backupmanagertray.exe

Packard Bell MyBackup

NewTech Infosystems, Inc

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘BackupManagerTray’. This is installed with Packard Bell MyBackup.
Publisher:
NewTech Infosystems, Inc.  (signed by NewTech Infosystems, Inc)

Product:
Packard Bell MyBackup

Version:
1.1.0.66

MD5:
051f0f8f6ded729acf5e80109bf19fe1

SHA-1:
fd08fbeeb78673178bedfce1e51517aadf4c8a5d

SHA-256:
a8beef443b778ec975056eee77aa22b2362ab78677b9cd473f50a03304045d62

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 11:31:42 PM UTC  (a few moments ago)

File size:
246.8 KB (252,672 bytes)

Product version:
1.1.0.66

Copyright:
Copyright (C) 2009, NewTech Infosystems, Inc. All rights reserved.

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\newtech infosystems\packard bell mybackup\backupmanagertray.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/27/2008 1:00:00 AM

Valid to:
12/22/2011 12:59:59 AM

Subject:
CN="NewTech Infosystems, Inc", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="NewTech Infosystems, Inc", S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
4F94BE281788D11EEC53062599338F41

File PE Metadata
Compilation timestamp:
5/4/2009 12:37:34 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
3072:ciEw2pVSPdumAN8HsvFOx4TgDVFccEN2pvUjg:Yu1ypvFOx4cS2pvU

Entry address:
0xE44C

Entry point:
E8, A7, 04, 00, 00, E9, 37, FD, FF, FF, 3B, 0D, 28, 70, 41, 00, 75, 02, F3, C3, E9, 29, 05, 00, 00, CC, FF, 25, 80, 01, 41, 00, 8B, FF, 55, 8B, EC, F6, 45, 08, 02, 57, 8B, F9, 74, 25, 56, 68, C4, EA, 40, 00, 8D, 77, FC, FF, 36, 6A, 0C, 57, E8, 4B, 01, 00, 00, F6, 45, 08, 01, 74, 07, 56, E8, 63, F8, FF, FF, 59, 8B, C6, 5E, EB, 14, E8, 20, 06, 00, 00, F6, 45, 08, 01, 74, 07, 57, E8, 4C, F8, FF, FF, 59, 8B, C7, 5F, 5D, C2, 04, 00, FF, 25, F8, 01, 41, 00, 6A, 14, 68, 48, 3D, 41, 00, E8, 82, 03, 00, 00, FF, 35...
 
[+]

Code size:
60 KB (61,440 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
BackupManagerTray

Command:
"C:\Program Files\newtech infosystems\packard bell mybackup\backupmanagertray.exe" -k


The file backupmanagertray.exe has been discovered within the following program.

Packard Bell MyBackup  by NewTech Infosystems
Packard Bell MyBackup is the PB OEM branded version of NTI Backup NOW! which is preinstalled on various Packard Bell computers.
www.ntius.com
21% remove it
 
Powered by Should I Remove It?

Scan backupmanagertray.exe - Powered by Reason Core Security