charityengine.exe

BOINC client

University of California, Berkeley

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘boincmgr’.
Publisher:
Charity Engine  (signed by University of California, Berkeley)

Product:
BOINC client

Description:
Charity Engine for Windows

Version:
7.0.80

MD5:
2a15037b2200c9c91ea846f672465e8f

SHA-1:
29bab77052e9f8937f171165bc12d7383103eac3

SHA-256:
628eb2e266a4032e45d071477f7b60b417a3c8b8f861761a635fa2108f08dffe

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 7:04:01 PM UTC  (today)

File size:
3.6 MB (3,757,712 bytes)

Product version:
7.0.80

Copyright:
© 2003-2013 University of California

Original file name:
progressthruprocessors.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\boinc\charityengine.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
1/8/2013 2:00:00 AM

Valid to:
1/5/2015 1:59:59 AM

Subject:
CN="University of California, Berkeley", OU=SPACE SCIENCES LABORATORY, O="University of California, Berkeley", L=Berkeley, S=California, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
7A3A0B81EFB73737F878809989C13B50

File PE Metadata
Compilation timestamp:
3/7/2014 9:52:26 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

Entry address:
0xB5814

Entry point:
E8, BB, 04, 00, 00, E9, 39, FD, FF, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 20, 56, 73, 00, 89, 0D, 1C, 56, 73, 00, 89, 15, 18, 56, 73, 00, 89, 1D, 14, 56, 73, 00, 89, 35, 10, 56, 73, 00, 89, 3D, 0C, 56, 73, 00, 66, 8C, 15, 38, 56, 73, 00, 66, 8C, 0D, 2C, 56, 73, 00, 66, 8C, 1D, 08, 56, 73, 00, 66, 8C, 05, 04, 56, 73, 00, 66, 8C, 25, 00, 56, 73, 00, 66, 8C, 2D, FC, 55, 73, 00, 9C, 8F, 05, 30, 56, 73, 00, 8B, 45, 00, A3, 24, 56, 73, 00, 8B, 45, 04, A3, 28, 56, 73, 00, 8D, 45, 08, A3, 34, 56, 73, 00, 8B...
 
[+]

Entropy:
6.1181

Code size:
2.2 MB (2,281,472 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
boincmgr

Command:
"C:\Program Files\boinc\charityengine.exe" \a \s


Scan charityengine.exe - Powered by Reason Core Security