wintray.exe

AKADO Wintray

AKADO Wintray

The application wintray.exe by AKADO Wintray has been detected as a potentially unwanted program by 15 anti-malware scanners.
Publisher:
АКАДО-Екатеринбург  (signed by AKADO Wintray)

Product:
AKADO Wintray

Version:
8.0.0.60

MD5:
02f6b9c76fcb5179f3d4402815cce69a

SHA-1:
aa441cb097911161051115cae12ce3c37acc0d2f

Scanner detections:
15 / 68

Status:
Potentially unwanted

Analysis date:
4/18/2024 2:31:26 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.GenericKDV.1326502
1082

AVG
Cryptic
2015.0.3560

Bitdefender
Trojan.GenericKDV.1326502
1.0.20.240

Bkav FE
W32.Clod820.Trojan
1.3.0.4613

Emsisoft Anti-Malware
Trojan.GenericKDV.1326502
8.14.02.17.01

F-Prot
W32/Bifrost.I.gen
v6.4.7.1.166

F-Secure
Trojan.GenericKDV.1326502
11.2014-17-02_2

G Data
Trojan.GenericKDV.1326502
14.2.22

IKARUS anti.virus
Trojan.CryptQV
t3scan.2.2.29

McAfee
Artemis!02F6B9C76FCB
5600.7216

MicroWorld eScan
Trojan.GenericKDV.1326502
15.0.0.144

Norman
Suspicious_Gen2.VRUHO
11.20140217

Panda Antivirus
Suspicious file
14.02.17.01

Reason Heuristics
PUP.AKADOWintray.H
14.12.4.0

VIPRE Antivirus
Trojan.Win32.Generic
25006

File size:
6.1 MB (6,393,696 bytes)

Product version:
1.0.0.0

Copyright:
АКАДО-Екатеринбург

Original file name:
wintray.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\akado wintray\wintray.exe

Digital Signature
Signed by:

Authority:
AKADO Wintray Root CA

Valid from:
10/4/2011 4:07:29 PM

Valid to:
1/1/2040 5:59:59 AM

Subject:
CN=AKADO Wintray, E=wintray@akado-ural.ru

Issuer:
CN=AKADO Wintray Root CA, E=wintray@akado-ural.ru

Serial number:
F4E1175BDF1FD29A4F1D882740649F12

File PE Metadata
Compilation timestamp:
6/17/2013 2:49:20 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
98304:vZ7zvTJlIlRsLAzkOGZ5t7oWDmAGpQ2LSAefyO2CFTAYfDsT:B7zLJlwRsszkOGZ5tkWiA/AefPoT

Entry address:
0x205C

Entry point:
EB, 10, 66, 62, 3A, 43, 2B, 2B, 48, 4F, 4F, 4B, 90, E9, 9C, 00, 8C, 00, A1, 8F, 00, 8C, 00, C1, E0, 02, A3, 93, 00, 8C, 00, 52, 6A, 00, E8, AB, BD, 4B, 00, 8B, D0, E8, 0E, C3, 4A, 00, 5A, E8, EC, BE, 4A, 00, E8, F7, C7, 4A, 00, 6A, 00, E8, 48, DA, 4A, 00, 59, 68, 38, 00, 8C, 00, 6A, 00, E8, 85, BD, 4B, 00, A3, 97, 00, 8C, 00, 6A, 00, E9, BF, 6F, 4B, 00, E9, 7A, DA, 4A, 00, 33, C0, A0, 81, 00, 8C, 00, C3, A1, 97, 00, 8C, 00, C3, 60, BB, 00, 50, B0, BC, 53, 68, AD, 0B, 00, 00, C3, B9, 6C, 02, 00, 00, 0B, C9...
 
[+]

Code size:
4.7 MB (4,976,640 bytes)

Windows Firewall Allowed Program
Name:
C:\Program Files\AKADO WinTray\wintray.exe


Remove wintray.exe - Powered by Reason Core Security