InboxMonitor.exe

eCopy PaperWorks

eCopy, Inc

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘eCopy Scan Inbox Monitor’.
Publisher:
eCopy, Inc.  (signed by eCopy, Inc)

Product:
eCopy PaperWorks

Description:
InboxMonitor.exe

Version:
9.3.0.150

MD5:
23762ab3d8001b4126b2a9c9ae82b265

SHA-1:
1a928680069977d79b494fbf74efa2d6287001ce

SHA-256:
7258d594c48764e39c4825fbd7e934bb888553d49ddc1fc8c23464267fd315ff

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/29/2024 12:51:10 AM UTC  (today)

File size:
77.3 KB (79,112 bytes)

Product version:
9.3.0.150

Copyright:
Copyright (c) 1992-2009 eCopy, Inc. Reservados todos los derechos

Original file name:
InboxMonitor.exe

File type:
Executable application (Win32 EXE)

Language:
Spanish

Common path:
C:\Program Files\ecopy\paperworks\bin\inboxmonitor.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
12/1/2008 1:00:00 AM

Valid to:
1/18/2012 12:59:59 AM

Subject:
CN="eCopy, Inc", OU=Engineering, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="eCopy, Inc", L=Nashua, S=NewHampshire, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
11BD5A16A81CFAE94A20F00C9B000AA6

File PE Metadata
Compilation timestamp:
7/7/2009 4:42:33 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

Entry address:
0x83DB

Entry point:
E8, C4, 02, 00, 00, E9, 36, FD, FF, FF, CC, CC, CC, 68, 41, 84, 00, 08, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, 54, E5, 00, 08, 31, 45, FC, 33, C5, 50, 89, 65, E8, FF, 75, F8, 8B, 45, FC, C7, 45, FC, FE, FF, FF, FF, 89, 45, F8, 8D, 45, F0, 64, A3, 00, 00, 00, 00, C3, 8B, 4D, F0, 64, 89, 0D, 00, 00, 00, 00, 59, 5F, 5F, 5E, 5B, 8B, E5, 5D, 51, C3, FF, 74, 24, 10, FF, 74, 24, 10, FF, 74, 24, 10, FF, 74, 24, 10, 68, 64, 84, 00, 08, 68, 54, E5, 00, 08...
 
[+]

Code size:
36 KB (36,864 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
eCopy Scan Inbox Monitor

Command:
"C:\Program Files\ecopy\paperworks\bin\inboxmonitor.exe" -run


Scan InboxMonitor.exe - Powered by Reason Core Security