PKIMonitor.exe

eToken PKI client

Aladdin Knowledge Systems LTD

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘eTMonitor’.
Publisher:
Aladdin Knowledge Systems, Ltd.  (signed by Aladdin Knowledge Systems LTD )

Product:
eToken PKI client

Description:
PKIMonitor Application

Version:
5.1.57.0

MD5:
e34356199604fa6f55e21a5a9eaaa4cd

SHA-1:
81f0f144b6a92ce2710444000baff0937b968970

SHA-256:
e73f0c0fd4af49777982c9133e8bc3b4d62b50d4cb147c5c5626b734535de561

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 11:38:34 PM UTC  (a few moments ago)

File size:
225.3 KB (230,752 bytes)

Product version:
5.1.57.0

Copyright:
Copyright © 2009 Aladdin Knowledge Systems, Ltd. All rights reserved.

Original file name:
PKIMonitor.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\aladdin\etoken\pkiclient\x32\pkimonitor.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/25/2008 5:30:00 AM

Valid to:
8/26/2010 5:29:59 AM

Subject:
CN="Aladdin Knowledge Systems LTD ", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Aladdin Knowledge Systems LTD ", L=Tel Aviv, S=Israel, C=IL

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6BEA1E66D2B4A57E74CE91893FACE0D8

File PE Metadata
Compilation timestamp:
11/15/2009 4:09:33 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
3072:7A5gtFzYF+5xYrwcvzN74UaF6S7gI8hbD3j7KWrfEJ9OVIcNOBvkM:ogIU52XvzN74Ua9wnj7KWrfEbOTNOBf

Entry address:
0x13EBC

Entry point:
E8, 49, 04, 00, 00, E9, D9, FC, FF, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 60, D8, 42, 00, 89, 0D, 5C, D8, 42, 00, 89, 15, 58, D8, 42, 00, 89, 1D, 54, D8, 42, 00, 89, 35, 50, D8, 42, 00, 89, 3D, 4C, D8, 42, 00, 66, 8C, 15, 78, D8, 42, 00, 66, 8C, 0D, 6C, D8, 42, 00, 66, 8C, 1D, 48, D8, 42, 00, 66, 8C, 05, 44, D8, 42, 00, 66, 8C, 25, 40, D8, 42, 00, 66, 8C, 2D, 3C, D8, 42, 00, 9C, 8F, 05, 70, D8, 42, 00, 8B, 45, 00, A3, 64, D8, 42, 00, 8B, 45, 04, A3, 68, D8, 42, 00, 8D, 45, 08, A3, 74, D8, 42, 00, 8B...
 
[+]

Entropy:
5.3889

Code size:
108 KB (110,592 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
eTMonitor

Command:
"C:\Program Files\aladdin\etoken\pkiclient\x32\pkimonitor.exe"


Scan PKIMonitor.exe - Powered by Reason Core Security