invtray.exe

EAST-TEC SRL

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘east-tec InvisibleSecrets 4’. This is installed with multiple programs including east-tec InvisibleSecrets 4.
Publisher:
EAST-TEC SRL  (signed and verified)

MD5:
be927be94c9e99ece2c331ea79dd3178

SHA-1:
23840ea39606de46dad4f7e710217c0fa3d8aebd

SHA-256:
795e2bd503770f6393e08cab8556147c0cebf4be735e0aef18b78888e508b51d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 3:31:55 AM UTC  (today)

File size:
994.1 KB (1,017,960 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\east-tec invisiblesecrets\invtray.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
10/9/2012 7:00:00 PM

Valid to:
10/10/2013 6:59:59 PM

Subject:
CN=EAST-TEC SRL, O=EAST-TEC SRL, STREET="Str. Balogh Istvan, Nr. 17", L=Oradea, S=Bihor, PostalCode=410238, C=RO

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00EE3FDC79BBA9FA7A9A27D319346BD822

File PE Metadata
Compilation timestamp:
6/19/1992 5:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:OYpEN1VU7ifYZMziEgAlbyrirhK/a5D9iK99SkJ/H3aZUEQcNTqnuDfZUDy5QQ9/:JEN1WG1rhh95B69+uDh8y5QoyjdS4/0

Entry address:
0x91834

Entry point:
55, 8B, EC, B9, 06, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 53, 56, B8, 64, 15, 0A, 00, E8, 11, 50, F7, FF, 8B, 35, 18, 67, 0A, 00, 33, C0, 55, 68, 90, 1A, 0A, 00, 64, FF, 30, 64, 89, 20, A1, C8, 65, 0A, 00, 8B, 00, E8, 49, BC, FB, FF, B2, 01, A1, 64, F4, 05, 00, E8, B9, DC, FB, FF, 8B, D8, BA, A8, 1A, 0A, 00, 8B, C3, E8, CF, E0, FB, FF, 84, C0, 74, 77, 33, C9, BA, A8, 1A, 0A, 00, 8B, C3, E8, 9D, DD, FB, FF, 8D, 4D, F0, BA, E4, 1A, 0A, 00, 8B, C3, E8, 2A, DF, FB, FF, 8B, 55, F0, A1, EC, 65, 0A, 00, E8, 3D...
 
[+]

Entropy:
6.5751

Developed / compiled with:
Microsoft Visual C++

Code size:
579 KB (592,896 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
east-tec InvisibleSecrets 4

Command:
C:\Program Files2\east-t~1\invtray.exe


The file invtray.exe has been discovered within the following programs.

www.east-tec.com
About 3% of users remove it
Invisible Secrets 4  by NeoByte Solutions
Publisher's description - “Invisible Secrets Encryption Software 4 not only encrypts your data and files for safe keeping or for secure transfer across the net, it also hides them in places that on the surface appear totally innocent, such as picture or sound files, or web pages.”
www.invisiblesecrets.com
3% remove it
 
Powered by Should I Remove It?

Scan invtray.exe - Powered by Reason Core Security