AgentUI.exe

Sentinel Agent

Sentinel Labs, Inc.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Sentinel Agent’.
Publisher:
SentinelOne, Inc.  (signed by Sentinel Labs, Inc.)

Product:
Sentinel Agent

Description:
Sentinel Agent UI

Version:
1.8.4.3620

MD5:
4d38f616f6a4a6828894011b12ada2a5

SHA-1:
e62657098ee49cbf46c1ea359256f1435da71125

SHA-256:
3dd251b65d450c219f9e41acd3243c44f4d9c8b50210713d09d01c50a78b56fe

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/7/2025 10:29:06 AM UTC  (today)

File size:
1 MB (1,053,696 bytes)

Product version:
1.8.4.3620

Copyright:
SentinelOne, Inc.

Trademarks:
Sentinel Agent is a trademark of SentineOne, Inc.

Original file name:
AgentUI.exe

File type:
Executable application (Win64 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\sentinelone\sentinel agent 1.8.4.3620\agentui.exe

Digital Signature
Authority:
DigiCert Inc

Valid from:
2/24/2016 8:00:00 AM

Valid to:
2/27/2018 8:00:00 PM

Subject:
CN="Sentinel Labs, Inc.", O="Sentinel Labs, Inc.", L=Mountain View, S=California, C=US, PostalCode=94043, STREET=2513 E. Charleston Rd, STREET=Suite 100, SERIALNUMBER=5278570, OID.1.3.6.1.4.1.311.60.2.1.2=Delaware, OID.1.3.6.1.4.1.311.60.2.1.3=US, OID.2.5.4.15=Private Organization

Issuer:
CN=DigiCert EV Code Signing CA (SHA2), OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
061967F184DD0AFD5892E9E0A357E3EC

File PE Metadata
Compilation timestamp:
2/26/2017 5:48:23 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
48.0

.NET CLR dependent:
Yes

Entry address:
0xC857A

Entry point:
4D, 5A, 90, 00, 03, 00, 00, 00, 04, 00, 00, 00, FF, FF, 00, 00, B8, 00, 00, 00, 00, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 80, 00, 00, 00, 0E, 1F, BA, 0E, 00, B4, 09, CD, 21, B8, 01, 4C, CD, 21, 54, 68, 69, 73, 20, 70, 72, 6F, 67, 72, 61, 6D, 20, 63, 61, 6E, 6E, 6F, 74, 20, 62, 65, 20, 72, 75, 6E, 20, 69, 6E, 20, 44, 4F, 53, 20, 6D, 6F, 64, 65, 2E, 0D, 0D, 0A, 24, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.9944

Code size:
793.5 KB (812,544 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Sentinel Agent

Command:
"C:\Program Files\sentinelone\sentinel agent 1.8.4.3620\agentui.exe"


Scan AgentUI.exe - Powered by Reason Core Security