OVTray.exe
Online Vault by Crawler (Signed)
Warning 7 antivirus scanners has detected malware in various versions of OVTray.exe.
Overview
ovtray.exe has 9 known versions, the most recent one is 1.0.0.35. ovtray.exe is run as a standard windows process with the logged in user's account privileges. During installation, a run registry key for all users is added that will cause the program to run each time any user logs on to Windows. The average file size is about 362.51 KB. It is an authenticode code-signed executable issued to Crawler by the certification authority VeriSign. Some variations of the file have been seen to be installed with the program Online Vault from Crawler, LLC. During the process's lifecycle, the typical CPU resource utilization is about 0.0051% including both foreground and background operations, the average private memory consumption is about 3.32 MB with the maximum memory reaching around 9.55 MB and typical read I/O operations are around 568 Bytes per minute.
What is ovtray.exe?
Online Vault Tray is the program that runs in the Windows system tray notification area and provides access to the main Online Vault progam. This process run on startup and stays running in the background. Online Vault bundles and requires the Crawler Toolbar, a web browser search based toolbar that display advertisements.
About ovtray.exe (from Crawler)
“Online Vault is dedicated to providing our customers with the peace of mind that comes from knowing that their information and photo memories are protected. We believe that the people entrusting their”
Details |
File name: | ovtray.exe |
Publisher: | Crawler.com |
Product name: | Online Vault |
Description: | Online Vault Tray |
Typical file path: | C:\Program Files\onlinevault\ovtray.exe |
Certificate |
Issued to: | Crawler |
Authority (CA): | VeriSign |
Expiration date: | Wednesday, December 11, 2013 |
Programs installed in
(Note, the programs listed below are for all versions of Online Vault.)
“Online Vault is a small yet powerful application that automatically backs up all your important data to secure servers but also makes it possible for you to access it on the go! Keeping your data secu...”
Behaviors
(Note, the behaviors below are for all versions of ovtray.exe, select a unique version for details.)
Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
- 'Online Vault' → "C:\Program Files\OnlineVault\OVTray.exe"
Malware detections
Based on 40+ industry antivirus scanners, 7 of them detected the following malware.
Antivirus engine | Engine version | Detection | File version |
ByteHero |
1.0.0.1 |
Trojan-Downloader.win32.Agent.gen.123 |
1.0.0.27 |
ByteHero |
1.0.0.1 |
Trojan-Downloader.Win32.DlfBfkg.ln |
1.0.0.29 |
ByteHero |
1.0.0.1 |
Trojan-Downloader.Win32.DlfBfkg.ln |
1.0.0.29 |
ByteHero |
1.0.0.1 |
Trojan-Downloader.Win32.DlfBfkg.ln |
1.0.0.35 |
ByteHero |
1.0.0.1 |
Trojan-Downloader.Win32.DlfBfkg.ln |
1.0.0.33 |
ByteHero |
1.0.0.1 |
Trojan-Downloader.Win32.DlfBfkg.ln |
1.0.0.35 |
PC Tools |
9.0.0.2 |
HeurEngine.ZeroDayThreat |
1.0.0.35 |
All file variations of ovtray.exe
Distribution by Windows OS
OS version | distribution |
Windows 7 Home Premium |
28.57% |
|
Windows 7 Ultimate N |
21.43% |
|
Windows 8 |
14.29% |
|
Windows 7 Ultimate |
14.29% |
|
Windows Vista Home Premium |
7.14% |
|
Windows 7 Professional |
7.14% |
|
Windows Vista Home Basic |
7.14% |
|
Distribution by country
United States installs about 85.71% of Online Vault.
Distribution by PC manufacturer
PC Manufacturer | distribution |
Dell |
54.55% |
|
Hewlett-Packard |
36.36% |
|
Acer |
9.09% |
|