comiptray.exe

COM/IP

Tactical Software, LLC

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘COMIPSysTray’.
Publisher:
Tactical Software, LLC  (signed and verified)

Product:
COM/IP®

Description:
SystemTray MFC Application

Version:
4.9.6

MD5:
ecffdb751dbfbaa1619743c5ebf45416

SHA-1:
0cb4106b63f55077e0d11df29c5cce2e459ee2da

SHA-256:
dfa52156f1bb19bb1e742f951b3494998c6bb118db16d6b6ffb24fff62ce8b7a

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
5/1/2024 9:23:25 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Crypt.XPACK.Gen2
7.11.30.172

File size:
479.1 KB (490,632 bytes)

Product version:
4.9.6

Copyright:
Copyright © 2014 Tactical Software, LLC

Original file name:
SystemTray.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\tactical software\comip\comiptray.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
4/25/2012 9:36:34 AM

Valid to:
4/26/2015 9:36:34 AM

Subject:
E=support@tacticalsoftware.com, CN="Tactical Software, LLC", O="Tactical Software, LLC", L=Bedford, S=NH, C=US

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11216063C96B1525E5BE78BD7B0AEA996F36

File PE Metadata
Compilation timestamp:
3/17/2014 3:16:20 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:bOr7ax6KILvZ98V4E4jyhe3M36maYgP914:6HaxIjX8V4E4+nvG14

Entry address:
0x220D0

Entry point:
55, 8B, EC, 6A, FF, 68, B0, 4E, 44, 00, 68, B4, 72, 42, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, 60, 22, 44, 00, 33, D2, 8A, D4, 89, 15, FC, 77, 4A, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, F8, 77, 4A, 00, C1, E1, 08, 03, CA, 89, 0D, F4, 77, 4A, 00, C1, E8, 10, A3, F0, 77, 4A, 00, 6A, 01, E8, 1F, 51, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, C3, 00, 00, 00, 59, E8, 3C, 44, 00, 00, 85, C0, 75, 08, 6A, 10, E8, B2, 00, 00, 00, 59, 33, F6, 89, 75...
 
[+]

Entropy:
6.3846

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
260 KB (266,240 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
COMIPSysTray

Command:
"C:\Program Files\tactical software\comip\comiptray.exe"


Scan comiptray.exe - Powered by Reason Core Security