Inbox64.dll

Inbox Toolbar

Inbox.com, Inc

The module Inbox64.dll, “Inbox Toolbar Browser Object” by Inbox.com, Inc has been detected as a potentially unwanted program by 3 anti-malware scanners.
Publisher:
Inbox.com, Inc.  (signed by Inbox.com, Inc)

Product:
Inbox Toolbar

Description:
Inbox Toolbar Browser Object

Version:
2.0.0.26

MD5:
60e72bb0335be1a367a40d94a4bfccbd

SHA-1:
a027e29a235cb635f36771c55136c1e2733ef5b5

SHA-256:
0dd6e5924e4c4bc5844285b47a43b814bcbef3df8f742c6a07aecce6659667ae

Scanner detections:
3 / 68

Status:
Potentially unwanted

Analysis date:
4/23/2024 10:29:11 PM UTC  (today)

Scan engine
Detection
Engine version

Malwarebytes
PUP.Optional.Inbox
v2016.02.15.12

Reason Heuristics
PUP.Inbox.Toolbar (M)
16.2.15.0

Trend Micro House Call
Suspicious_GEN.F47V1029
7.2.46

File size:
1.5 MB (1,591,256 bytes)

Product version:
2.0.0.0

Copyright:
© Inbox.com, Inc.

Original file name:
Inbox64.dll

File type:
Dynamic link library (Win64 DLL)

Language:
English (United States)

Common path:
C:\Program Files\inbox toolbar\inbox64.dll

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
8/28/2013 7:00:00 PM

Valid to:
9/4/2015 6:59:59 PM

Subject:
CN="Inbox.com, Inc", OU=INBOX.COM, O="Inbox.com, Inc", L=Wilmington, S=DELAWARE, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
4084E537D71E3ED859F43C48F1092DB3

Registration
CLSIDs:
{042DA63B-0933-403D-9395-B49307691690}, {37540F19-DD4C-478B-B2DF-C19281BCAF27}, {D3D233D5-9F6D-436C-B6C7-E63F77503B30}, {D7E97865-918F-41E4-9CD0-25AB1C574CE8}

ProgIDs:
Inbox.JSServer, Inbox.IBX404, Inbox.Toolbar

COM registered:
Yes

File PE Metadata
Compilation timestamp:
10/4/2013 7:21:57 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
12288:W9UEPIBHw85nMeS6B6/7Q736lozihDXvDrhOaSZS2m9M5/mfopZZUKLdQAF:WilBR7Gtz319M9ymUKLdQe

Entry address:
0x115890

Entry point:
55, 48, 81, EC, 90, 00, 00, 00, 48, 8B, EC, 48, 89, 4D, 30, 89, 55, 3C, 4C, 89, 45, 40, 90, 48, 8D, 4D, 48, 48, 8D, 15, B6, 1C, FF, FF, 4C, 8B, 45, 30, 44, 8B, 4D, 3C, 48, 8B, 45, 40, 48, 89, 44, 24, 20, E8, 38, B4, EF, FF, E8, E3, 4B, EF, FF, C7, 85, 8C, 00, 00, 00, 01, 00, 00, 00, EB, 17, 90, 90, E8, 10, 4E, EF, FF, 85, C0, 0F, 94, C0, 48, 0F, B6, C0, 89, 85, 8C, 00, 00, 00, 90, 8B, 85, 8C, 00, 00, 00, 48, 8D, A5, 90, 00, 00, 00, 5D, C3, 90, 48, 83, EC, 28, E8, 37, 42, EF, FF, 48, 83, C4, 28, C3, CC, CC...
 
[+]

Entropy:
6.0200

Code size:
1.1 MB (1,133,056 bytes)

Remove Inbox64.dll - Powered by Reason Core Security