KWTray.exe

KidsWatch System Tray

Computer Business Solutions, Inc.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘TCTray’.
Publisher:
Computer Business Solutions, Inc.  (signed and verified)

Product:
KidsWatch System Tray

Description:
KidsWatch Tray

Version:
7, 0, 201, 73

MD5:
338cf576b564623925cab2339fdd6286

SHA-1:
fc18fae50a6c07d9aba8f17b0e58616106c735fe

SHA-256:
2a229c985b1e1330bcd15ce45ab836f6ed8985279ee29642bd85cb9d190135c6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/1/2024 6:07:35 PM UTC  (today)

File size:
490.9 KB (502,680 bytes)

Product version:
7, 0, 201, 73

Copyright:
Copyright © 2002-2012 Computer Business Solutions, Inc.

Trademarks:
Copyright © 2002-2012 Computer Business Solutions, Inc.

Original file name:
KWTray.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\computer business solutions\kidswatch\kwtray.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
3/22/2011 1:22:22 PM

Valid to:
3/22/2013 1:21:55 PM

Subject:
E=zarla01@cbsits.com, CN="Computer Business Solutions, Inc.", O="Computer Business Solutions, Inc.", L=Garden City, S=New York, C=US

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000012EDD919C1C

File PE Metadata
Compilation timestamp:
1/11/2012 11:12:00 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
6144:D/+Ur7YhA8zz6c0hXL5yjRzrtnMhlZGcRA0v6ODmq93/+Erd2OwZgAZKTlp70QOI:DgMWz0QSAI6Smq93/pdaeAZKZp70Y/

Entry address:
0x4C2BF

Entry point:
E8, F4, 06, 00, 00, E9, DD, FC, FF, FF, CC, CC, CC, 68, 86, B9, 44, 00, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, 38, A8, 46, 00, 31, 45, FC, 33, C5, 89, 45, E4, 50, 89, 65, E8, FF, 75, F8, 8B, 45, FC, C7, 45, FC, FE, FF, FF, FF, 89, 45, F8, 8D, 45, F0, 64, A3, 00, 00, 00, 00, C3, 8B, 4D, E4, 33, CD, E8, 46, F6, FF, FF, E9, 52, 03, 00, 00, 8B, 00, 81, 38, 63, 73, 6D, E0, 74, 03, 33, C0, C3, E9, 17, 07, 00, 00, 6A, 14, 68, A0, 01, 46, 00, E8, EF, 02...
 
[+]

Code size:
320 KB (327,680 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
TCTray

Command:
C:\Program Files\computer business solutions\kidswatch\kwtray.exe


Scan KWTray.exe - Powered by Reason Core Security