wltray.exe

Broadcom 802.11 Wireless Network Tray Applet

Broadcom Corporation

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Broadcom Wireless Manager UI’.
Scan wltray.exe - Powered by Reason Core Security
Publisher:
Broadcom Corporation

Product:
Broadcom 802.11 Wireless Network Tray Applet

Version:
5.60.18.12

MD5:
32fd017b462ecae68c049fb7765dc135

SHA-1:
323e8bab99cb68d5c14feb0cbb89661dfb335995

SHA-256:
2c782bc8e6e80d076143d56884e4f382af7a4f071c43c15e910b03a272557de5

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/8/2016 1:36:40 PM UTC  (today)

File size:
4.2 MB (4,367,360 bytes)

Product version:
5.60.18.12

Copyright:
1998-2009, Broadcom Corporation All Rights Reserved.

Original file name:
wltray.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\broadcom\broadcom 802.11\wltray.exe

File PE Metadata
Compilation timestamp:
9/9/2009 2:05:42 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
24576:Qq7LiKRLlGCaoXYa1H0wS+kUaxeNDl+87z9D0laGlsV1WrgiwLB3JHylLKmSQ+Z:CKRbI+kUaxw7z9jJWfwLHytKb

Entry address:
0x9DAEC

Entry point:
FF, 25, D0, 71, 4B, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8B, 4D, F0, 83, C1, 04, E9, 05, 87, FF, FF, 8B, 54, 24, 08, 8D, 42, F4, 8B, 4A, F0, 33, C8, E8, 20, 8D, FF, FF, B8, 9C, 10, 67, 00, E9, 10, 8D, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8B, 4D, F0, 83, C1, 04, E9, D5, 86, FF, FF, 8B, 54, 24, 08, 8D, 42, FC, 8B, 4A, F8, 33, C8, E8, F0, 8C, FF, FF, B8, C8, 10, 67, 00, E9, E0, 8C, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8B, 4D, F0, 83, C1, 04, E9, A5, 86, FF, FF, 8B...
 
[+]

Code size:
724 KB (741,376 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Broadcom Wireless Manager UI

Command:
C:\Program Files\broadcom\broadcom 802.11\wltray.exe


Scan wltray.exe - Powered by Reason Core Security