mylbx.exe

My Lockbox

FSPro Labs

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘mylbx’.
Publisher:
FSPro Labs  (signed and verified)

Product:
My Lockbox

Version:
2.9.8.433

MD5:
1fabdd9a2e952002fd68a53ebebf8c4a

SHA-1:
841a6edbbd4052079cf89c2939e97336013c0f14

SHA-256:
d64102e82d9f9f5428bbc6db6a687f3443d52031fb4ba1e3fc2e610ed0047448

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 2:31:20 AM UTC  (today)

File size:
2.5 MB (2,583,328 bytes)

Product version:
2.9.8

Copyright:
Copyright © 2006-2013 FSPro Labs

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\my lockbox\mylbx.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
12/12/2012 12:00:00 AM

Valid to:
2/10/2014 11:59:59 PM

Subject:
CN=FSPro Labs, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=FSPro Labs, L=Taganrog, S=Rostov region, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
45FB369A2BC4B8B5E5131DB218373C22

File PE Metadata
Compilation timestamp:
6/19/1992 11:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:sQI3hXQMJCbYDW9oyZKtaxmGr8SPSeUIqp4d+:sQIxXDiYK+yUrGwSqrgg

Entry address:
0x1000

Entry point:
68, 01, A0, 78, 00, E8, 01, 00, 00, 00, C3, C3, FB, 1B, 9B, F2, 60, DC, 3D, 9C, 95, E4, C4, 81, 6B, 4D, 2C, 83, 9C, A6, 5C, 3E, 14, 97, 8E, 59, 61, B0, 08, 1A, 5E, 3F, 4B, 11, 6A, DE, 78, 2D, F1, 56, 89, 82, 4C, B7, 3C, 68, BB, F4, 9A, 0D, 77, 1A, 25, 44, 53, 87, 71, 8E, 43, E5, 4B, FA, BF, 76, 8C, 7E, A4, F7, 37, B2, 73, C1, 16, F1, BF, 25, F6, 06, 3A, 75, FF, 86, BC, 74, 97, D5, 78, A3, 48, F7, 05, C7, FF, A5, 8D, F9, 8B, 48, 82, 00, 54, 5C, A7, DE, CA, 81, EB, F4, C2, DA, E1, A4, 93, 4E, 23, CD, B7, 66...
 
[+]

Entropy:
7.4725

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
1.7 MB (1,814,016 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
mylbx

Command:
C:\Program Files\my lockbox\mylbx.exe \a


Scan mylbx.exe - Powered by Reason Core Security