KWTray.exe

KidsWatch System Tray

Computer Business Solutions, Inc.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘TCTray’.
Publisher:
© 2009 Computer Business Solutions, Inc.  (signed by Computer Business Solutions, Inc.)

Product:
KidsWatch System Tray

Description:
KidsWatch Tray

Version:
6, 0, 100, 18

MD5:
ebc1421889a3a5e6d84fe0a2f200e834

SHA-1:
98ffa14699f118e7e761dd7d4dbb46f062492269

SHA-256:
5bf8a55d6f21ba0858b310a1439acf9628a5edcb3870c98e5c38dbd9a5641feb

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/2/2024 9:27:45 PM UTC  (today)

File size:
465.3 KB (476,504 bytes)

Product version:
6, 0, 100, 18

Copyright:
Copyright © 2002-2009 Computer Business Solutions, Inc.

Trademarks:
Copyright © 2002-2009 Computer Business Solutions, Inc.

Original file name:
KWTray.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\computer business solutions\kidswatch\kwtray.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
11/19/2008 5:30:00 AM

Valid to:
12/11/2010 5:29:59 AM

Subject:
CN="Computer Business Solutions, Inc.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Computer Business Solutions, Inc.", L=Garden City, S=New York, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
58177C9590379A3C8EAF77DE7DB744E6

File PE Metadata
Compilation timestamp:
3/26/2009 1:44:27 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
6144:69vl47Mb8L780hWq3Nk64qlkPbOD0FP04oJK913/+EqTODYCAZKTlp70QD:6Q6mgeAs4oJi13/4y5AZKZp7R

Entry address:
0x458EE

Entry point:
E8, 71, 05, 00, 00, E9, 35, FD, FF, FF, 68, EE, 50, 44, 00, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, AC, 48, 46, 00, 31, 45, FC, 33, C5, 89, 45, E4, 50, 89, 65, E8, FF, 75, F8, 8B, 45, FC, C7, 45, FC, FE, FF, FF, FF, 89, 45, F8, 8D, 45, F0, 64, A3, 00, 00, 00, 00, C3, 8B, 4D, E4, 33, CD, E8, 88, F7, FF, FF, E9, 22, 02, 00, 00, 6A, 14, 68, 70, 8A, 45, 00, E8, D1, 01, 00, 00, 83, 65, FC, 00, FF, 4D, 10, 78, 3A, 8B, 4D, 08, 2B, 4D, 0C, 89, 4D, 08, FF...
 
[+]

Entropy:
6.5175

Code size:
288 KB (294,912 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
TCTray

Command:
C:\Program Files\computer business solutions\kidswatch\kwtray.exe


Scan KWTray.exe - Powered by Reason Core Security