Jump to content

Secomn64: Exe ^hot^

If you did not intentionally install Systweak software, or if the process is slowing down your PC, you can remove it.

Secomn64.exe is a 64-bit executable file that appears to be related to security and monitoring software. The "se" prefix suggests a connection to security or surveillance, while "comn" might imply a communication or common component. The ".exe" extension, of course, indicates that it's an executable file. secomn64 exe

In a 2021 APT report by Kaspersky, a variant of secomn64.exe was used as a side-loading victim. The notorious Lazarus Group used a legitimate, signed secomn64.exe (from Samsung) to load a malicious DLL named version.dll or cryptbase.dll . If you did not intentionally install Systweak software,

In its intended form, secomn64.exe is a background service (running as SECOMN64.EXE ) that manages chips and fingerprint readers on older Samsung Notebooks (Series 7/9) and select HP EliteBooks. In its intended form, secomn64

End of Report

The trouble began around 2018. Because the name secomn64 sounded "official" but obscure, malware authors began using it as a masquerade (a technique known as Masquerading – T1036).

×
×
  • Create New...