Skip to main content
Participant
November 18, 2019
Question

Credential Theft - Adobe Genuine Software Service (AGMService.exe)

  • November 18, 2019
  • 2 replies
  • 6165 views

Please someone help me out. I am currently working on Cyberark EPM tool, Where we are getting Threat events from the below file as this is fetching LSASS Credentials from Windows.

I have few questions. 1) What is the use of Adobe Genuine Software Service (AGMService.exe) ? 

2) Is this application Authenticates the user's mahcine/user's Adbobe software everyday by fetching LSASS credentials from windows ?

3) Can we block the application on user's machine ? Will it affect user's Adobe reader in any way if we block it?

 

Thanks,

Raghav

This topic has been closed for replies.

2 replies

Legend
November 18, 2019

Further tip: your problem as reported does not come from running Adobe software, but from running Cyberark EPM tool. I suggest you contact the makers for advice. Millions of people use Adobe software so they have probably completed an analyis.

 

One more tip: be sure you are not running EOL software, which has known security weaknesses. This includes Acrobat up to version 11, and all Creative Suite apps.

Legend
November 18, 2019

1) This Service is believed to be designed to detect pirate software by a variety of means, which are secret, and to report if found.

2) The operation of this Service is secret.

3) The consequences of blocking this Service are unknown but personally I would not expect them to be good.