wintray.exe

AKADO Wintray

AKADO Wintray

The application wintray.exe by AKADO Wintray has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
АКАДО-Екатеринбург  (signed by AKADO Wintray)

Product:
AKADO Wintray

Version:
8.0.0.72

MD5:
30558a0718ec1ba3f51a34a446aa29b0

SHA-1:
b9439b0855ee5954d9d4db80f62c697ba35365d8

SHA-256:
d330673096a40c8dbd5bae2fc11d6e75d7b563af7acf59f77b010bdf5726ce99

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/25/2024 8:57:43 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
16.12.30.18

File size:
6.4 MB (6,735,200 bytes)

Product version:
1.0.0.0

Copyright:
АКАДО-Екатеринбург

Original file name:
wintray.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\akado wintray\wintray.exe

Digital Signature
Signed by:

Authority:
AKADO Wintray Root CA

Valid from:
10/4/2011 3:07:29 PM

Valid to:
1/1/2040 4:59:59 AM

Subject:
CN=AKADO Wintray, E=wintray@akado-ural.ru

Issuer:
CN=AKADO Wintray Root CA, E=wintray@akado-ural.ru

Serial number:
F4E1175BDF1FD29A4F1D882740649F12

File PE Metadata
Compilation timestamp:
12/26/2016 1:35:54 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

Entry address:
0x205C

Entry point:
EB, 10, 66, 62, 3A, 43, 2B, 2B, 48, 4F, 4F, 4B, 90, E9, 9C, F0, 8B, 00, A1, 8F, F0, 8B, 00, C1, E0, 02, A3, 93, F0, 8B, 00, 52, 6A, 00, E8, 47, AC, 4B, 00, 8B, D0, E8, DA, B1, 4A, 00, 5A, E8, B8, AD, 4A, 00, E8, C3, B6, 4A, 00, 6A, 00, E8, 14, C9, 4A, 00, 59, 68, 38, F0, 8B, 00, 6A, 00, E8, 21, AC, 4B, 00, A3, 97, F0, 8B, 00, 6A, 00, E9, 8B, 5E, 4B, 00, E9, 46, C9, 4A, 00, 33, C0, A0, 81, F0, 8B, 00, C3, A1, 97, F0, 8B, 00, C3, 60, BB, 00, 50, B0, BC, 53, 68, AD, 0B, 00, 00, C3, B9, 6C, 02, 00, 00, 0B, C9...
 
[+]

Code size:
4.7 MB (4,972,544 bytes)

All Users Start Menu Item
Name:
wintray.exe


Remove wintray.exe - Powered by Reason Core Security