pbsetup.exe

This is a setup and installation application. The file has been seen being downloaded from filehippo.com and multiple other hosts.
MD5:
102432051033c831d3243987749b1a1f

SHA-1:
055643812cf22cf077c8341fb2995c346fe17d1b

SHA-256:
0312defa0cb061af2c1a141734d405ff8ebdcd6b4419d31dd7c7d9cc4dbe8e2a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 3:23:55 PM UTC  (today)

File size:
801 KB (820,224 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
5/10/2014 12:20:16 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
12288:hcwycnYxyQm0m05h73nfR+gk/tdZ3NlEi4h4iWq86MIZQHFH+vzbHD0Mp:KcnvQm0xvrkVdV14h4iWr6xZQqXHD0M

Entry address:
0x202200

Entry point:
60, BE, 00, 50, 55, 00, 8D, BE, 00, C0, EA, FF, 57, EB, 0B, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, 0B, 75, 28, 8B, 1E, 83, EE, FC, 11, DB, 72, 1F, 48, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, EB, D4, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, EB, 52, 31, C9, 83, E8, 03, 72, 11, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 75, D1, F8, 89, C5, EB, 0B, 01, DB, 75, 07, 8B...
 
[+]

Packer / compiler:
UPX v0.89.6 - v1.02 / v1.05 -v1.24

Code size:
696 KB (712,704 bytes)

The file pbsetup.exe has been discovered within the following programs.

America's Army 3  by U.S. Army
www.americasarmy.com
About 9% of users remove it
About 1% of users remove it
Battlefield 4™  by Electronic Arts
Battlefield 4 is a first-person shooter video game.
www.ea.com
12% remove it
Battlefield™ Hardline Beta  by Electronic Arts
Publisher's description - “Live out your fantasy of being a cop and criminal in Battlefield Hardline, EA and Visceral Games' new FPS series with TV crime drama inspired singleplayer. In multiplayer, the world is simple.”
www.battlefield.com/hardline/beta
14% remove it
Call of Duty 4: Modern Warfare is a first-person shooter video game, developed by Infinity Ward and published by Activision.
www.activision.com
5% remove it
Origin  by Electronic Arts
Origin (EA Store) is a digital distribution, digital rights management system from Electronic Arts that allows users to purchase games on the internet for PC and mobile platforms, and download them with the Origin client (formerly EA Download Manager).
24% remove it
PunkBuster Services  by Even Balance, Inc.
PunkBuster is a computer program that is designed to detect software used for cheating in online games. It does this by scanning the memory contents of the local machine. A computer identified as using cheats may be banned from connecting to protected servers.
www.evenbalance.com/index.php?page=pbsvcfaq.php
11% remove it
 
Powered by Should I Remove It?

The file pbsetup.exe has been seen being distributed by the following 50 URLs.

http://filehippo.com/download/file/.../

http://filehippo.com/download/file/.../

http://filehippo.com/it/download/file/.../

http://dl4.hamirayane.com/Download/DLzkmzOG9mo9l95r510go7ZwceXlqxo3PdD7102/PunkBuster/.../pbsetup.exe

http://filehippo.com/download/file/.../

http://filehippo.com/download/file/.../

http://filehippo.com/pl/download/file/.../

http://filehippo.com/pl/download/file/.../

http://dl3.vessoft.com/files2/.../pbsetup.exe

http://filehippo.com/download/file/.../

http://filehippo.com/it/download/file/.../

http://filehippo.com/download/file/.../

http://filehippo.com/download/file/.../

http://filehippo.com/it/download/file/.../

https://punkbuster.softonic.com/download-tracker?th=8yS3 KGEYLiw7GKMHzA/trmsvRChbxdrflJq3ZIylWvZS3/LZYCnwV4GtwYCjHd4j/uCJxAuU5B08 98ecJT8Qe7EYZ29WP1rqZwe3h4BwGJ9TlXD6q7GU4tRXwEJEUN7xjCqiNxffHlTJJzxyta2fbGpMpwuEQIPSt4nDnoPTVQoZyflVUmZ5NX0roT1dJuvrQjMgAzYCRRrhmlkZ5K7ViCMrhXB3apL4Th1Q5kZcBo8NxPONwjq5MydPPyLSBs2rSoBJW6SMEcFFzCjzHSoeajLJi7pczMHMElCsYJwT89qtsit1HsfoEzrwBSs PYTlIeefdfLpb8H4BYtienzR1ZVF5zVUBEyQ2PQXcPFOL9efu2APN7JEQKx7/cZVQ58YoDOloQzI1u4 qpPNmyaFNHel5ROkwKtF55Zbt1FtijH8PG0fjZlbg16E3xTasYvRafzKdhl56XVxJxDwk82AAso8azFMt2Oq/az2OJ4u3VO9S6M8/.../HPgQFGtBjYt7cgk8iXJzV5khab3c82YIpP27j0fzFF

http://filehippo.com/download/file/.../

http://filehippo.com/download/file/.../

http://gsf-cf.softonic.com/7bc/612/.../file?SD_used=0&channel=WEB&fdh=no&id_file=69664246&instance=softonic_en&type=PROGRAM&Expires=1476371552&Signature=eTvoEK-HSO2QNtF6T0mCe5LDtWutFHXsmXHh0bW2lVYciRUN-5-QnF5-EsKmq3chLAGHFo0tTg905T~Zcav1GqE~ihClOc2iGbGzQfioIgJH8rzVNcTQ0JlnGukIGemyU884HvZ7qWKsWKrUUISGmljk~vgVYMpF1OAdcfqw9rk_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=pbsetup.exe

http://filehippo.com/pl/download/file/.../

http://filehippo.com/pl/download/file/.../

http://r2.computerbild.de/exec/r2r.pl?m=w-cobi;u=http://d.computerbild.de/downloads/.../pbsetup.exe

http://filehippo.com/download/file/.../

http://filehippo.com/pl/download/file/.../

http://filehippo.com/it/download/file/.../

http://filehippo.com/download/file/.../

http://filehippo.com/download/file/.../

http://filehippo.com/download/file/.../

http://filehippo.com/es/download/file/.../

http://filehippo.com/download/file/.../

http://filehippo.com/download/file/.../

Latest 30 of 63 download URLs

Scan pbsetup.exe - Powered by Reason Core Security