dtagent.exe

Disc Soft Ltd

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘DAEMON Tools Lite Automount’.
Publisher:
Disc Soft Ltd  (signed and verified)

MD5:
3998b16884e42b1476249231347fb243

SHA-1:
f30d786eae2ef1fd8275ce084c69f172383a33cc

SHA-256:
3bca14b1f3b68c59b4ae150ebc5d4b5543a94e4ef4f2d9e386f666c433b49701

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/26/2024 11:17:14 PM UTC  (a few moments ago)

File size:
4.5 MB (4,701,888 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\Program Files\daemon tools lite\dtagent.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
5/26/2015 8:00:00 AM

Valid to:
3/10/2018 7:59:59 AM

Subject:
CN=Disc Soft Ltd, O=Disc Soft Ltd, POBox=P.O. Box 2284, STREET="16 Albert Hoy Avenue,", STREET=Belama Phase 1, L=Belize City, S=Belize, PostalCode=BZ, C=BZ

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00F6E3D0098BF4E24D22BBB9550C55343E

File PE Metadata
Compilation timestamp:
12/23/2016 12:40:11 AM

OS version:
6.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
14.0

Entry address:
0x20A1CC

Entry point:
10, 36, 1C, 00, 14, 02, 59, 88, 86, 5B, 73, 56, 0C, DB, 4E, E4, 77, 51, B8, 9A, 3A, D3, B6, 01, 03, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 98, 01, D0, 1D, 99, 99, 99, 99, 99, 99, 99, 99, 99, 99, 99, 09, 19, 80, D1, 1D, 99, 99, 99, 99, 99, 99, 99, 99, 99, 99, 99, 09, 79, 34, 00, FE, 17, 00, FF, 13, 05, C0, 39, 32, 33, 33, 33, 33, 33, 33, 33, 33, 33, 33, 33, 33, 33, 33, 33, 33, 33, 33, 21, 03, 4E, 9C, 23, 33, 33, 33, 33, 33, 33, 33, 33, 33, 33, 33, 33, 33, 33, 33, 33, 33, 33, 13, B2, 68...
 
[+]

Entropy:
6.2675

Code size:
2.3 MB (2,392,576 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
DAEMON Tools Lite Automount

Command:
"C:\Program Files\daemon tools lite\dtagent.exe" -autorun


Scan dtagent.exe - Powered by Reason Core Security