iphonebackupextractor.exe

iPhone Backup Extractor

Reincubate Ltd

This file is installed with the program iPhone Backup Extractor.
Publisher:
Reincubate Ltd  (signed and verified)

Product:
iPhone Backup Extractor

Version:
6.0.6.780

MD5:
a3f40e0389f1a3aad0133561bdc13fb2

SHA-1:
d4a6da8ddde2010558e30313f4c9c159d45b9853

SHA-256:
eb8d7b039a255e29f6a6d65c5bea050ddf103d107b889c8ccbb426ac9bad48e1

Scanner detections:
4 / 68

Status:
Clean  (4 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/25/2024 9:13:24 AM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
W32.HfsAutoB
1.3.0.6979

F-Secure
Gen:Adware.BrowseFox.1
11.2015-24-12_5

Rising Antivirus
PE:Malware.XPACK/RDM!5.1 [F]
23.00.65.151222

Trend Micro House Call
Suspicious_GEN.F47V0123
7.2.358

File size:
4.7 MB (4,920,096 bytes)

Product version:
6.0.6.780

Copyright:
Copyright 2008-2014, Reincubate Ltd.

Original file name:
ipbe.views.WinForms.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\roaming\reincubate\iphone backup extractor\iphonebackupextractor.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
4/23/2014 8:00:00 PM

Valid to:
6/22/2016 7:59:59 PM

Subject:
CN=Reincubate Ltd, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Reincubate Ltd, L=London, S=London, C=GB

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
626DBE65C8A3CD1B464DB33676FDCCA1

File PE Metadata
Compilation timestamp:
12/22/2015 5:21:33 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
98304:2PFeZpqGH5fH1vibiM0e2dcSGRWD5VVzXd2OPfnwrrQR4I7o:2PF+pRhnM0eSG8DLVcOg8iIE

Entry address:
0x81A000

Entry point:
53, 89, E3, 81, C3, 04, 00, 00, 00, 57, BF, 04, 00, 00, 00, 29, FB, 5F, 87, 1C, 24, 5C, 89, 34, 24, 51, 89, E1, 81, C1, 04, 00, 00, 00, 83, E9, 04, 33, 0C, 24, 31, 0C, 24, 33, 0C, 24, 5C, 89, 04, 24, 50, 89, E0, 05, 04, 00, 00, 00, 2D, 04, 00, 00, 00, 87, 04, 24, 5C, 89, 0C, 24, 89, 1C, 24, E8, 01, 00, 00, 00, CC, FF, 34, 24, 58, 53, 89, E3, 81, C3, 04, 00, 00, 00, 81, C3, 04, 00, 00, 00, 87, 1C, 24, 5C, 50, 55, 57, BF, 28, 62, D8, 7D, 4F, F7, D7, C1, E7, 06, 81, F7, F4, 58, DB, 54, 81, EF, 00, 5B, 85, 73...
 
[+]

Entropy:
7.9661  (probably packed)

Code size:
5.5 MB (5,775,360 bytes)

The file iphonebackupextractor.exe has been discovered within the following program.

iPhone Backup Extractor  by Reincubate Ltd
About 4% of users remove it
 
Powered by Should I Remove It?

Scan iphonebackupextractor.exe - Powered by Reason Core Security