BIBLauncher.exe

Business-in-a-Box Launcher

Biztree Inc.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘BIBLauncher’.
Publisher:
Biztree Inc.  (signed and verified)

Product:
Business-in-a-Box Launcher

Description:
Business-in-a-Box Launcher Application

Version:
1, 2, 0, 0

MD5:
3d687e84a4cc6b922b57b5e791e87768

SHA-1:
0ab89b65d868bf827698ea6a908535cdefdbe012

SHA-256:
bd23ae15e43f7f9871bfbea791ea8325f7290e1e26b1047d319a21de23c3a4b5

Scanner detections:
5 / 68

Status:
Clean  (5 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/25/2024 10:52:49 PM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
HW32.TsCabk
1.3.0.4959

NANO AntiVirus
Trojan.Win32.FakeAVJO.ccgkes
0.28.2.61942

Sophos
Mal/FakeAV-JO
4.98

Trend Micro House Call
TROJ_GEN.R0C1H08F714
7.2.24

VIPRE Antivirus
Trojan.Win32.Generic
32960

File size:
2.6 MB (2,760,560 bytes)

Product version:
1, 2, 0, 0

Copyright:
Copyright (C) 2014

Original file name:
BIBLauncher.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\business-in-a-box\biblauncher.exe

Digital Signature
Signed by:

Authority:
GoDaddy.com, Inc.

Valid from:
4/7/2014 3:56:57 PM

Valid to:
5/9/2017 10:20:08 AM

Subject:
CN=Biztree Inc., O=Biztree Inc., L=Montreal, S=Quebec, C=CA

Issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
08199DF04FFF5F

File PE Metadata
Compilation timestamp:
6/20/2014 11:50:57 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:TvYZFSNI3ie0WnCpIWykXGsfjIFdrTUT8EBRRRRRqeeqN6uyUwD26eXZB:kZ42sWnsIWzG7d1EBRRRRRn6uyUwDM

Entry address:
0xA8220

Entry point:
60, 9C, FC, B8, 01, 00, 00, 00, B9, FF, FF, 00, 00, E0, FE, 48, 83, F8, 00, 75, F3, 68, 19, 9C, 6A, 00, FF, 15, AC, 81, 5F, 00, 68, 26, 9C, 6A, 00, 50, FF, 15, D8, 82, 5F, 00, 8B, D8, 50, 8B, CC, 51, 6A, 40, 68, 5B, 00, 00, 00, 68, 20, 82, 4A, 00, FF, D0, 8B, CC, 51, 6A, 40, 68, 19, 00, 00, 00, 68, 00, 9C, 6A, 00, 8B, C3, FF, D0, 83, C4, 04, E9, 85, 19, 20, 00, 0C, 57, FF, 75, 08, E8, 1B, 10, 00, 00, 83, C4, 0C, 39, 7D, 10, 74, B6, 39, 75, 0C, 73, 0E, E8, 8A, 65, 00, 00, 6A, 22, 59, 89, 08, 8B, F1, EB, AD...
 
[+]

Entropy:
6.4887

Code size:
2.7 MB (2,792,448 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
BIBLauncher

Command:
C:\Program Files\business-in-a-box\biblauncher.exe


Scan BIBLauncher.exe - Powered by Reason Core Security