ABossUN.exe

Access Boss

FSPro Labs

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘ABNotify’.
Publisher:
FSPro Labs  (signed and verified)

Product:
Access Boss

Description:
Access Boss User Notifier

Version:
3, 2, 0, 35

MD5:
0d109ecbdae9ac1eb0fa22b6f8101da3

SHA-1:
f4e200dd64cf262db98b91520be842673a0ed515

SHA-256:
cb63d004bfc9cb2f9b9bcbfda3badbad5ad51471f94ac70ff5b183b28d2fa3bc

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 4:33:32 AM UTC  (today)

File size:
131.6 KB (134,784 bytes)

Product version:
3, 2, 0, 0

Copyright:
Copyright (C) 2007-2008, FSPro Labs

Original file name:
ABossUN.exe

File type:
Executable application (Win32 EXE)

Language:
Ingilizce

Common path:
C:\Program Files\access boss 3\abossun.exe

Digital Signature
Signed by:

Authority:
The USERTRUST Network

Valid from:
2/4/2008 2:00:00 AM

Valid to:
2/4/2009 1:59:59 AM

Subject:
CN=FSPro Labs, O=FSPro Labs, STREET="20-6, P.Toliatti st. apt. 20", L=Taganrog, S=Rostov region, PostalCode=347931, C=RU

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
0080E3B9672816DE87DBDE23C4121E10F2

File PE Metadata
Compilation timestamp:
9/29/2008 2:12:09 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
3072:xetXrbiPEAyzZIXja85smBEqI9vF3tDRWbJJU3Bh8I2hhS:xGXrbJeXoFpROSj8rjS

Entry address:
0x38A7

Entry point:
E8, AA, 17, 00, 00, E9, 17, FE, FF, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 18, 11, 41, 00, 89, 0D, 14, 11, 41, 00, 89, 15, 10, 11, 41, 00, 89, 1D, 0C, 11, 41, 00, 89, 35, 08, 11, 41, 00, 89, 3D, 04, 11, 41, 00, 66, 8C, 15, 30, 11, 41, 00, 66, 8C, 0D, 24, 11, 41, 00, 66, 8C, 1D, 00, 11, 41, 00, 66, 8C, 05, FC, 10, 41, 00, 66, 8C, 25, F8, 10, 41, 00, 66, 8C, 2D, F4, 10, 41, 00, 9C, 8F, 05, 28, 11, 41, 00, 8B, 45, 00, A3, 1C, 11, 41, 00, 8B, 45, 04, A3, 20, 11, 41, 00, 8D, 45, 08, A3, 2C, 11, 41, 00, 8B...
 
[+]

Code size:
48 KB (49,152 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
ABNotify

Command:
C:\Program Files\access boss 3\abossun.exe


Scan ABossUN.exe - Powered by Reason Core Security