boinctray.exe

BOINC client

University of California, Berkeley

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘boinctray’.
Publisher:
Space Sciences Laboratory  (signed by University of California, Berkeley)

Product:
BOINC client

Description:
BOINC System Tray for Windows

Version:
6.13.12

MD5:
25158a30e74862bb970acd780ac06fa7

SHA-1:
d294463f2ce8e17e831f5fccdc86174beb77684a

SHA-256:
f5cf4ec87239799628e3174dad2b04f6d271ce13570c82cb5e0af478bd85e385

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 1:40:41 AM UTC  (today)

File size:
69.2 KB (70,832 bytes)

Product version:
6.13.12

Copyright:
© 2003-2011 University of California

Original file name:
boinctray.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\boinc\boinctray.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
2/28/2011 7:00:00 PM

Valid to:
1/4/2013 6:59:59 PM

Subject:
CN="University of California, Berkeley", OU=SPACE SCIENCES LABORATORY, O="University of California, Berkeley", L=Berkeley, S=California, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
03475730592F03FF278231AAE2D9786D

File PE Metadata
Compilation timestamp:
11/11/2011 12:42:43 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
1536:OabAG3v6JTT3zqTjxxIFkDNJ/5//vrgxsmPqMOp8h7z5SeIOSl:OaUQUHuTjcFkDNJR//zgxsYOp8Jw/j

Entry address:
0x1820

Entry point:
48, 83, EC, 28, E8, 37, 04, 00, 00, 48, 83, C4, 28, E9, BE, FC, FF, FF, FF, 25, 60, 8C, 00, 00, CC, CC, CC, CC, CC, CC, CC, CC, 48, 89, 5C, 24, 10, 44, 89, 44, 24, 18, 48, 89, 4C, 24, 08, 56, 57, 41, 54, 48, 83, EC, 40, 49, 8B, F1, 41, 8B, F8, 4C, 8B, E2, 48, 8B, D9, 83, EF, 01, 89, 7C, 24, 70, 78, 0F, 49, 2B, DC, 48, 89, 5C, 24, 60, 48, 8B, CB, FF, D6, EB, E8, EB, 00, 48, 8B, 5C, 24, 68, 48, 83, C4, 40, 41, 5C, 5F, 5E, C3, CC, CC, CC, CC, CC, 40, 55, 48, 83, EC, 20, 48, 8B, EA, 48, 89, 4D, 38, 48, 89, 4D...
 
[+]

Entropy:
6.1384

Code size:
36 KB (36,864 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
boinctray

Command:
"C:\Program Files\boinc\boinctray.exe"


Scan boinctray.exe - Powered by Reason Core Security