inprocessclient64.dll

Sentinel Agent

Sentinel Labs, Inc.

Publisher:
SentinelOne, Inc.  (signed by Sentinel Labs, Inc.)

Product:
Sentinel Agent

Description:
WinAgentHostDll

Version:
1.5.2411.0

MD5:
c85988a1b8ec3cc1f707dbbda8685de6

SHA-1:
ad3e47f46bdf1939252592bb289526794f327270

SHA-256:
857bd5bea3a10ef8d3f6276bc631e01d63fb9ea92b7962481d70931a2ef4337d

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
1/7/2025 9:40:35 AM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Crypt-QKD [Trj]
150810-3

File size:
248.5 KB (254,464 bytes)

Product version:
1.5.2411.0

Copyright:
SentinelOne, Inc.

Original file name:
WinHostDll.dll

File type:
Dynamic link library (Win64 DLL)

Language:
English (United States)

Common path:
C:\Program Files\sentinelone\sentinel agent 1.5.2411.0\inprocessclient64.dll

Digital Signature
Authority:
DigiCert Inc

Valid from:
8/31/2013 5:00:00 PM

Valid to:
8/10/2015 5:00:00 AM

Subject:
CN="Sentinel Labs, Inc.", O="Sentinel Labs, Inc.", L=Palo Alto, S=California, C=US, PostalCode=94306, STREET=2500 El Camino Real, SERIALNUMBER=5278570, OID.1.3.6.1.4.1.311.60.2.1.2=Delaware, OID.1.3.6.1.4.1.311.60.2.1.3=US, OID.2.5.4.15=Private Organization

Issuer:
CN=DigiCert EV Code Signing CA, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
03713EF734EA187A8E5B7DB45E314E3F

File PE Metadata
Compilation timestamp:
6/30/2015 8:11:13 AM

OS version:
6.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
6144:h+iP7nvWqnDUlmKFry3XQTHQuEaix2z69tyNqJa:h+G7OqnDUQ1Az6I2

Entry address:
0x16228

Entry point:
48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 20, 49, 8B, F8, 8B, DA, 48, 8B, F1, 83, FA, 01, 75, 05, E8, 93, 3A, 00, 00, 4C, 8B, C7, 8B, D3, 48, 8B, CE, 48, 8B, 5C, 24, 30, 48, 8B, 74, 24, 38, 48, 83, C4, 20, 5F, E9, 03, 00, 00, 00, CC, CC, CC, 48, 8B, C4, 48, 89, 58, 20, 4C, 89, 40, 18, 89, 50, 10, 48, 89, 48, 08, 56, 57, 41, 56, 48, 83, EC, 50, 49, 8B, F0, 8B, DA, 4C, 8B, F1, BA, 01, 00, 00, 00, 89, 50, B8, 85, DB, 75, 0F, 39, 1D, 0C, 29, 02, 00, 75, 07, 33, C0, E9, D2, 00, 00, 00, 8D, 43, FF...
 
[+]

Entropy:
5.9287

Code size:
141.5 KB (144,896 bytes)

Scan inprocessclient64.dll - Powered by Reason Core Security