nomtray.exe

Mobility

NetMotion Wireless, Inc.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘nomtray’.
Publisher:
NetMotion Wireless, Inc.  (signed and verified)

Product:
Mobility

Description:
NetMotion Tray Icon

Version:
11.04.25554

MD5:
200f2ceafcb89c59384138cef501070b

SHA-1:
e2b59384609c62ca244814a760fcca40bdfc45ae

SHA-256:
301b87bb6e14ccc4ae9a9cc3c6818f3c585762ce55783b8b1da5170c98927989

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 2:05:01 PM UTC  (today)

File size:
1.7 MB (1,762,992 bytes)

Product version:
11.04.25554

Copyright:
Copyright © 1999-2016 NetMotion Wireless, Inc.

Trademarks:
NetMotion is a registered trademark of NetMotion Wireless, Inc.

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\netmotion client\nomtray.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
5/8/2016 8:00:00 PM

Valid to:
5/9/2019 7:59:59 PM

Subject:
CN="NetMotion Wireless, Inc.", OU=R&D, O="NetMotion Wireless, Inc.", L=Seattle, S=Washington, C=US

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
3F0F3549FB57AFD016FC7B8ACFA73AFB

File PE Metadata
Compilation timestamp:
2/9/2017 9:48:54 PM

OS version:
6.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
14.0

Entry address:
0x21E5C

Entry point:
48, 83, EC, 28, E8, BB, 09, 00, 00, 48, 83, C4, 28, E9, 22, FE, FF, FF, CC, CC, 33, C0, 48, 89, 41, 10, 48, 8D, 05, EB, 93, 08, 00, 48, 89, 01, 48, 8B, C1, 48, 89, 51, 08, C3, 40, 53, 48, 83, EC, 20, 48, 8B, D9, 48, 8B, C2, 48, 8D, 0D, 9D, 93, 08, 00, 48, 89, 0B, 48, 8D, 53, 08, 33, C9, 48, 89, 0A, 48, 89, 4A, 08, 48, 8D, 48, 08, E8, 0C, 41, 00, 00, 48, 8D, 05, 35, 9A, 08, 00, 48, 89, 03, 48, 8B, C3, 48, 83, C4, 20, 5B, C3, CC, 33, C0, 48, 89, 41, 10, 48, 8D, 05, 2B, 9A, 08, 00, 48, 89, 41, 08, 48, 8D, 05...
 
[+]

Entropy:
5.4653

Code size:
413.5 KB (423,424 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
nomtray

Command:
"C:\Program Files\netmotion client\nomtray.exe" -startup


Scan nomtray.exe - Powered by Reason Core Security