sbsetup.exe

FlashPeak Inc

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. This is installed with FlashPeak SlimBrowser. The file has been seen being downloaded from www.slimbrowser.net.
Publisher:
FlashPeak Inc  (signed and verified)

MD5:
9291fefab309662540335d27aa90f48c

SHA-1:
360314627a79ef6d60897a9002bc4593ffb8c2ad

SHA-256:
bf0c61f3d59555a48905162602bdcb1c5d4dff55677dd031df9036bd04e5c0fe

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/14/2024 9:49:17 PM UTC  (today)

File size:
3.3 MB (3,507,648 bytes)

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Common path:
C:\users\{user}\downloads\sbsetup.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
2/9/2011 1:00:00 AM

Valid to:
4/2/2012 1:59:59 AM

Subject:
CN=FlashPeak Inc, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=FlashPeak Inc, L=Austin, S=Texas, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7D41FCD38A683906BBBB4950E845057B

File PE Metadata
Compilation timestamp:
4/10/2010 2:19:38 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:PPif5p54N42vj16UZ+a3tJGWDMisybSNaxGhMwTiIiBm/hUGT9hbLfilfuQ0IbII:PqCjx6in6WDMiFWNax+X/hUehfSGIIuX

Entry address:
0x3415

Entry point:
81, EC, D4, 02, 00, 00, 53, 55, 56, 57, 6A, 20, 33, ED, 5E, 89, 6C, 24, 18, C7, 44, 24, 10, 70, 85, 40, 00, 89, 6C, 24, 14, FF, 15, 30, 80, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 80, 40, 00, 55, FF, 15, B0, 82, 40, 00, 6A, 08, A3, 98, B3, 47, 00, E8, 67, 27, 00, 00, 55, 68, B4, 02, 00, 00, A3, B0, B2, 47, 00, 8D, 44, 24, 38, 50, 55, 68, 6C, 85, 40, 00, FF, 15, 80, 81, 40, 00, 68, 54, 85, 40, 00, 68, A0, 32, 47, 00, E8, 35, 26, 00, 00, FF, 15, B0, 80, 40, 00, 50, BF, A0, C0, 4C, 00, 57, E8, 23, 26, 00, 00...
 
[+]

Entropy:
7.9933

Packer / compiler:
Nullsoft install system v2.x

Code size:
26 KB (26,624 bytes)

The file sbsetup.exe has been discovered within the following program.

FlashPeak SlimBrowser  by FlashPeak Inc.
FlashPeak SlimBrowser bundles a branded version of the Conduit Toolbar, which delivers search based advertising and results. During installation the user is presented in some cases with the option to install the toolbar. Once accepted, the packaged executable, ConduitInstaller.
www.slimbrowser.net
About 5% of users remove it
 
Powered by Should I Remove It?

The file sbsetup.exe has been seen being distributed by the following URL.

Scan sbsetup.exe - Powered by Reason Core Security