NinjaRMMAgentPatcher.exe

NinjaRMM Agent

ninjaRMM

It runs as a separate (within the context of its own process) windows Service named “NinjaRMMAgent”.
Publisher:
Ninja MSP  (signed by ninjaRMM)

Product:
NinjaRMM Agent

Description:
Ninja RMM Agent Service

Version:
2.0.1326

MD5:
d5b1a2a2376f02aab3f0bd90211c190b

SHA-1:
f48db0f1d6c61d02439896ffa1d6173874327c5d

SHA-256:
ee26c99a3681779c8dabbd3f0ee0121705d4b25b1d05e55905724e91aafd902c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/28/2024 2:18:39 AM UTC  (today)

File size:
2.5 MB (2,655,152 bytes)

Product version:
2.0.1326

Copyright:
Copyright (C) 2016

Original file name:
NinjaRMMAgentPatcher.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\ouachitaindustries-2.0.1227\ninjarmmagentpatcher.exe

Digital Signature
Signed by:

Authority:
GoDaddy.com, Inc.

Valid from:
10/20/2016 5:43:38 PM

Valid to:
10/22/2017 3:53:52 PM

Subject:
CN=ninjaRMM, O=ninjaRMM, L=San Francisco, S=California, C=US

Issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
680D3DBD4B78F31E

File PE Metadata
Compilation timestamp:
1/31/2017 12:34:11 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
14.0

Entry address:
0x15C5F6

Entry point:
E8, 60, 0E, 00, 00, E9, 7A, FE, FF, FF, B9, 01, 00, 00, 00, F2, 0F, 10, 2D, 08, EC, 61, 00, EB, 1C, B9, 02, 00, 00, 00, F2, 0F, 10, 2D, 10, EC, 61, 00, EB, 0D, B9, 03, 00, 00, 00, F2, 0F, 10, 2D, 08, EC, 61, 00, 66, 0F, 7E, C0, 25, FF, FF, FF, 7F, 3D, 00, 00, 80, 7F, 0F, 83, 4C, 01, 00, 00, F3, 0F, 5A, C0, 83, F9, 02, 75, 18, F2, 0F, 10, 15, 28, EC, 61, 00, 66, 0F, 2F, C2, 76, 0A, BA, 10, 00, 00, 00, E8, 3D, 01, 00, 00, 66, 0F, 2F, C5, 0F, 83, 21, 01, 00, 00, F2, 0F, 10, 35, 00, EC, 61, 00, 66, 0F, 2F, C6...
 
[+]

Entropy:
6.6659

Code size:
1.9 MB (1,946,624 bytes)

Service
Display name:
NinjaRMMAgent

Type:
Win32OwnProcess


Scan NinjaRMMAgentPatcher.exe - Powered by Reason Core Security