op_mon.exe

Agnitum Outpost

Agnitum Ltd.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘OutpostMonitor’.
Publisher:
Agnitum Ltd.  (signed and verified)

Product:
Agnitum Outpost

Description:
Outpost User Interface

Version:
9.1.4652.16323

MD5:
25e5a33188ecf6a5736770c70dc96aa8

SHA-1:
61db924e24093c7630f744fa1793fb6e20cd3f17

SHA-256:
d856d1e155aa3bfb31eaffc49a476e40f796a5ee72ffff109ce0346ca227749a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 7:38:55 AM UTC  (today)

File size:
3.4 MB (3,540,976 bytes)

Product version:
9.1.4652.16323

Copyright:
Copyright (C) 1999-2013 Agnitum Ltd.

Original file name:
op_mon.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\agnitum\outpost antivirus pro\op_mon.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
1/15/2015 5:00:00 AM

Valid to:
3/27/2017 4:59:59 AM

Subject:
CN=Agnitum Ltd., O=Agnitum Ltd., L=St. Petersburg, S=Russian Federation, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
748661E9174BA5AA2B48492DE4AB423E

File PE Metadata
Compilation timestamp:
7/23/2014 8:20:54 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0x220CE2

Entry point:
E8, 53, 05, 00, 00, E9, 24, FD, FF, FF, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, 4C, 20, 6F, 00, 33, C5, 50, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D, 45, F4, 64, A3, 00, 00, 00, 00, C3, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, 4C, 20, 6F, 00, 33, C5, 50, 89, 65, F0, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D, 45, F4, 64, A3, 00, 00, 00, 00, C3, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B...
 
[+]

Code size:
2.4 MB (2,489,856 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
OutpostMonitor

Command:
"C:\Program Files1\agnitum\outpos~1\op_mon.exe" \tray \noservice


Scan op_mon.exe - Powered by Reason Core Security