Inbox.exe

Inbox Toolbar

Xacti

The application Inbox.exe by Xacti has been detected as a potentially unwanted program by 11 anti-malware scanners. It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘InboxToolbar’. This file is typically installed with the program Inbox Toolbar by Xacti Corp which is a potentially unwanted software program.
Publisher:
Xacti, LLC  (signed by Xacti)

Product:
Inbox Toolbar

Version:
2.0.1.115

MD5:
1edb9ec45b464abba0639b9fa714cb07

SHA-1:
fb877af7397bd034948b2e3f5a34f69dce0558cf

SHA-256:
f7d6a9ce93142fdacdbc712b88a659ea25a43e805a2bd7ccc88c70f0a9122776

Scanner detections:
11 / 68

Status:
Potentially unwanted

Analysis date:
4/25/2024 2:54:08 PM UTC  (today)

Scan engine
Detection
Engine version

AVG
MalSign.Generic
2015.0.3304

Baidu Antivirus
Adware.Win32.Crawler
4.0.3.141031

ESET NOD32
Win32/Toolbar.Inbox.H potentially unwanted application
8.7.0.302.0

IKARUS anti.virus
PUA.Toolbar
t3scan.1.6.1.0

Kaspersky
not-a-virus:WebToolbar.Win32.MusIn
14.0.0.3016

McAfee
Artemis!6097988A73CE
5600.6960

Reason Heuristics
PUP.Optional.Startup.F
14.10.31.19

Total Defense
Win32/Tnega.fUdNVU
37.0.10895

Trend Micro House Call
TROJ_GEN.F47V0321
7.2.304

VIPRE Antivirus
Threat.4150696
32210

XVirus List
Win32.Detected
2.7.3

File size:
1.4 MB (1,424,792 bytes)

Product version:
2.0.0.0

Copyright:
© Inbox.com

Original file name:
Inbox.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\inbox toolbar\inbox.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
8/28/2013 8:00:00 PM

Valid to:
9/18/2015 7:59:59 PM

Subject:
CN=Xacti, O=Xacti, L=Boca Raton, S=Florida, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
723180E2A807DDA0F77264108931DA53

File PE Metadata
Compilation timestamp:
9/11/2014 4:41:21 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:xMZUFE9QYJ402HU+aD9OccsM4q9KBlwszYZY2ujZuAQcAnXKBWH:xfFEhROClYKBlwszY8jZuJznXKI

Entry address:
0xEEE84

Entry point:
55, 8B, EC, 83, C4, F0, B8, 30, 6E, 4E, 00, E8, 6C, D0, F1, FF, E8, 27, 7D, FF, FF, E8, B6, 88, F1, FF, 8B, C0, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.4373

Developed / compiled with:
Microsoft Visual C++

Code size:
950.5 KB (973,312 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
InboxToolbar

Command:
"C:\Program Files\inbox toolbar\inbox.exe" \startup


The file Inbox.exe has been discovered within the following programs.

Inbox Toolbar  by Xacti Corp
Publisher's description - “Inbox.com Toolbar is a search tool allowing users to access their webmail with a single click, receive notification and previews of incoming messages and monitor multiple email accounts.”
www2.inbox.com/legal/about.aspx
75% remove it
 
Powered by Should I Remove It?

Remove Inbox.exe - Powered by Reason Core Security