AgentTray.exe

NTI Corporation

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘AgentTray’. This is installed with Acer Backup Agent Service.
Publisher:
NTI Corporation  (signed and verified)

Description:
Backup Manager Agent

Version:
4.0.1.0069

MD5:
c0d478b332392cbc5c94c7ba5c87dbf3

SHA-1:
ae85931a607fdc57ddbb973c413cd8e1f6c9f614

SHA-256:
f3eee23e7217e7703a696692c7048a0f8e004beff2a9235a51b7437b8ae64071

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 7:46:37 AM UTC  (today)

File size:
300.1 KB (307,264 bytes)

Product version:
4.0.1.0069

Copyright:
Copyright (c) 2012, NTI Corporation. All rights reserved.

Original file name:
AgentTray.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\nti\acer backup agent service\agenttray.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
5/18/2012 2:00:00 AM

Valid to:
6/18/2013 1:59:59 AM

Subject:
CN=NTI Corporation, O=NTI Corporation, L=Irvine, S=California, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
6BBD3BD3A8FA80BF2CCD0E409DA55E40

File PE Metadata
Compilation timestamp:
10/30/2012 6:54:12 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0xE820

Entry point:
E8, 13, 05, 00, 00, E9, 37, FD, FF, FF, 3B, 0D, 28, 80, 41, 00, 75, 02, F3, C3, E9, 95, 05, 00, 00, 6A, 14, 68, C8, 4E, 41, 00, E8, 47, 04, 00, 00, FF, 35, 0C, 8D, 41, 00, 8B, 35, 24, 11, 41, 00, FF, D6, 59, 89, 45, E4, 83, F8, FF, 75, 0C, FF, 75, 08, FF, 15, 28, 11, 41, 00, 59, EB, 67, 6A, 08, E8, 71, 06, 00, 00, 59, 83, 65, FC, 00, FF, 35, 0C, 8D, 41, 00, FF, D6, 89, 45, E4, FF, 35, 08, 8D, 41, 00, FF, D6, 59, 59, 89, 45, E0, 8D, 45, E0, 50, 8D, 45, E4, 50, FF, 75, 08, 8B, 35, 3C, 11, 41, 00, FF, D6, 59...
 
[+]

Code size:
64 KB (65,536 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
AgentTray

Command:
"C:\Program Files\nti\acer backup agent service\agenttray.exe"


The file AgentTray.exe has been discovered within the following programs.

Acer Backup Agent Service  by NTI Corporation
This is an OEM rebranded version of NTI Backup for Acer PCs.
www.nticorp.com
21% remove it
 
Powered by Should I Remove It?

Scan AgentTray.exe - Powered by Reason Core Security