odTray.exe

odyssey client

Juniper Networks, Inc.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘OdTray.exe’.
Publisher:
Pulse Secure, LLC  (signed by Juniper Networks, Inc.)

Product:
odyssey client

Description:
Odyssey Access Client Tray Icon

Version:
5.60.27023.0

MD5:
69c366280836bfdee65205e878db69b5

SHA-1:
fde342dfc2a997b4b25b05f6197cebd9c6cdfd91

SHA-256:
c6f627c4cd770d5d4d1a0c9728ecc473887eed61414665eef9292e6b0b1d0d83

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 1:13:37 AM UTC  (today)

File size:
1.1 MB (1,187,952 bytes)

Product version:
5.60.27023.0

Copyright:
Copyright (c) 2002-2014 Pulse Secure, LLC. All rights reserved

Original file name:
odTray.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\juniper networks\odyssey access client\odtray.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/23/2014 7:00:00 AM

Valid to:
1/23/2017 6:59:59 AM

Subject:
CN="Juniper Networks, Inc.", OU=Pulse-Engineering 2014-1, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Juniper Networks, Inc.", L=Sunnyvale, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
36B140B089ED2A2372AD33AD98D4F931

File PE Metadata
Compilation timestamp:
11/22/2014 4:22:43 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
24576:F/EfS2UZaM2opFXFiuipzz8+JxasWwJW9+lm38heCNoZMUxgZ:F/EazD4raIHWc0Oj5oZMU6

Entry address:
0xCA655

Entry point:
E8, 0E, 07, 00, 00, E9, DA, FC, FF, FF, CC, FF, 25, B8, 24, 4D, 00, FF, 25, BC, 24, 4D, 00, FF, 25, C0, 24, 4D, 00, FF, 25, C4, 24, 4D, 00, FF, 25, C8, 24, 4D, 00, FF, 25, 70, 25, 4D, 00, FF, 25, 74, 25, 4D, 00, FF, 25, 78, 25, 4D, 00, FF, 25, 7C, 25, 4D, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 80, F9, 40, 73, 15, 80, F9, 20, 73, 06, 0F, AD, D0, D3, EA, C3, 8B, C2, 33, D2, 80, E1, 1F, D3, E8, C3, 33, C0, 33, D2, C3, CC, FF, 25, 74, 26, 4D, 00, FF, 25, 80, 25, 4D, 00, FF, 25, 84, 25, 4D, 00, FF, 25, 88...
 
[+]

Entropy:
6.5492

Code size:
836 KB (856,064 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
OdTray.exe

Command:
"C:\Program Files\juniper networks\odyssey access client\odtray.exe"


Scan odTray.exe - Powered by Reason Core Security