BearsTray.exe

Bears Tray

DeskSite

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘BearsTray’. This is installed with Bears DeskSite.
Publisher:
DeskSite  (signed and verified)

Product:
Bears Tray

Version:
15.08.03.4501

MD5:
e3dd02b6f0d3ca84cc9043351dc55a6e

SHA-1:
0ce508b064088df3f861889bf5a1f1df2cd5c551

SHA-256:
fa9c41e8700b0490649fa127870fd165c0df2251b77932357d61f63eddf09ef8

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/4/2024 4:11:52 AM UTC  (today)

File size:
197.4 KB (202,168 bytes)

Product version:
15.08.03.4501

Copyright:
Copyright © DeskSite 2009

Trademarks:
DeskSite

Original file name:
BearsTray.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\desksite software\bears desksite\bearstray.exe

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
7/16/2015 7:00:00 PM

Valid to:
11/18/2016 5:59:59 PM

Subject:
CN=DeskSite, O=DeskSite, L=Irvine, S=California, C=US

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
32D5CF8DA35B3E6B8CA38C1EA8113AEF

File PE Metadata
Compilation timestamp:
8/3/2015 2:42:13 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

Entry address:
0x6B9E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 04, 00, 03, 00, 00, 00, 30, 00, 00, 80, 0E, 00, 00, 00, A0, 00...
 
[+]

Entropy:
6.5207

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
19 KB (19,456 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
BearsTray

Command:
C:\Program Files\desksite software\bears desksite\bearstray.exe


The file BearsTray.exe has been discovered within the following program.

Bears DeskSite  by DeskSite
www.DeskSite.com
About 1% of users remove it
 
Powered by Should I Remove It?

Scan BearsTray.exe - Powered by Reason Core Security