pb.exe

Peggle Blaster

r-cid.com

This is a setup program which is used to install the application. The file has been seen being downloaded from download1089.mediafire.com and multiple other hosts.
Publisher:
r-cid.com

Product:
Peggle Blaster

Version:
1.00

MD5:
381a759f8895efd45ea3479ae6504426

SHA-1:
34ce7a225ac0adf4771447feae1726169b48af37

SHA-256:
f5742d7bd1b745a1a2cca551fb3a8d124d1e2ffbce8b2dfb5a5ee6f5cea7386f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 3:32:52 AM UTC  (today)

File size:
128 KB (131,072 bytes)

Product version:
1.00

Original file name:
pb.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\pb.exe

File PE Metadata
Compilation timestamp:
11/14/2009 6:04:05 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
1536:OGjK0sbKf5m7lkqJRwPginLlz3nWmAaC5rwiOIC2DLwhtb7uuf/AM/ng6JGIl:OeOs5m4YqLlz+HrxLwhtb7bf3PdBl

Entry address:
0x151C

Entry point:
68, FC, 85, 41, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 3C, 5C, BC, AA, 0D, 69, 04, 40, 81, 14, 6B, AF, A8, 8D, D6, 2A, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 50, 65, 67, 67, 6C, 65, 42, 6C, 61, 73, 74, 65, 72, 00, 00, 00, 00, 00, 00, 00, FF, CC, 31, 00, 09, 06, F1, 9E, 3D, 97, B7, 56, 48, 8E, 10, 8A, CA, 72, 45, CC, 97, 3E, E8, 94, CF, 5E, 77, 4B, 4E, 8F, E7, 90, 56, 77, 28, 84, 21, 3A, 4F, AD, 33, 99, 66, CF, 11, B7, 0C, 00...
 
[+]

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
116 KB (118,784 bytes)

The file pb.exe has been discovered within the following program.

Peggle  by PopCap Games
www.popcap.com
4% remove it
 
Powered by Should I Remove It?

The file pb.exe has been seen being distributed by the following 2 URLs.

Scan pb.exe - Powered by Reason Core Security