systemtray64.exe

SysTray Shortcut

Our IT Department Limited

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘OBSystemTray’.
Publisher:
Our IT Department Limited  (signed and verified)

Product:
SysTray Shortcut

Version:
5, 0, 0, 0

MD5:
4234de214e8e9c14d60e7ab63a16f36a

SHA-1:
fb3e5b4a66d8aaaeb402376f56b9156df7dde690

SHA-256:
b080b49c9d52146387aadd0780d06a297b8a2c642e4dd5281ba541e378ffc6ff

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 4:51:09 AM UTC  (today)

File size:
507.1 KB (519,288 bytes)

Product version:
5, 0, 0, 0

Copyright:
Copyright (C) 2006

Original file name:
SysTray.EXE

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\ourobm\bin\systemtray64.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
4/16/2012 2:00:00 AM

Valid to:
4/17/2014 1:59:59 AM

Subject:
CN=Our IT Department Limited, O=Our IT Department Limited, STREET=400a Hale End Road, STREET=Highams Park, L=London, S=uk, PostalCode=E49PB, C=GB

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00ADD69A3D25206E4F238EF822D4031CE4

File PE Metadata
Compilation timestamp:
4/13/2012 5:52:33 AM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
12288:bqEVY+n9IbQOHwxKImFYJCsAzBwVpLnZhwwv0rWJvdabd8Y:b5VZ9oQObeQsAzMd+

Entry address:
0x374F0

Entry point:
48, 83, EC, 28, E8, 17, 0D, 01, 00, 48, 83, C4, 28, E9, FE, FC, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 40, 53, 48, 83, EC, 60, 48, 8B, 05, 43, 62, 02, 00, 48, 8B, DA, 48, 8D, 54, 24, 20, 48, 89, 02, 48, 8B, 05, 39, 62, 02, 00, 48, 89, 42, 08, 48, 8B, 05, 36, 62, 02, 00, 48, 89, 42, 10, 48, 8B, 05, 33, 62, 02, 00, 48, 89, 42, 18, 48, 8B, 05, 30, 62, 02, 00, 48, 89, 42, 20, 48, 8B, 05, 2D, 62, 02, 00, 48, 89, 42, 28, 48, 8B, 05, 2A, 62, 02, 00, 48, 89, 42, 30, 48, 8B, 05, 27, 62, 02...
 
[+]

Entropy:
6.0549

Code size:
332 KB (339,968 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
OBSystemTray

Command:
"C:\Program Files\ourobm\bin\systemtray64.exe"


Scan systemtray64.exe - Powered by Reason Core Security