flockbox.exe

FSPro Labs

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘flockbox’.
Publisher:
FSPro Labs  (signed and verified)

Description:
Folder Lockbox

Version:
1.1.5.55

MD5:
167556c7fb5e88e038951fe2c87f6b46

SHA-1:
9aa1893831932c66e298cb2ff38e3a06d3d37849

SHA-256:
9684cb0e47234c02e1edb05bfd054cb707921161f6bfd3fc0f9449536ec8325f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 9:42:12 PM UTC  (today)

File size:
1 MB (1,070,448 bytes)

Product version:
1.1

Copyright:
Copyright © 2006-2007 FSPro Labs

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\mine\flockbox.exe

Digital Signature
Signed by:

Authority:
The USERTRUST Network

Valid from:
1/21/2007 7:00:00 AM

Valid to:
1/22/2008 6:59:59 AM

Subject:
CN=FSPro Labs, O=FSPro Labs, STREET=20-6 P.Toliatti st. apt. 20, L=Taganrog, S=RO, PostalCode=347931, C=RU

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
0080BFAF635421F01F5FBF784912F11AE7

File PE Metadata
Compilation timestamp:
6/20/1992 5:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:BhOYGptjPfnwl4quyVz7CFxXfFxAonSoO0gTv+eGb14/c1VcKLvs6KLvsM40XyFo:BhlijPYbuyFC/n8GeGbW/yVBCh4O045L

Entry address:
0x1000

Entry point:
68, 01, 00, 5B, 00, E8, 01, 00, 00, 00, C3, C3, FD, 4C, D0, 3C, 49, 70, 8F, 02, 23, F5, 3D, 3C, 7C, 2F, 87, 56, 56, E0, C5, 40, 84, C4, AA, B4, 16, 25, 16, 98, AF, AE, 1B, 1B, FC, BC, F4, A9, F3, 9F, 0C, A3, 9C, E1, 90, 72, 01, 62, FB, 18, 72, DA, D5, 4C, B9, 24, A5, 39, 25, 7D, B8, 5C, DE, 18, 48, 26, EE, 03, E9, 2D, 47, 45, 56, 79, B1, 46, 91, D5, 3D, 02, C9, 08, EA, 72, 98, F9, 7C, C9, 93, 09, 66, E7, 06, F9, 79, 9E, 3A, 6E, 31, 64, 1F, 29, E2, 38, 54, EA, 45, F8, A3, 47, C0, 28, 18, 2F, 42, 1D, FF, 17...
 
[+]

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
1.1 MB (1,160,192 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
flockbox

Command:
C:\Program Files\mine\flockbox.exe \a


Scan flockbox.exe - Powered by Reason Core Security