CSTray.exe

Clean Slate

Fortres Grand Corporation

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘CSTray’.
Publisher:
Fortres Grand Corporation  (signed and verified)

Product:
Clean Slate

Description:
CSTray Application

Version:
7.0.4404.0

MD5:
f87b651622979ae23f4549b1a04b70bb

SHA-1:
7e3e60527413abaf352d7a34c7bde9bebcbc2e4c

SHA-256:
82236735e6026644f29d3b428e60c9fabbd54e3166fd7e4f0e731205209d8f0b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 2:40:39 AM UTC  (today)

File size:
306.8 KB (314,144 bytes)

Product version:
7.0.4404.0

Copyright:
Copyright © 2007-2013 Fortres Grand Corporation

Original file name:
CSTray.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\fortres grand\clean slate 7\cstray.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
3/19/2013 1:04:30 PM

Valid to:
3/19/2016 1:04:30 PM

Subject:
E=trust@fortresgrand.com, CN=Fortres Grand Corporation, O=Fortres Grand Corporation, L=Plymouth, S=IN, C=US

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121B11AB04C88D9CA4ABCC9E92D1D4FFEF1

File PE Metadata
Compilation timestamp:
5/15/2014 4:13:18 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
6144:WZRUmKvKBliB1pOsNTEwCOW/uREn/3Kacf5pXA:W/UHmgBDhW6jA

Entry address:
0xE3BC

Entry point:
48, 83, EC, 28, E8, 17, 86, 00, 00, 48, 83, C4, 28, E9, 52, FE, FF, FF, CC, CC, 40, 55, 41, 54, 41, 55, 41, 56, 41, 57, 48, 83, EC, 50, 48, 8D, 6C, 24, 40, 48, 89, 5D, 40, 48, 89, 75, 48, 48, 89, 7D, 50, 48, 8B, 05, FA, E4, 01, 00, 48, 33, C5, 48, 89, 45, 08, 8B, 5D, 60, 33, FF, 4D, 8B, F1, 45, 8B, F8, 89, 55, 00, 85, DB, 7E, 2A, 44, 8B, D3, 49, 8B, C1, 41, FF, CA, 40, 38, 38, 74, 0C, 48, FF, C0, 45, 85, D2, 75, F0, 41, 83, CA, FF, 8B, C3, 41, 2B, C2, FF, C8, 3B, C3, 8D, 58, 01, 7C, 02, 8B, D8, 44, 8B, 65...
 
[+]

Entropy:
6.1025

Code size:
122.5 KB (125,440 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
CSTray

Command:
C:\Program Files\fortres grand\clean slate 7\cstray.exe


Scan CSTray.exe - Powered by Reason Core Security