IDProtect Monitor.exe

IDProtect Client

Athena Smartcard Solutions

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘IDProtect Monitor’.
Publisher:
Athena Smartcard Solutions  (signed and verified)

Product:
IDProtect Client

Description:
IDProtect Monitor

Version:
6, 0, 0, 6

MD5:
d1377705703aa3c8acd9b7f6f9a6dd0d

SHA-1:
2a41a88f2b0348f2993315aab93a1c6984ebd391

SHA-256:
36f792fc5d47eda254960219c81d15c58b3c45b1abe4e9316c6e5faf9f41e97e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 8:55:35 PM UTC  (today)

File size:
474.3 KB (485,688 bytes)

Product version:
6, 0, 0, 6

Copyright:
Athena-scs (c). All rights reserved.

Original file name:
IDProtect Monitor.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\athena\idprotect client\utils\idprotect monitor.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
5/20/2011 3:00:00 AM

Valid to:
6/15/2014 2:59:59 AM

Subject:
CN=Athena Smartcard Solutions, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Athena Smartcard Solutions, L=Herzliya, S=Herzliya, C=IL

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
609E196198995E40E7C6ABB55256172B

File PE Metadata
Compilation timestamp:
1/23/2014 2:34:12 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

Entry address:
0x34F6B

Entry point:
E8, 54, AF, 00, 00, E9, 17, FE, FF, FF, 6A, 14, 68, 00, AD, 45, 00, E8, 93, 60, 00, 00, 83, 65, FC, 00, FF, 4D, 10, 78, 3A, 8B, 4D, 08, 2B, 4D, 0C, 89, 4D, 08, FF, 55, 14, EB, ED, 8B, 45, EC, 89, 45, E4, 8B, 45, E4, 8B, 00, 89, 45, E0, 8B, 45, E0, 81, 38, 63, 73, 6D, E0, 74, 0B, C7, 45, DC, 00, 00, 00, 00, 8B, 45, DC, C3, E8, 0E, 50, 00, 00, 8B, 65, E8, C7, 45, FC, FE, FF, FF, FF, E8, 89, 60, 00, 00, C2, 10, 00, 6A, 0C, 68, 20, AD, 45, 00, E8, 35, 60, 00, 00, 83, 65, E4, 00, 8B, 75, 0C, 8B, C6, 0F, AF, 45...
 
[+]

Entropy:
6.3411

Code size:
316 KB (323,584 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
IDProtect Monitor

Command:
"C:\Program Files\athena\idprotect client\utils\idprotect monitor.exe"


Scan IDProtect Monitor.exe - Powered by Reason Core Security