PCCNTMON.EXE

Trend Micro Client/Server/Messaging Security for SMB

Trend Micro, Inc.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘OfficeScanNT Monitor’. This is installed with Trend Micro Client/Server Security Agent.
Publisher:
Trend Micro Inc.  (signed by Trend Micro, Inc.)

Product:
Trend Micro Client/Server/Messaging Security for SMB

Description:
I/O Monitor

Version:
7.6.0.1143

MD5:
299983ad82be26ed3ed6bec7ca94d70e

SHA-1:
e7f1e6d8175b0a7671c28be8ff57f280f311febd

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/16/2024 4:42:54 AM UTC  (today)

File size:
389.7 KB (399,048 bytes)

Product version:
7.6

Copyright:
Copyright (C) 1998-2007 Trend Micro Incorporated. All rights reserved.

Trademarks:
Copyright (C) Trend Micro Inc.

Original file name:
PCCNTMON.EXE

File type:
Executable application (Win32 EXE)

Language:
French (France)

Common path:
C:\Program Files\trend micro\client server security agent\pccntmon.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/30/2007 1:00:00 AM

Valid to:
2/16/2008 12:59:59 AM

Subject:
CN="Trend Micro, Inc.", OU=RD, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Trend Micro, Inc.", L=Taipei, S=Taiwan, C=TW

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
225C8B52640584163EC1835017DED781

File PE Metadata
Compilation timestamp:
4/26/2007 10:55:23 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:M0Gn60YEUL/Vaoe54d5tqir4o53gf57XciWuTPky8wtMC:M0Gn60YEwVao3tqI4o5wIifTJD

Entry address:
0x1D553

Entry point:
55, 8B, EC, 6A, FF, 68, F8, 5F, 44, 00, 68, 84, 16, 42, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, C8, 22, 44, 00, 33, D2, 8A, D4, 89, 15, 1C, 51, 47, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, 18, 51, 47, 00, C1, E1, 08, 03, CA, 89, 0D, 14, 51, 47, 00, C1, E8, 10, A3, 10, 51, 47, 00, 6A, 01, E8, 6D, 40, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, C2, 00, 00, 00, 59, E8, 78, 3D, 00, 00, 85, C0, 75, 08, 6A, 10, E8, B1, 00, 00, 00, 59, 33, F6, 89, 75...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
260 KB (266,240 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
OfficeScanNT Monitor

Command:
"C:\Program Files\trend micro\client server security agent\pccntmon.exe" -hidewindow


The file PCCNTMON.EXE has been discovered within the following program.

Publisher's description - “The Agent provides real-time, scheduled, and manual threat scanning capabilities along with other protection.”
www.trendmicro.com
7% remove it
 
Powered by Should I Remove It?

Scan PCCNTMON.EXE - Powered by Reason Core Security