cptray.exe

Check Point Endpoint Security

Check Point Software Technologies Ltd.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Check Point Endpoint Security Tray 2.0’.
Publisher:

Product:
Check Point Endpoint Security

Version:
810000547

MD5:
64535f41c13f08a375f2493bed3ee4f2

SHA-1:
7f31dfcc30d1421591dbe2ffb723cc57f7a674b2

SHA-256:
5f6932b33b2f21c7e706156e55235fe03f68cda603f717c11537dc59a8d2cf5b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/12/2025 10:29:49 PM UTC  (today)

File size:
76.4 KB (78,240 bytes)

Product version:
R80

Copyright:
2009 Copyright Check Point Software Technologies Ltd.

Original file name:
cptray.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\common files\check point\uiframework 2.0\bin\cptray.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
4/15/2010 1:00:00 AM

Valid to:
5/7/2011 12:59:59 AM

Subject:
CN=Check Point Software Technologies Ltd., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Check Point Software Technologies Ltd., L=Ramat-Gan, S=Ramat-Gan, C=IL

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
423CF39BF1562989CB58D04FCD33D128

File PE Metadata
Compilation timestamp:
12/9/2010 9:29:14 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x37E6

Entry point:
E8, 88, 04, 00, 00, E9, 36, FD, FF, FF, 8B, FF, 55, 8B, EC, FF, 75, 14, FF, 75, 10, FF, 75, 0C, FF, 75, 08, 68, 90, 34, 40, 00, 68, 04, 68, 40, 00, E8, FA, 04, 00, 00, 83, C4, 18, 5D, C3, CC, FF, 25, 24, 41, 40, 00, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 68, 6B, 40, 00, 89, 0D, 64, 6B, 40, 00, 89, 15, 60, 6B, 40, 00, 89, 1D, 5C, 6B, 40, 00, 89, 35, 58, 6B, 40, 00, 89, 3D, 54, 6B, 40, 00, 66, 8C, 15, 80, 6B, 40, 00, 66, 8C, 0D, 74, 6B, 40, 00, 66, 8C, 1D, 50, 6B, 40, 00, 66, 8C, 05, 4C, 6B, 40, 00...
 
[+]

Entropy:
6.0023

Code size:
12 KB (12,288 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Check Point Endpoint Security Tray 2.0

Command:
"C:\Program Files\common files\check point\uiframework 2.0\bin\cptray.exe"


Scan cptray.exe - Powered by Reason Core Security