boinctray.exe

BOINC client

University of California, Berkeley

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘boinctray’.
Publisher:
Charity Engine  (signed by University of California, Berkeley)

Product:
BOINC client

Description:
Charity Engine System Tray for Windows

Version:
7.0.80

MD5:
1d86351c4ee4ea2642c7c3f0145e94f8

SHA-1:
b85d6d5fccdb603a5bb786e772216cf3bad04004

SHA-256:
51ab79a86a110fb689c4530dd1baf167fe49123e9a21925d0433f56a6d90281f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 7:29:49 PM UTC  (today)

File size:
69.6 KB (71,312 bytes)

Product version:
7.0.80

Copyright:
© 2003-2013 University of California

Original file name:
boinctray.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\boinc\boinctray.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
1/7/2013 7:00:00 PM

Valid to:
1/4/2015 6:59:59 PM

Subject:
CN="University of California, Berkeley", OU=SPACE SCIENCES LABORATORY, O="University of California, Berkeley", L=Berkeley, S=California, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
7A3A0B81EFB73737F878809989C13B50

File PE Metadata
Compilation timestamp:
3/7/2014 2:51:31 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

Entry address:
0x15B1

Entry point:
E8, 1A, 04, 00, 00, E9, 39, FD, FF, FF, CC, FF, 25, 68, 92, 40, 00, 6A, 14, 68, 60, B6, 40, 00, E8, 5A, 03, 00, 00, 83, 65, FC, 00, FF, 4D, 10, 78, 3A, 8B, 4D, 08, 2B, 4D, 0C, 89, 4D, 08, FF, 55, 14, EB, ED, 8B, 45, EC, 89, 45, E4, 8B, 45, E4, 8B, 00, 89, 45, E0, 8B, 45, E0, 81, 38, 63, 73, 6D, E0, 74, 0B, C7, 45, DC, 00, 00, 00, 00, 8B, 45, DC, C3, E8, 56, 04, 00, 00, 8B, 65, E8, C7, 45, FC, FE, FF, FF, FF, E8, 50, 03, 00, 00, C2, 10, 00, 6A, 0C, 68, 80, B6, 40, 00, E8, FC, 02, 00, 00, 83, 65, E4, 00, 8B...
 
[+]

Code size:
32 KB (32,768 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
boinctray

Command:
"C:\Program Files\boinc\boinctray.exe"


Scan boinctray.exe - Powered by Reason Core Security