cubby.exe

Cubby

LogMeIn, Inc.

This is installed with Cubby. The file has been seen being downloaded from www.cubby.com and multiple other hosts.
Publisher:
LogMeIn, Inc.  (signed and verified)

Product:
Cubby

Version:
1.0.0.12608

MD5:
cdd27e6243853c89ed318d80a9ba6ac5

SHA-1:
8180682e36adca4163e2af600cda8b3d7e377c7f

SHA-256:
3b2231fc831a4ecf3436888744f36beb103cb8aac85eb9ce76932fff8db2c5dd

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/5/2024 11:12:54 PM UTC  (a few moments ago)

File size:
5.2 MB (5,454,608 bytes)

Product version:
1.0.0.12608

Copyright:
© LogMeIn, Inc. 2013-2014. All rights reserved.

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\cubby.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
9/24/2012 5:00:00 PM

Valid to:
10/10/2015 4:59:59 PM

Subject:
CN="LogMeIn, Inc.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="LogMeIn, Inc.", S=Massachusetts, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
3D7B7E4F14BB04BF34C26686A61ABDA0

File PE Metadata
Compilation timestamp:
8/13/2014 5:30:16 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
98304:EIG+eLZlshHMvcbcgMdH4hj2ZKCa0HA7eIscs72LNB:yMhHYVihjsHA7eIGQNB

Entry address:
0x2A304D

Entry point:
E8, B7, FB, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 10, FF, 75, 0C, 8D, 4D, F0, E8, 65, EA, FF, FF, 8B, 45, F0, 83, B8, AC, 00, 00, 00, 01, 7E, 13, 8D, 45, F0, 50, 6A, 01, FF, 75, 08, E8, 20, FC, 00, 00, 83, C4, 0C, EB, 10, 8B, 80, C8, 00, 00, 00, 8B, 4D, 08, 0F, B7, 04, 48, 83, E0, 01, 80, 7D, FC, 00, 74, 07, 8B, 4D, F8, 83, 61, 70, FD, C9, C3, 8B, FF, 55, 8B, EC, 83, 3D, 50, BD, 7C, 00, 00, 75, 12, 8B, 45, 08, 8B, 0D, 08, B3, 7B, 00, 0F, B7, 04, 41, 83, E0, 01, 5D, C3, 6A, 00, FF, 75, 08...
 
[+]

Entropy:
6.9979

Code size:
3 MB (3,187,712 bytes)

The file cubby.exe has been discovered within the following program.

Cubby  by LogMeIn, Inc.
LogMeIn remote access products use a proprietary remote desktop protocol that is transmitted via SSL. An SSL certificate is created for each remote desktop and is used to cryptographically secure communications between the remote desktop and the accessing computer.
www.logmein.com
About 3% of users remove it
 
Powered by Should I Remove It?

The file cubby.exe has been seen being distributed by the following 4 URLs.