mylbx.exe

My Lockbox

FSPro Labs

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘mylbx’.
Publisher:
FSPro Labs  (signed and verified)

Product:
My Lockbox

Version:
3.9.1.611

MD5:
c84c36b76260ec1e2613b408213bb397

SHA-1:
57fa51363978c000f6147ecb1c808ce0ea69f236

SHA-256:
4fe2689cf542c4ff2a102c857caba3cd5409e2d12a6d36658b230682af7cad78

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 4:18:38 AM UTC  (today)

File size:
2.5 MB (2,634,504 bytes)

Product version:
3.9.1

Copyright:
Copyright © 2006-2015 FSPro Labs

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\my lockbox\mylbx.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
1/8/2014 7:00:00 PM

Valid to:
4/9/2017 7:59:59 PM

Subject:
CN=FSPro Labs, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=FSPro Labs, L=Taganrog, S=Rostov region, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7B6CC6957166C29858134F621F7124F8

File PE Metadata
Compilation timestamp:
11/7/2015 3:29:37 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:mQqecX2xXILwURegayJNG6B206z/k6KrTB88dbOV+beUjqwa4iN:7VcX223QH0z6zFKBlOV+bewqwl8

Entry address:
0x1000

Entry point:
68, 01, 30, B9, 00, E8, 01, 00, 00, 00, C3, C3, E9, D1, D8, A7, 21, 88, 85, CD, 60, 9C, BB, DD, 04, 61, 63, 05, 5B, E1, 10, F1, 3A, 11, FC, EB, 52, B5, 1B, 9E, 28, E9, 0B, 81, 0E, 9C, A9, DF, 33, 5D, 88, F8, 6C, ED, 5A, 95, E3, 7C, 24, AC, F1, 8B, 3A, AE, E1, 65, BD, 81, 93, A5, BA, EE, B6, E1, 94, 2D, 7E, BD, 76, DD, 9E, 83, C2, F1, 29, 7D, B9, D5, DA, 7D, 39, F1, 63, FC, E4, 95, A7, 76, F0, CF, CC, 03, 76, 95, B9, 12, 6A, 4A, 90, B2, 4E, 98, 8D, 46, C5, 23, 80, ED, A4, 68, 3D, D6, 8B, CE, D1, 4E, C2, 26...
 
[+]

Entropy:
7.8994

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
4 MB (4,151,808 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
mylbx

Command:
C:\Program Files\my lockbox\mylbx.exe \a


Scan mylbx.exe - Powered by Reason Core Security