polmon.exe

PowerBroker for Windows

BeyondTrust Software Inc

Publisher:
BeyondTrust Software, Inc.  (signed by BeyondTrust Software Inc)

Product:
PowerBroker for Windows

Description:
Polmon Application

Version:
7.2.1.0

MD5:
ecf11235149dfe56cdcd3feba1edfbe9

SHA-1:
2e41360391996840889bb453b205c8912173436f

SHA-256:
c8fdfeac1c51538d417723b305261c3cc838cfacb6dca5d655b86e53e05653b1

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/5/2025 11:11:28 PM UTC  (a few moments ago)

File size:
186.5 KB (191,016 bytes)

Product version:
7.2.1.0

Copyright:
© 2005-2016 BeyondTrust. All rights reserved.

Original file name:
polmon.exe

File type:
Executable application (Win64 EXE)

Language:
Language Neutral

Common path:
C:\Windows\System32\polmon.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/9/2015 8:00:00 AM

Valid to:
12/23/2018 7:59:59 AM

Subject:
CN=BeyondTrust Software Inc, O=BeyondTrust Software Inc, L=Phoenix, S=Arizona, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7368EFE183CF77ABCBDD1FE9DF4AA8FB

File PE Metadata
Compilation timestamp:
1/4/2017 4:16:09 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0x199E0

Entry point:
48, 83, EC, 28, E8, 53, 03, 00, 00, 48, 83, C4, 28, E9, DA, FC, FF, FF, CC, CC, 48, 89, 4C, 24, 08, 48, 81, EC, 88, 00, 00, 00, 48, 8D, 0D, 99, 07, 03, 00, FF, 15, 9B, 27, 00, 00, 48, 8B, 05, 84, 08, 03, 00, 48, 89, 44, 24, 58, 45, 33, C0, 48, 8D, 54, 24, 60, 48, 8B, 4C, 24, 58, E8, 9F, 10, 00, 00, 48, 89, 44, 24, 50, 48, 83, 7C, 24, 50, 00, 74, 41, 48, C7, 44, 24, 38, 00, 00, 00, 00, 48, 8D, 44, 24, 48, 48, 89, 44, 24, 30, 48, 8D, 44, 24, 40, 48, 89, 44, 24, 28, 48, 8D, 05, 44, 07, 03, 00, 48, 89, 44, 24...
 
[+]

Entropy:
6.1549

Code size:
105.5 KB (108,032 bytes)

Scan polmon.exe - Powered by Reason Core Security