plbho.dll

PhishLock

SentryBay Corporation

It is installed within the context of Internet Explore as a BHO (Browser Helper Object) under the name ‘Secure Browse’.
Publisher:
SentryBay  (signed by SentryBay Corporation)

Product:
PhishLock

Version:
3.1.0.3799

MD5:
f102469e6d5520058b81a67e507aa828

SHA-1:
da180c417ac42f6fcd406a3d3049896bd017f9ef

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 6:52:56 AM UTC  (today)

File size:
204.3 KB (209,208 bytes)

Product version:
3.1.0.3799

Copyright:
© SentryBay. All rights reserved.

File type:
Dynamic link library (Win32 DLL)

Language:
Language Neutral

Common path:
C:\Program Files\sentrybay\phishlock\plbho.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
5/6/2009 7:00:00 PM

Valid to:
5/18/2010 6:59:59 PM

Subject:
CN=SentryBay Corporation, OU=Security, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=SentryBay Corporation, L=Auckland, S=Auckland, C=NZ

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
49C9890995DB70219BDED0CBCBB5D34D

Registration
CLSID:
{ff507020-a257-4527-a222-b6f5732e55ee}

COM registered:
Yes

File PE Metadata
Compilation timestamp:
1/25/2010 3:08:43 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
3072:glTOKrBOdRIHhaD3aLku0LB7prn2L+4Y4wdWJ6Rlbzulkc4jJToC+lO0UUU1a5KT:4Pv30LB7xn2L+b4wzzuuc4jyCoTUUUMW

Entry address:
0xDF80

Entry point:
6A, 0C, 68, 28, BB, 01, 10, E8, 44, 2D, 00, 00, 33, C0, 40, 89, 45, E4, 8B, 75, 0C, 33, FF, 3B, F7, 75, 0C, 39, 3D, D4, 15, 02, 10, 0F, 84, B3, 00, 00, 00, 89, 7D, FC, 3B, F0, 74, 05, 83, FE, 02, 75, 31, A1, E4, 1E, 02, 10, 3B, C7, 74, 0C, FF, 75, 10, 56, FF, 75, 08, FF, D0, 89, 45, E4, 39, 7D, E4, 0F, 84, 85, 00, 00, 00, FF, 75, 10, 56, FF, 75, 08, E8, 22, FE, FF, FF, 89, 45, E4, 3B, C7, 74, 72, 8B, 5D, 10, 53, 56, FF, 75, 08, E8, 5F, 95, FF, FF, 89, 45, E4, 83, FE, 01, 75, 0E, 3B, C7, 75, 0A, 53, 57, FF...
 
[+]

Entropy:
6.9739

Developed / compiled with:
Microsoft Visual C++ v7.1

Code size:
102 KB (104,448 bytes)

Internet Explorer BHO
Display name:
Secure Browse

CLSID:
{ff507020-a257-4527-a222-b6f5732e55ee}


Scan plbho.dll - Powered by Reason Core Security