AgentAntidote.exe

Agent Antidote

Druide informatique inc.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘AgentAntidote32’.
Publisher:
Druide informatique inc.  (signed and verified)

Product:
Agent Antidote

Description:
AgentAntidote

Version:
Antidote 9

MD5:
ca67efa4a2a491bf18475020b3a86a62

SHA-1:
3fbb63f6666554b947dc12cc161a68fdc78f4086

SHA-256:
2b3762859ab5b720a1ffd1531620bd12eb3dc07881fc357bb10e1081ca8f2716

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
8/3/2025 11:03:09 PM UTC  (a few moments ago)

File size:
1.6 MB (1,657,200 bytes)

Product version:
Antidote 9

Copyright:
© 1993-2016, Druide informatique inc.

Original file name:
AgentAntidote.exe

File type:
Executable application (Win32 EXE)

Language:
French (France)

Common path:
C:\Program Files\druide\antidote 9\application\bin32\agentantidote.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
12/14/2015 1:00:00 AM

Valid to:
9/16/2016 1:59:59 AM

Subject:
CN=Druide informatique inc., O=Druide informatique inc., L=Montreal, S=Quebec, C=CA

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
6810D281947F1C566EB92A8AEB49B7B8

File PE Metadata
Compilation timestamp:
7/22/2016 12:00:54 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

Entry address:
0x58F2D

Entry point:
E8, BF, 0A, 00, 00, E9, 49, FE, FF, FF, 83, 3D, 78, 25, 52, 00, 00, 74, 03, 33, C0, C3, 56, 6A, 04, 6A, 20, FF, 15, 68, 22, 46, 00, 59, 59, 8B, F0, 56, FF, 15, D0, 20, 46, 00, A3, 78, 25, 52, 00, A3, 74, 25, 52, 00, 85, F6, 75, 05, 6A, 18, 58, 5E, C3, 83, 26, 00, 33, C0, 5E, C3, 6A, 14, 68, 00, E3, 50, 00, E8, 81, 0B, 00, 00, 83, 65, DC, 00, FF, 35, 78, 25, 52, 00, 8B, 35, 9C, 20, 46, 00, FF, D6, 89, 45, E4, 83, F8, FF, 75, 0C, FF, 75, 08, FF, 15, 60, 22, 46, 00, 59, EB, 65, 6A, 08, E8, AE, 0B, 00, 00, 59...
 
[+]

Code size:
387.5 KB (396,800 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
AgentAntidote32

Command:
"C:\Program Files\druide\antidote 9\application\bin32\agentantidote.exe" \lancementsession


Scan AgentAntidote.exe - Powered by Reason Core Security