initbasetray.exe

Whatlink Software Limited

It runs as a separate (within the context of its own process) windows Service named “Init Base Control 64-bits Tray”.
Publisher:
Whatlink Software Limited  (signed and verified)

MD5:
41dd0c031c9d2c9fbae53fd60340b93e

SHA-1:
30bc641549d175e4800386211e3cc2690cc71a59

SHA-256:
5bd5ead508f92ce0803ae32aeb20949e7b79d571eb3acc2d781da4048f8f1a41

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 5:04:50 PM UTC  (today)

File size:
1.1 MB (1,148,656 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\Program Files\icedeep, inc\myusbonly by icedeep\initbasetray.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
5/22/2012 7:00:00 PM

Valid to:
5/23/2014 6:59:59 PM

Subject:
CN=Whatlink Software Limited, O=Whatlink Software Limited, STREET="23F, New Trend Centre, 704 Prince Edward Road East, San Po Kong", L=San Po Kong, S=Kowloon, PostalCode=00000, C=HK

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
43259EC376010D27AB2FB3A264BA523A

File PE Metadata
Compilation timestamp:
8/20/2013 3:41:00 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
10.0

CTPH (ssdeep):
24576:cIgdwMlGliKSPlFyKWyWMJXb9bKND+obN3oSR85R+uVRO32:cHGsKS9PpWMJpbhSRAQWR/

Entry address:
0xBEAAC

Entry point:
48, 83, EC, 28, E8, EB, B0, 00, 00, 48, 83, C4, 28, E9, 76, FE, FF, FF, CC, CC, 40, 55, 53, 57, 48, 8B, EC, 48, 83, EC, 40, 83, 65, 30, 00, 83, 65, 38, 00, 83, 65, 20, 00, 48, 8B, FA, 48, 8B, D9, 48, 85, C9, 75, 1B, E8, 19, 1E, 00, 00, BB, 16, 00, 00, 00, 89, 18, E8, 41, 3C, 00, 00, 8B, C3, 48, 83, C4, 40, 5F, 5B, 5D, C3, BA, FF, 00, 00, 00, 41, B8, 24, 00, 00, 00, E8, 33, 05, 00, 00, 48, 85, FF, 74, D0, 48, 83, 3F, 00, 7D, 0E, E8, E3, 1D, 00, 00, BB, 16, 00, 00, 00, 89, 18, EB, CD, 48, B8, FF, 6F, 40, 93...
 
[+]

Entropy:
6.6067

Code size:
850 KB (870,400 bytes)

Service
Display name:
Init Base Control 64-bits Tray

Service name:
InitBaseTray

Type:
Win32OwnProcess


Scan initbasetray.exe - Powered by Reason Core Security