EB, 57, 00, E8, C6, 6B, F4, FF, 8B, 0D, 94, 01, 5A, 00, 8B, 03, 8B, 15, E4, E7, 57, 00, E8, B3, 6B, F4, FF, 6A, 00, 8B, 03, 8B, 80, 70, 01, 00, 00, 50, E8, F3, 47, E7, FF, 8B, 03, E8, EC, 6C, F4, FF...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
1.6 MB (1,666,560 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Mousotron

Command:
C:\Program Files\mousotron\mousotron.exe


Scan mousotron.exe - Powered by Reason Core Security