backupmanagertray.exe

Packard Bell MyBackup

NewTech Infosystems, Inc

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘BackupManagerTray’.
Publisher:
NewTech Infosystems, Inc.  (signed by NewTech Infosystems, Inc)

Product:
Packard Bell MyBackup

Version:
1.1.0.86

MD5:
e293edf916f34b66e3017a1aa5cadffa

SHA-1:
9e062fff0a315a4cfcd43b51820efe35992e6d0e

SHA-256:
f669d2266c40c5d78bb789473832c16532f7779a39a3c0d81bc2c94807899d89

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 3:00:32 PM UTC  (today)

File size:
256.8 KB (262,912 bytes)

Product version:
1.1.0.86

Copyright:
Copyright (C) 2009, NewTech Infosystems, Inc. All rights reserved.

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\newtech infosystems\packard bell mybackup\backupmanagertray.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/27/2008 1:00:00 AM

Valid to:
12/22/2011 12:59:59 AM

Subject:
CN="NewTech Infosystems, Inc", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="NewTech Infosystems, Inc", S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
4F94BE281788D11EEC53062599338F41

File PE Metadata
Compilation timestamp:
8/21/2009 5:42:12 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
3072:ys9gyrh/E3csZdRyncAgT49qYkZCOzwJgDVFccEN2pclx:mydNOycFT49qYkZCOzwyS2p

Entry address:
0xFD08

Entry point:
E8, 9B, 04, 00, 00, E9, 37, FD, FF, FF, 3B, 0D, 28, 90, 41, 00, 75, 02, F3, C3, E9, 1D, 05, 00, 00, CC, FF, 25, 30, 22, 41, 00, 8B, FF, 55, 8B, EC, F6, 45, 08, 02, 57, 8B, F9, 74, 25, 56, 68, 74, 03, 41, 00, 8D, 77, FC, FF, 36, 6A, 0C, 57, E8, 4B, 01, 00, 00, F6, 45, 08, 01, 74, 07, 56, E8, 4D, F8, FF, FF, 59, 8B, C6, 5E, EB, 14, E8, 14, 06, 00, 00, F6, 45, 08, 01, 74, 07, 57, E8, 36, F8, FF, FF, 59, 8B, C7, 5F, 5D, C2, 04, 00, FF, 25, 2C, 22, 41, 00, 6A, 14, 68, D8, 61, 41, 00, E8, 76, 03, 00, 00, FF, 35...
 
[+]

Code size:
67 KB (68,608 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
BackupManagerTray

Command:
"C:\Program Files\newtech infosystems\packard bell mybackup\backupmanagertray.exe" -h -k


Scan backupmanagertray.exe - Powered by Reason Core Security