mylbx.exe

My Lockbox

FSPro Labs

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘mylbx’.
Publisher:
FSPro Labs  (signed and verified)

Product:
My Lockbox

Version:
3.0.3.475

MD5:
dcf198393011bd74062c3314d321a9b2

SHA-1:
ea95805f0c0506487749eab5b7ebdd06501625b8

SHA-256:
19dda42c89f99545e940b9e765070c669eaceed8dab373a5b52cce6849c25d45

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 3:51:16 PM UTC  (today)

File size:
2.2 MB (2,256,672 bytes)

Product version:
3.0.3

Copyright:
Copyright © 2006-2013 FSPro Labs

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\my lockbox\mylbx.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
12/12/2012 5:30:00 AM

Valid to:
2/11/2014 5:29:59 AM

Subject:
CN=FSPro Labs, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=FSPro Labs, L=Taganrog, S=Rostov region, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
45FB369A2BC4B8B5E5131DB218373C22

File PE Metadata
Compilation timestamp:
10/4/2013 7:40:03 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:tWPLCDT5P7RdpbXzWkBPk4kUMh2cRYvGAqQtRVtwVjS4C:BDT7dFjWkBs4k/cmY8AtwRtC

Entry address:
0x1000

Entry point:
68, 01, 10, 9E, 00, E8, 01, 00, 00, 00, C3, C3, BB, 91, D9, 0D, C5, 3F, E6, 63, 3B, 48, BD, AA, A2, 98, 3A, CA, 1D, A2, 06, 25, A8, 87, 95, 63, 0F, 8E, 36, 19, E5, 99, FA, C6, 9D, DB, B1, D0, 67, C6, 1D, 9A, 2D, 56, DC, A3, B8, 54, AF, DF, 48, 26, 06, 77, DE, FD, B8, 29, 1C, 09, 4D, F7, 76, 8C, 0C, 5F, 5C, 1E, 9E, 30, 7E, C4, 37, 81, 2F, A4, D1, 03, 82, B5, 65, FD, 86, 66, DE, DE, 67, 5C, 92, F3, BE, A7, 72, 69, AE, 0A, 86, 7A, D1, CC, A7, 0C, 0D, FB, 86, 73, 00, BF, FE, F1, BA, 74, 1E, B4, 2F, 1E, F6, 2A...
 
[+]

Entropy:
7.8929

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
3.6 MB (3,806,720 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
mylbx

Command:
C:\Program Files\my lockbox\mylbx.exe \a


Scan mylbx.exe - Powered by Reason Core Security