UniTray.exe

UniArgus

UniSVR Global Information Technology Corporation

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘UniWDSvc’.
Publisher:
UniSVR Global Information Technology Corp.  (signed by UniSVR Global Information Technology Corporation)

Product:
UniArgus

Description:
UniArgus SystemTray

Version:
2.2011.8.11

MD5:
f287004affa6967e3c35fdf9849d1c97

SHA-1:
bc1c36bfbc3bc1cfa11979cc259b71f60d548f3e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/18/2024 5:09:59 AM UTC  (today)

File size:
74.4 KB (76,192 bytes)

Product version:
2.6.0.0

Copyright:
2010 (c) UniSVR Corp. All rights reserved.

Original file name:
UniTray.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\uniargus express lite\bin\unitray.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/14/2010 8:00:00 AM

Valid to:
7/16/2013 7:59:59 AM

Subject:
CN=UniSVR Global Information Technology Corporation, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=UniSVR Global Information Technology Corporation, L=Taipei, S=Taiwan, C=TW

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
12B0F3B29C3C64F96EE64506F8E37236

File PE Metadata
Compilation timestamp:
5/30/2012 2:52:22 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
1536:gUjq/YLHIv5bwSc2LrUpGL6nT/g5y88888888O888888hn8888ZA88n88V8888nc:gAq/YLH6b/rFWTewy2OMVGPh9p

Entry address:
0x8BAA

Entry point:
E8, 99, 04, 00, 00, E9, 36, FD, FF, FF, 6A, 14, 68, 20, C2, 40, 00, E8, D0, 01, 00, 00, 83, 65, FC, 00, FF, 4D, 10, 78, 3A, 8B, 4D, 08, 2B, 4D, 0C, 89, 4D, 08, FF, 55, 14, EB, ED, 8B, 45, EC, 89, 45, E4, 8B, 45, E4, 8B, 00, 89, 45, E0, 8B, 45, E0, 81, 38, 63, 73, 6D, E0, 74, 0B, C7, 45, DC, 00, 00, 00, 00, 8B, 45, DC, C3, E8, DE, 04, 00, 00, 8B, 65, E8, C7, 45, FC, FE, FF, FF, FF, E8, C6, 01, 00, 00, C2, 10, 00, 6A, 0C, 68, 40, C2, 40, 00, E8, 72, 01, 00, 00, 83, 65, E4, 00, 8B, 75, 0C, 8B, C6, 0F, AF, 45...
 
[+]

Entropy:
6.1808

Code size:
35.5 KB (36,352 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
UniWDSvc

Command:
"C:\Program Files\uniargus express lite\bin\unitray.exe"


Scan UniTray.exe - Powered by Reason Core Security