spywareblastersetup54.exe

SpywareBlaster

BrightFort LLC

The program is a setup application that uses the Inno Setup installer. The file has been seen being downloaded from filehippo.com and multiple other hosts.
Publisher:
BrightFort LLC   (signed by BrightFort LLC)

Product:
SpywareBlaster

Description:
SpywareBlaster Setup

Version:
5.4.0

MD5:
485fcf7a033d9392e33c3b0b810b9b70

SHA-1:
1f6ebfe36ac904ea114501e920dd9cbdc16ee51e

SHA-256:
2fb4c2da4754a8f67c040d9e0deda531e01615bb495906171db366b85f6e3bb2

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 8:37:00 PM UTC  (today)

File size:
4.1 MB (4,274,096 bytes)

Product version:
5.4.0

Copyright:
Copyright © 2002-2015 BrightFort LLC. All Rights Reserved.

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\spywareblastersetup54.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
11/11/2014 1:14:14 PM

Valid to:
11/11/2017 1:14:14 PM

Subject:
CN=BrightFort LLC, OU=SECURE APPLICATION DEVELOPMENT, O=BrightFort LLC, L=Pittsburgh, S=Pennsylvania, C=US

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121796FB8C17C39ED98E5036934EFAA5891

File PE Metadata
Compilation timestamp:
6/19/1992 5:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:SUNyLpR1mwLgVhdQ4Y19N+CtlB7jEFrlKrGNAlmIno:lNyLBkhdQ4YTYrlK6huo

Entry address:
0x9C40

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, 86, 94, FF, FF, E8, 8D, A6, FF, FF, E8, 1C, A9, FF, FF, E8, 53, C9, FF, FF, E8, 9A, C9, FF, FF, E8, C9, F2, FF, FF, E8, 30, F4, FF, FF, 33, C0, 55, 68, FC, A2, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, C5, A2, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 96, FE, FF, FF, E8, C9, FA, FF, FF, 8D, 55, F0, 33, C0, E8, 83, CF, FF, FF, 8B, 55, F0, B8, E8, CD, 40, 00, E8, 32, 95, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, E8, CD...
 
[+]

Entropy:
7.9961

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
37 KB (37,888 bytes)

The file spywareblastersetup54.exe has been discovered within the following program.

Free Youtube To Video Converter  by Media Freeware
The installer uses the OutBorwse download manager to bundle additional adware during install including Conduit Search Protect, Yontoo PlurPush, SysTweak and other toolbars and potentially unwanted software utilities.
www.mediafreeware.com
88% remove it
 
Powered by Should I Remove It?

The file spywareblastersetup54.exe has been seen being distributed by the following 42 URLs.

http://filehippo.com/download/file/.../

http://www.javacoolsoftware.net/.../spywareblastersetup54.exe

http://www.filepuma.com/file/1457805401c10405/spywareblaster_5.4/.../0/

http://files2.majorgeeks.com/2705e8fde87cd2883e9fc1f00335685f/.../spywareblastersetup54.exe

http://files1.majorgeeks.com/9a993917980a1319b27acd7ead4cd93b/.../spywareblastersetup54.exe

Latest 30 of 42 download URLs

Scan spywareblastersetup54.exe - Powered by Reason Core Security