cz_sep_monitor.exe

Cryptzone Monitor Application

Cryptzone Group AB

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘SEP Monitor’.
Publisher:
Cryptzone AB  (signed by Cryptzone Group AB)

Product:
Cryptzone Monitor Application

Description:
Cryptzone monitoring service

Version:
5.0.128.0

MD5:
6f8f850f03511d73d3daac2508db28b3

SHA-1:
3d2d40eeb5dcdec1d4646f96d1fa35d9d9e91624

SHA-256:
cd03bd2afd526705ab9eba44cc4c5d41687dc22bcbdc8721fe2e8f9035e21bc0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/15/2025 9:52:54 AM UTC  (today)

File size:
223.8 KB (229,176 bytes)

Product version:
5.0.128.0

Copyright:
Copyright (c) 2008 Cryptzone AB. All rights reserved.

Original file name:
sz_sep_monitor.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\sep client\x64\modules\cz_sep_monitor.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/13/2015 1:00:00 AM

Valid to:
2/6/2018 12:59:59 AM

Subject:
CN=Cryptzone Group AB, O=Cryptzone Group AB, L=Gothenburg, S=Västra götalän, C=SE

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6E00BC54E5961AB5FE25D2EC71A8AC86

File PE Metadata
Compilation timestamp:
4/29/2015 12:43:58 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0x180A8

Entry point:
48, 83, EC, 28, E8, 63, 05, 00, 00, 48, 83, C4, 28, E9, 26, FD, FF, FF, FF, 25, 70, 41, 00, 00, 48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 20, 8B, F2, 48, 8B, D9, F6, C2, 02, 74, 2A, 44, 8B, 41, F8, 4C, 8D, 0D, 46, 07, 00, 00, BA, 18, 00, 00, 00, E8, 02, 03, 00, 00, 40, F6, C6, 01, 74, 09, 48, 8D, 4B, F8, E8, 69, F5, FF, FF, 48, 8D, 43, F8, EB, 16, E8, 22, 07, 00, 00, 40, F6, C6, 01, 74, 08, 48, 8B, CB, E8, 50, F5, FF, FF, 48, 8B, C3, 48, 8B, 5C, 24, 30, 48, 8B, 74, 24, 38, 48, 83, C4, 20, 5F...
 
[+]

Code size:
105 KB (107,520 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
SEP Monitor

Command:
C:\Program Files\sep client\x64\modules\cz_sep_monitor.exe \silent \nokeepalive \sync


Scan cz_sep_monitor.exe - Powered by Reason Core Security