SACMonitor.exe

SACMonitor Application

Aladdin Knowledge Systems LTD

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘SafeNetCertMngr’.
Publisher:
Aladdin Knowledge Systems LTD   (signed and verified)

Product:
SACMonitor Application

Description:
SafeNet Authentication Client Monitor

Version:
8.00.48.0

MD5:
d003da931f8d0525df331e343260b756

SHA-1:
6ce6aa0f8d9f69ea892d84ad73f00e5b9ab69dc2

SHA-256:
ead3e93352ceba161daae34a69b656c7a4b541ed992b5ad8e0272a2ab24c3bcd

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 4:59:33 PM UTC  (today)

File size:
189.4 KB (193,920 bytes)

Product version:
8.00.48.0

Copyright:
Copyright © 2010 SafeNet, Inc. All rights reserved.

Original file name:
SACMonitor.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\safenet\authentication\sac\x32\sacmonitor.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/25/2008 5:30:00 AM

Valid to:
8/26/2010 5:29:59 AM

Subject:
CN="Aladdin Knowledge Systems LTD ", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Aladdin Knowledge Systems LTD ", L=Tel Aviv, S=Israel, C=IL

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6BEA1E66D2B4A57E74CE91893FACE0D8

File PE Metadata
Compilation timestamp:
3/31/2010 6:12:03 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
3072:1d4wzAi4zpe1OPUfMsjBj3eYiO7bdw15Sas65SPUx3jEEOko+:L4jEzjORuq10DGVEEOkh

Entry address:
0x1F44A

Entry point:
E8, 37, 04, 00, 00, E9, 35, FD, FF, FF, FF, 25, 28, 32, 42, 00, 6A, 10, 68, 58, 68, 42, 00, E8, 32, 02, 00, 00, 33, C0, 89, 45, E0, 89, 45, FC, 89, 45, E4, 8B, 45, E4, 3B, 45, 10, 7D, 13, 8B, 75, 08, 8B, CE, FF, 55, 14, 03, 75, 0C, 89, 75, 08, FF, 45, E4, EB, E5, C7, 45, E0, 01, 00, 00, 00, C7, 45, FC, FE, FF, FF, FF, E8, 08, 00, 00, 00, E8, 39, 02, 00, 00, C2, 14, 00, 83, 7D, E0, 00, 75, 11, FF, 75, 18, FF, 75, E4, FF, 75, 0C, FF, 75, 08, E8, 01, 00, 00, 00, C3, 6A, 14, 68, 78, 68, 42, 00, E8, CD, 01, 00...
 
[+]

Entropy:
6.1676

Code size:
136 KB (139,264 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
SafeNetCertMngr

Command:
"C:\Program Files\safenet\authentication\sac\x32\sacmonitor.exe"


Scan SACMonitor.exe - Powered by Reason Core Security