BoxCryptor.exe

BoxCryptor

Secomba GmbH

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘BoxCryptor’.
Publisher:
Secomba GmbH  (signed and verified)

Product:
BoxCryptor

Version:
1.4.403.2187

MD5:
6063dc27dfd4315069706b6df02731bf

SHA-1:
047006e8ba1ed805d424e742a9a737ffec64badb

SHA-256:
9f3063e40b90ae6f08c91b7da1abc17b70dacbef97ce62875391ecabe57612b6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 12:19:27 AM UTC  (today)

File size:
3.4 MB (3,578,416 bytes)

Product version:
1.4

Copyright:
Copyright (c) Secomba GmbH 2011-2012

Original file name:
BoxCryptor.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\boxcryptor\boxcryptor.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
6/3/2012 5:00:00 PM

Valid to:
6/4/2014 4:59:59 PM

Subject:
CN=Secomba GmbH, OU=BoxCryptor, O=Secomba GmbH, L=Augsburg, S=Bayern, C=DE

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
4E337B2618146FFE082361473F49216D

File PE Metadata
Compilation timestamp:
10/26/2012 9:57:31 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
49152:BI47KlOL4I9Xlp9FobMCKVhV1JvRq/5FPOeUxXGy48oA3iAYy:VL4ouMVrvR65FPS

Entry address:
0x3534FE

Entry point:
FF, 25, 0C, 35, 75, 00, 00, 00, 00, 00, 00, 00, 00, 00, E0, 34, 35, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.8598

Code size:
3.3 MB (3,479,040 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
BoxCryptor

Command:
C:\Program Files\boxcryptor\boxcryptor.exe


Scan BoxCryptor.exe - Powered by Reason Core Security