Avira.OE.Systray.exe

Avira.OE.Systray

Avira Operations GmbH & Co. KG

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Avira Systray’.
Publisher:
Avira Operations GmbH & Co. KG  (signed and verified)

Product:
Avira.OE.Systray

Version:
1.0.5137.29831

MD5:
f1887fdd390e7de33dc1f402d45cd823

SHA-1:
a1fb8f73d0adbae638f44a13f3e02ae916309f4d

SHA-256:
5a603ad75f767364776994f8e703c7c521098cf2e124addc89b9cedca627557f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
3/6/2014 4:04:30 PM UTC  (five months ago)

File size:
170.6 KB (174,648 bytes)

Product version:
1.0.5137.29831

Copyright:
Copyright © 2000 - 2013 Avira Operations GmbH & Co KG

Original file name:
Avira.OE.Systray.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\avira\my avira\avira.oe.systray.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/20/2011 8:00:00 AM

Valid to:
7/20/2014 7:59:59 AM

Subject:
CN=Avira Operations GmbH & Co. KG, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Avira Operations GmbH & Co. KG, L=Tettnang, S=Baden Wuerttemberg, C=DE

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
54971FF238D2B866F27FC3FE6C9AD577

File PE Metadata
Compilation timestamp:
1/24/2014 11:34:22 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:rrB2KBw6PHBu1Bw6PHBuwggWtZ1nRneiQymNeXvIGwA:f6gvHveWQ2IGj

Entry address:
0x254AE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.2503

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
141.5 KB (144,896 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Avira Systray

Command:
C:\Program Files\avira\my avira\avira.oe.systray.exe


There are numerous known variations of Avira.OE.Systray.exe by Avira Operations GmbH & Co. KG.

0 / 68
Avira.OE.Systray.exe  1.1.20.29596  (33e6ea40b81a501bf2bc7a26a8e64b5d5510e705)

0 / 68
Avira.OE.Systray.exe  1.1.19.30000  (7d64ea88d8e54f5a40cfe2a3ddb18bd30e7c11e8)

0 / 68
Avira.OE.Systray.exe  1.1.18.30000  (4ec27f4dea5540e1ac710d63ed2d57d1b358fd1e)

0 / 68
Avira.OE.Systray.exe  1.1.18.28457  (fc8cf3af01bea0616134769bef3127b82b6f78c7)

0 / 68
Avira.OE.Systray.exe  1.1.17.31000  (3615065b09f7a4a08a9eb5ee401b6923b9914308)

0 / 68
Avira.OE.Systray.exe  1.1.17.26278  (0492d7276fc4da8ef11b6dbd6f04da56c920f01d)

0 / 68
Avira.OE.Systray.exe  1.1.16.30000  (731becc1a42d97a08e61eb10ba51a8fd52d5f6dc)

0 / 68
Avira.OE.Systray.exe  1.1.15.18000  (6ee27a4e21d5c29140ae4d05ada582fc06627062)

0 / 68
Avira.OE.Systray.exe  1.1.15.16464  (e825e39efa1ace5a144323d2a2517e01ce3df11f)

0 / 68
Avira.OE.Systray.exe  1.1.14.22901  (2ddd1bb74c5fa6be7475aeb87e083b240011c67c)

0 / 68
Avira.OE.Systray.exe  1.1.13.24202  (4a7224f4a4dd7137c409a11167857e09dbf3bc7b)

0 / 68
Avira.OE.Systray.exe  1.1.13.21245  (832aa0a64bece6855c9535640a704db136e9809a)

0 / 68
Avira.OE.Systray.exe  1.1.12.20002  (9bc6fc5397cc00d9efb7c56cd6c272e1a0c354a0)

0 / 68
Avira.OE.Systray.exe  1.1.12.20001  (ddc9a4e2d15159f463a1d975d48eb5975ee51f6b)

0 / 68
Avira.OE.Systray.exe  1.0.5065.25415  (99be8489b54cb5b26ca8c237287793ffb7d21ede)

0 / 68
Avira.OE.Systray.resources.dll  (32e22a14421604c851392c0582c7e2a6b4e50b11)

Distribution by Country