RMM

SetMe PRO

SetMe is a Techinline remote access and support platform for attended and unattended connections. It supports remote desktop control, file transfer, remote restart and reconnect, multi-monitor sessions, session recording, and centralized management of unattended devices. SetMe is a distinct, newer Techinline product alongside FixMe.IT and uses its own executables and service domains.

Tool overview

Category
RMM
Research authors
Thief1523
Created
2026-09-01
Last modified
2026-09-01
Privileges
User and SYSTEM
Free / availability
No
Verification required
Techinline's website and documentation confirm SetMe's attended and unattended remote-access features, supported operating systems, paid plans, set.me service domain, and signed Windows applications. The reported version 1.1.782.32771 client and unattended module were located in VirusTotal, downloaded, hash-checked, and inspected statically. Both samples have valid Authenticode signatures from Techinline Ltd.
Supported platforms
WindowsmacOS

Capabilities

Attended remote supportUnattended remote accessRemote desktop controlFile transfer and clipboard sharingRemote restart and reconnectMulti-monitor supportSession recordingUnattended device management

Executables & installation paths

Filename
SetMe_Client.exe
OriginalFileName
Not recorded
Description
SetMe Client
Product
SetMe
Filename
tinUnattendedModule.exe
OriginalFileName
Not recorded
Description
SetMe Unattended Client
Product
SetMe

Installation paths

C:\Program Files (x86)\Techinline Ltd\SetMe Unattended\Client\SetMe_Client.exe
C:\Program Files (x86)\Techinline Ltd\SetMe Unattended\Module\*\tinUnattendedModule.exe

Code signing

signer name
Techinline Ltd
certificate thumbprint
73FA21D6064A275C00007765AA5BBFA786B6955F
issuer
Entrust Code Signing CA - OVCS2
valid from
2023-07-24T21:23:56Z
valid to
2026-10-23T21:23:55Z
src file sha256
442ab6918b0b715b4a3c7f9e9c4a67fd27cb12094eb43653c1b2501e7f4f61e5
src file path
SetMe_Client.exe
src file company
Techinline Ltd

search names

SetMe_Client.exe
tinUnattendedModule.exe
tinClientDesktopApplication.exe
tinClientSessionManager.exe

company names

Techinline Ltd

signer names

Techinline Ltd

File hashes

authenticode
  • file name
    SetMe_Client.exe
    sha256
    36127cdd2409e2fde74bc6503613e9611bc0de8388be314f0eebd50c99a9881d
    sha1
    Not recorded
  • file name
    tinUnattendedModule.exe
    sha256
    29eff4a7203718f0bbd3c8d7b648010cb97682f8ed3bc8e9e894453327d2abf4
    sha1
    Not recorded

FORENSIC EVIDENCE

Disk artifacts

File
C:\Program Files (x86)\Techinline Ltd\SetMe Unattended\Client\SetMe_Client.exe
Description
SetMe client executable reported in issue 231.
OS
Windows
File
C:\Program Files (x86)\Techinline Ltd\SetMe Unattended\Module\*\tinUnattendedModule.exe
Description
Versioned unattended client module reported in issue 231 and confirmed by VirusTotal.
OS
Windows
File
C:\Users\*\AppData\Local\Temp\tinClientExtractor-*\tinClientDesktopApplication.exe
Description
Attended client desktop application extracted into a per-run temporary directory.
OS
Windows
File
C:\Users\*\AppData\Local\Temp\tinClientExtractor-*\tinClientSessionManager.exe
Description
Session manager extracted and launched by the attended client.
OS
Windows
File
C:\ProgramData\Techinline Ltd\settings.ini*
Description
SetMe client settings and lock files observed during sandbox execution.
OS
Windows
File
C:\ProgramData\SetMe Client
Description
SetMe client ProgramData marker observed during sandbox execution.
OS
Windows
File
C:\Windows\Temp\setme\Sentry\*
Description
SetMe crash-reporting state created by the client.
OS
Windows

FORENSIC EVIDENCE

Registry artifacts

Path
HKLM\SYSTEM\CurrentControlSet\Services\tinClientSessionManager-*
Description
Per-session temporary SetMe client service.
Path
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\tinClientSessionManager-*
Description
Safe-mode registration for the per-session SetMe client service.

FORENSIC EVIDENCE

Network artifacts

Description
Vendor-documented SetMe HTTPS and secure WebSocket services.
Domains
  • set.me
  • *.set.me
Ports
  • 443

FORENSIC EVIDENCE

Other artifacts

Type
ServiceNamePattern
Value
tinClientSessionManager-*
Type
ObservedClientSHA256
Value
442ab6918b0b715b4a3c7f9e9c4a67fd27cb12094eb43653c1b2501e7f4f61e5
Type
ObservedUnattendedModuleSHA256
Value
02e53fbb632c8af5e53d763b53c497b9c83493ff32406633e665ac7a01baa815

References

Acknowledgements

Person
Thief1523
Handle
@Thief1523