soonrclient.exe

Soonr Desktop Agent

SoonR Inc.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Soonr’. This is installed with Soonr Desktop Client.
Publisher:
Soonr, Inc.  (signed by SoonR Inc.)

Product:
Soonr Desktop Agent

Version:
4,2,0,157

MD5:
bac4d1cb792defa6f8d314c4178f5f76

SHA-1:
242fef6e77193dd4d971113b94910574fe242c32

SHA-256:
dbbdb561e71c1510073b56c5b27879a930abdb99a0bcb744c4deb6808cc51814

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/29/2024 7:46:39 PM UTC  (today)

File size:
8.7 MB (9,128,312 bytes)

Product version:
4,2,0,157

Copyright:
Copyright © 2005-2008 Soonr, Inc.

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\soonr\soonr desktop client\soonrclient.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
9/30/2010 7:00:00 PM

Valid to:
10/16/2013 6:59:59 PM

Subject:
CN=SoonR Inc., OU=Development, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=SoonR Inc., L=Menlo Park, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7B9363355B94C364FC692549993A2B33

File PE Metadata
Compilation timestamp:
7/19/2013 3:12:56 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
98304:db7OJ9x3JZ/ZwaCuM42aGtpXmOm8cslnYWbdd+aTKoyBAH8RUAKA7cj1kURUzC/G:F7OJDCPuMK34H+1RY8RUAKU4Ul16Y7N

Entry address:
0x51D0E3

Entry point:
E8, 79, EA, 00, 00, E9, 7F, FE, FF, FF, 3B, 0D, 88, 2A, B9, 00, 75, 02, F3, C3, E9, B9, 2D, 00, 00, CC, CC, CC, CC, 57, 56, 8B, 74, 24, 10, 8B, 4C, 24, 14, 8B, 7C, 24, 0C, 8B, C1, 8B, D1, 03, C6, 3B, FE, 76, 08, 3B, F8, 0F, 82, 68, 03, 00, 00, 0F, BA, 25, 3C, BC, BA, 00, 01, 73, 07, F3, A4, E9, 17, 03, 00, 00, 81, F9, 80, 00, 00, 00, 0F, 82, CE, 01, 00, 00, 8B, C7, 33, C6, A9, 0F, 00, 00, 00, 75, 0E, 0F, BA, 25, EC, 2C, B9, 00, 01, 0F, 82, DA, 04, 00, 00, 0F, BA, 25, 3C, BC, BA, 00, 00, 0F, 83, A7, 01, 00...
 
[+]

Entropy:
6.1663

Code size:
5.9 MB (6,203,392 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Soonr

Command:
"C:\Program Files\soonr\soonr desktop client\soonrclient.exe" -boot


The file soonrclient.exe has been discovered within the following program.

www.soonr.com
About 1% of users remove it
 
Powered by Should I Remove It?

Scan soonrclient.exe - Powered by Reason Core Security