AgentMon.exe

Virtual System Administrator Agent

Kaseya Development, LLC

It runs as a separate (within the context of its own process) windows Service named “Kaseya Agent”. This is installed with multiple programs including Kaseya Agent and TeamLogic IT SystemWatch (kklaptop.tlit60912.tlit60912 - teamlogic.kaseya.net).
Publisher:
Kaseya International Limited  (signed by Kaseya Development, LLC)

Product:
Virtual System Administrator Agent

Version:
6, 5, 0, 1

MD5:
e8fdccaf287ce46edfed4723730416f1

SHA-1:
748111f373a88888343368ac85a9b6ecf6ba7eb8

SHA-256:
02a1615d6029e3620bb6fde998fba3b5e6d1c7b7f1628c01a6143521e5058575

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 5:59:27 PM UTC  (today)

File size:
1.1 MB (1,140,232 bytes)

Product version:
6, 5, 0, 0

Copyright:
Copyright © 2000-2014 Kaseya International Limited. All Rights Reserved.

Trademarks:
http://www.kaseya.com/jp/trademark-guidelines.aspx

Original file name:
AgentMon.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\kaseya\ksaasc00000000577514\agentmon.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
1/26/2012 7:00:00 PM

Valid to:
4/14/2014 7:59:59 PM

Subject:
CN="Kaseya Development, LLC", O="Kaseya Development, LLC", L=San Jose, S=California, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
53EE5DD07EC47C024EDACE79BB4B816B

File PE Metadata
Compilation timestamp:
2/10/2014 11:21:35 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
24576:pSl5PCySme/NY1tyS+O+xRMaYJFl+9Tuu:se/TOFFeTuu

Entry address:
0xA252B

Entry point:
E8, 34, 39, 01, 00, E9, 16, FE, FF, FF, B8, 58, F6, 4F, 00, C3, A1, 80, 21, 55, 00, 85, C0, 56, 6A, 14, 5E, 75, 07, B8, 00, 02, 00, 00, EB, 06, 3B, C6, 7D, 07, 8B, C6, A3, 80, 21, 55, 00, 6A, 04, 50, E8, E8, 0C, 00, 00, 85, C0, 59, 59, A3, 64, 11, 55, 00, 75, 1E, 6A, 04, 56, 89, 35, 80, 21, 55, 00, E8, CF, 0C, 00, 00, 85, C0, 59, 59, A3, 64, 11, 55, 00, 75, 05, 6A, 1A, 58, 5E, C3, 33, D2, B9, 58, F6, 4F, 00, EB, 05, A1, 64, 11, 55, 00, 89, 0C, 02, 83, C1, 20, 83, C2, 04, 81, F9, D8, F8, 4F, 00, 7C, EA, 6A...
 
[+]

Entropy:
6.6496

Code size:
820 KB (839,680 bytes)

Service
Display name:
Kaseya Agent

Service name:
KAKSAASC00000000577514

Description:
Machine.Group ID:hnb091mc300450.fmo.fmo.prs Server Address:saas14.kaseya.net

Type:
Win32OwnProcess


The file AgentMon.exe has been discovered within the following programs.

Kaseya Agent  by Kaseya
This is the client agent for the Kaseya IT Management Software, used to automate your IT Services.
www.kaseya.com
About 1% of users remove it
 
Powered by Should I Remove It?

Scan AgentMon.exe - Powered by Reason Core Security