sgdtray.exe

Security Software Limited

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘SGDTray’.
Publisher:
Security Software Limited  (signed and verified)

MD5:
6454c8163bb4426995625da27ec50840

SHA-1:
782fe01add54060d5ac633b522770a50472452f6

SHA-256:
529512d1aa684e877a7b170c137cdf1b59c2d3f86aace2ccae0a0d647ffff4d8

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 6:27:48 AM UTC  (today)

File size:
1.9 MB (1,979,423 bytes)

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\utililab\searchguardian\sgdtray.exe

Digital Signature
Authority:
DigiCert Inc

Valid from:
10/10/2016 5:00:00 AM

Valid to:
10/12/2017 5:00:00 PM

Subject:
CN=Security Software Limited, O=Security Software Limited, L=London, S=London, C=GB, PostalCode=W1J 6BD, STREET=2nd Floor Berkeley Square House, STREET=Berkeley Square, SERIALNUMBER=08346158, OID.1.3.6.1.4.1.311.60.2.1.3=GB, OID.2.5.4.15=Private Organization

Issuer:
CN=DigiCert EV Code Signing CA (SHA2), OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0E5658A4D65B6A76266BFAC7FB81C374

File PE Metadata
Compilation timestamp:
12/9/2016 7:38:53 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

Entry address:
0x9F4B2

Entry point:
E9, 17, D9, 00, 00, E9, 7F, FE, FF, FF, CC, CC, CC, CC, 80, F9, 40, 73, 15, 80, F9, 20, 73, 06, 0F, AD, D0, D3, EA, C3, 8B, C2, 33, D2, 80, E1, 1F, D3, E8, C3, 33, C0, 33, D2, C3, CC, 80, F9, 40, 73, 15, 80, F9, 20, 73, 06, 0F, A5, C2, D3, E0, C3, 8B, D0, 33, C0, 80, E1, 1F, D3, E2, C3, 33, C0, 33, D2, C3, CC, 8B, 4C, 24, 0C, 57, 85, C9, 0F, 84, 92, 00, 00, 00, 56, 53, 8B, D9, 8B, 74, 24, 14, F7, C6, 03, 00, 00, 00, 8B, 7C, 24, 10, 75, 0B, C1, E9, 02, 0F, 85, 85, 00, 00, 00, EB, 27, 8A, 06, 83, C6, 01, 88...
 
[+]

Entropy:
5.9764

Packer / compiler:
Xtreme-Protector v1.05

Code size:
1.2 MB (1,212,416 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
SGDTray

Command:
C:\Program Files\utililab\searchguardian\sgdtray.exe


Scan sgdtray.exe - Powered by Reason Core Security