UfSeAgnt.exe

Trend Micro Internet Security

Trend Micro, Inc.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘UfSeAgnt.exe’.
Scan UfSeAgnt.exe - Powered by Reason Core Security
Publisher:
Trend Micro Inc.  (signed by Trend Micro, Inc.)

Product:
Trend Micro Internet Security

Description:
Trend Micro Server Agent

Version:
17.14.0.1046

MD5:
c0645477edc8ae6e909487d867ee4f02

SHA-1:
7d8615bd7e9d49920d36e12523b9701f049d13b0

SHA-256:
aecc7582ce8af4ce4a7b8878505ef7876994820bad7529090e78926cfeb0fb13

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/3/2016 8:49:11 AM UTC  (today)

File size:
980.2 KB (1,003,768 bytes)

Product version:
17.14

Copyright:
Copyright (C) 1995-2009 Trend Micro Incorporated. All rights reserved.

Trademarks:
Copyright (C) Trend Micro Inc.

Original file name:
UfSeAgnt.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\trend micro\internet security\ufseagnt.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/16/2008 8:00:00 AM

Valid to:
2/17/2011 7:59:59 AM

Subject:
CN="Trend Micro, Inc.", OU=RD, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Trend Micro, Inc.", L=Taipei, S=Taiwan, C=TW

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
645212F783F4D7ABA3555729E99CE065

File PE Metadata
Compilation timestamp:
8/14/2009 5:10:10 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
12288:xlJQCe9Mm5ILM6iYwEn8OAqEI1LC9jjYaaFEGW0Ao15CIVEmrW3Ytg:TJMMm5Fe1LC9jjY7W0Ao1okW3Ytg

Entry address:
0x79656

Entry point:
E8, 44, 65, 00, 00, E9, 17, FE, FF, FF, 51, C7, 01, CC, 05, 4A, 00, E8, C7, 65, 00, 00, 59, C3, 56, 8B, F1, E8, EA, FF, FF, FF, F6, 44, 24, 08, 01, 74, 07, 56, E8, 8F, CE, FD, FF, 59, 8B, C6, 5E, C2, 04, 00, 8B, 44, 24, 04, 83, C1, 09, 51, 83, C0, 09, 50, E8, 15, 66, 00, 00, F7, D8, 59, 1B, C0, 59, 40, C2, 04, 00, 3B, 0D, A8, 78, 4E, 00, 75, 02, F3, C3, E9, 84, 66, 00, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 55, 8B, EC, 57, 56, 8B, 75, 0C, 8B, 4D, 10, 8B, 7D, 08, 8B, C1, 8B, D1, 03, C6, 3B, FE...
 
[+]

Entropy:
6.1458

Code size:
608 KB (622,592 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
UfSeAgnt.exe

Command:
"C:\Program Files\trend micro\internet security\ufseagnt.exe"


Scan UfSeAgnt.exe - Powered by Reason Core Security