PBTRAY.EXE

Phoenix Backup v4

SYDATEC Distribution & Marketing UG (haftungsbeschraenkt)

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Phoenix Backup v4’.
Publisher:
SYDATEC  (signed by SYDATEC Distribution & Marketing UG (haftungsbeschraenkt))

Product:
Phoenix Backup v4

Version:
4.0.0.170

MD5:
1ac6fe76fdaa0665defad836978b63d1

SHA-1:
9928434c23b09a87658f5b7f630001454e653f57

SHA-256:
62f0adf46a24888ad0d504bec33b0c74ebfe5292d2fe77ab97b778c42b806d80

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
7/6/2025 4:08:27 PM UTC  (today)

File size:
772.1 KB (790,664 bytes)

Product version:
4.0.0.0

Copyright:
Copyright © 2010 SYDATEC®

Original file name:
PBTRAY.EXE

File type:
Executable application (Win32 EXE)

Language:
German (Germany)

Common path:
C:\Program Files\sydatec\phoenix backup v4\pbtray.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
8/9/2011 1:51:29 PM

Valid to:
8/9/2012 1:51:29 PM

Subject:
CN=SYDATEC Distribution & Marketing UG (haftungsbeschraenkt), O=SYDATEC Distribution & Marketing UG (haftungsbeschraenkt), L=Berlin, S=Berlin, C=DE

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121E08089C398E50A6F04AD3BFB006434AA

File PE Metadata
Compilation timestamp:
11/24/2011 9:19:56 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x973F8

Entry point:
55, 8B, EC, 83, C4, F0, 53, B8, 0C, 5D, 49, 00, E8, AB, 10, F7, FF, 8B, 1D, 5C, EE, 49, 00, B8, 7C, 74, 49, 00, E8, 8B, E8, FF, FF, 84, C0, 75, 4C, 8B, 03, E8, 74, E3, FD, FF, 8B, 03, 33, D2, E8, DF, FE, FD, FF, 8B, 03, BA, 7C, 74, 49, 00, E8, C3, DD, FD, FF, 8B, 03, C6, 40, 57, 00, 8B, 0D, F0, EF, 49, 00, 8B, 03, 8B, 15, B0, FD, 48, 00, E8, 5E, E3, FD, FF, 6A, 00, 8B, 03, 8B, 80, 70, 01, 00, 00, 50, E8, 12, 20, F7, FF, 8B, 03, E8, 97, E4, FD, FF, 5B, E8, FD, D8, F6, FF, 00, B0, 04, 02, 00, FF, FF, FF, FF...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
601.5 KB (615,936 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Phoenix Backup v4

Command:
C:\Program Files\sydatec\phoenix backup v4\pbtray.exe \startup --restore-last-session


Scan PBTRAY.EXE - Powered by Reason Core Security