systemtray64.exe

SysTray Shortcut

SSP Europe GmbH

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘OBSystemTray’.
Publisher:
SSP Europe GmbH  (signed and verified)

Product:
SysTray Shortcut

Version:
5, 0, 0, 0

MD5:
4d716e405b9c43c320cb038ad7d5594e

SHA-1:
b0596162ac5b937ce1964b13a7634702131fefca

SHA-256:
8d7bfd426a318d59400719b5281b64b8db53f68a77a4b3c795f5df56c2305ce4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
7/13/2025 3:09:41 AM UTC  (today)

File size:
510.8 KB (523,040 bytes)

Product version:
5, 0, 0, 0

Copyright:
Copyright (C) 2006

Original file name:
SysTray.EXE

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\ssp secure online backup\bin\systemtray64.exe

Digital Signature
Signed by:

Authority:
thawte, Inc.

Valid from:
1/27/2016 1:00:00 AM

Valid to:
2/26/2018 12:59:59 AM

Subject:
CN=SSP Europe GmbH, O=SSP Europe GmbH, L=Muenchen, S=Bayern, C=DE

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
2D651FF15A7D7261D2E894491879DE7D

File PE Metadata
Compilation timestamp:
7/17/2015 4:59:21 AM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
12288:zBPWe8/JG1q0lzHqH3REGTNrZ7HJx2TjWbwn:leJcrlTU+Gh97HP2Tv

Entry address:
0x38FD0

Entry point:
48, 83, EC, 28, E8, 87, 0D, 01, 00, 48, 83, C4, 28, E9, 0E, FD, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 40, 53, 48, 83, EC, 60, 48, 8B, 05, 13, 6A, 02, 00, 48, 8B, DA, 48, 8D, 54, 24, 20, 48, 89, 02, 48, 8B, 05, 09, 6A, 02, 00, 48, 89, 42, 08, 48, 8B, 05, 06, 6A, 02, 00, 48, 89, 42, 10, 48, 8B, 05, 03, 6A, 02, 00, 48, 89, 42, 18, 48, 8B, 05, 00, 6A, 02, 00, 48, 89, 42, 20, 48, 8B, 05, FD, 69, 02, 00, 48, 89, 42, 28, 48, 8B, 05, FA, 69, 02, 00, 48, 89, 42, 30, 48, 8B, 05, F7, 69, 02...
 
[+]

Code size:
337.5 KB (345,600 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
OBSystemTray

Command:
"C:\Program Files\ssp secure online backup\bin\systemtray64.exe"


Scan systemtray64.exe - Powered by Reason Core Security