cistray.exe

COMODO Internet Security Beta

Comodo Security Solutions

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘COMODO Internet Security’.
Publisher:
COMODO  (signed by Comodo Security Solutions)

Product:
COMODO Internet Security Beta

Version:
7, 0, 305941, 4058

MD5:
8eb4029e8d57da60251f3df74e05e3da

SHA-1:
c4c8ebec47d39861ec9ae9786e69a8754d22ac21

SHA-256:
48c45fd964cf00b070de1fbcad1e0ca5961e30b4d0c3c7a514fddcfe7e51e459

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 6:14:52 PM UTC  (today)

File size:
1.2 MB (1,269,976 bytes)

Product version:
7, 0, 305941, 4058

Copyright:
2005-2013 COMODO. All rights reserved.

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\comodo\comodo internet security\cistray.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
4/7/2013 8:00:00 PM

Valid to:
4/8/2014 7:59:59 PM

Subject:
CN=Comodo Security Solutions, O=Comodo Security Solutions, STREET=1255 Broad St., STREET=Suite 100, L=Clifton, S=New Jersey, PostalCode=07013, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
071AE4A2402BB0AD40F3FBD4402B9290

File PE Metadata
Compilation timestamp:
12/20/2013 11:36:47 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
12288:twEcJ6zSHfmuqzgzNUx57Got0VRAzogvMganQ05opQ35lhX4y6:tPOH+uqzgZUxZGokmzogo/pRX4y6

Entry address:
0x209DC

Entry point:
48, 83, EC, 28, E8, 6F, 64, 00, 00, 48, 83, C4, 28, E9, 52, FE, FF, FF, CC, CC, 48, 8B, C4, 48, 89, 58, 08, 48, 89, 68, 10, 48, 89, 70, 18, 57, 48, 83, EC, 40, 48, 8B, F1, 48, 8B, FA, 48, 8D, 48, D8, 49, 8B, D0, E8, F6, EB, FF, FF, 33, ED, 48, 85, F6, 75, 2D, E8, 4E, 0C, 00, 00, C7, 00, 16, 00, 00, 00, E8, DB, 0B, 00, 00, 40, 38, 6C, 24, 38, 74, 0C, 48, 8B, 44, 24, 30, 83, A0, C8, 00, 00, 00, FD, B8, FF, FF, FF, 7F, E9, 93, 00, 00, 00, 48, 85, FF, 74, CE, 48, 8B, 44, 24, 20, 39, 68, 14, 75, 3A, 48, 2B, F7...
 
[+]

Entropy:
6.0004

Code size:
208 KB (212,992 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
COMODO Internet Security

Command:
C:\Program Files\comodo\comodo internet security\cistray.exe


Scan cistray.exe - Powered by Reason Core Security