etray.exe

enteo v6

FrontRange Solutions Deutschland GmbH

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘NetInstall NiTray’.
Publisher:
FrontRange Solutions Deutschland GmbH  (signed and verified)

Product:
enteo v6

Description:
DSM tray app

Version:
7.0.2.1535

MD5:
8c1232c0f5ceb1bee3f4dca124d8bf7f

SHA-1:
9cea79d86573e59c703e428b17bcbed258e6f9f0

SHA-256:
af2d8e8e252b04360d0011f42867d84eaabb01d05b5e56787e5dcab903a3b398

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 5:05:33 AM UTC  (today)

File size:
48.6 KB (49,808 bytes)

Product version:
7.0

Copyright:
Copyright © 2006-2011 FrontRange Solutions Deutschland GmbH, Phone: +49 (711) 340 190 0

File type:
Executable application (Win32 EXE)

Language:
German (Germany)

Common path:
C:\Program Files\netinst\etray.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/19/2010 8:00:00 PM

Valid to:
11/5/2013 6:59:59 PM

Subject:
CN=FrontRange Solutions Deutschland GmbH, OU=FrontRange Solutions Deutschland GmbH, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=FrontRange Solutions Deutschland GmbH, L=Filderstadt, S=Baden-Wuerttemberg, C=DE

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
78E0323EB45DAB32AB6BA5C1AE35ACF7

File PE Metadata
Compilation timestamp:
11/17/2011 12:05:14 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
768:672EHbvNrMpF8xltzmO6HVfYG9sw4CTwbLdqx70FW1tyQvL3E5E:9IlQGb6Hz9sw4CsbLdo+Q3vgq

Entry address:
0x506C

Entry point:
55, 8B, EC, 6A, FF, 68, C0, 62, 40, 00, 68, 60, 50, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, 5F, 57, FF, 15, BC, 60, 40, 00, 59, 83, 0D, 68, 78, 40, 00, FF, 83, 0D, 6C, 78, 40, 00, FF, FF, 15, B8, 60, 40, 00, 8B, 0D, 64, 78, 40, 00, 89, 08, FF, 15, B4, 60, 40, 00, 8B, 0D, 60, 78, 40, 00, 89, 08, A1, B0, 60, 40, 00, 8B, 00, A3, 70, 78, 40, 00, E8, 36, 01, 00, 00, 39, 1D, D0, 77, 40, 00, 75, 0C, 68, 10, 52, 40, 00, FF, 15...
 
[+]

Entropy:
6.6072

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
17 KB (17,408 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
NetInstall NiTray

Command:
"C:\Program Files\netinst\etray.exe"


Scan etray.exe - Powered by Reason Core Security