sendbl~2.exe

SendBlaster

eDisplay srl

The executable sendbl~2.exe has been detected as malware by 26 anti-virus scanners. This file is typically installed with the program SendBlaster 2 by eDisplay.
Publisher:
eDisplay srl  (signed and verified)

Product:
SendBlaster

Description:
SendBlaster 2

Version:
2.00.0125

MD5:
bd73aa2e2d8fc0994328835852387e19

SHA-1:
b61085f904c1f9ffdc6f0c74892770f101090600

SHA-256:
0167cbac18801a092e491d1520d4ccb12e505b383b3862ea80deed15e3ba3598

Scanner detections:
26 / 68

Status:
Malware

Analysis date:
4/18/2024 6:52:20 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.FakeAlert.TK
428

Agnitum Outpost
Trojan.FakeAlert
7.1.1

Avira AntiVirus
TR/Tibs.lds
8.3.1.6

Arcabit
Trojan.FakeAlert.TK
1.0.0.425

AVG
Win32/DH
2016.0.2906

Baidu Antivirus
Trojan.Win32.Downloader
4.0.3.15123

Bitdefender
Trojan.FakeAlert.TK
1.0.20.1685

Comodo Security
UnclassifiedMalware
23013

Emsisoft Anti-Malware
Trojan.FakeAlert.TK
8.15.12.03.01

F-Prot
New
v6.4.7.1.166

F-Secure
Trojan.FakeAlert.TK
11.2015-03-12_5

G Data
Trojan.FakeAlert.TK
15.12.25

IKARUS anti.virus
Trojan.Win32.Tibs
t3scan.1.9.5.0

Kaspersky
HEUR:Trojan-Downloader.Win32.Generic
14.0.0.1027

McAfee
Artemis!BD73AA2E2D8F
5600.6562

Microsoft Security Essentials
Trojan:Win32/Tibs.gen!lds
1.1.11903.0

MicroWorld eScan
Trojan.FakeAlert.TK
16.0.0.1011

NANO AntiVirus
Virus.Win32.Gen-Crypt.ccnc
0.30.24.3079

nProtect
Trojan.FakeAlert.TK
15.08.13.01

Panda Antivirus
Trj/CI.A
15.12.03.01

Qihoo 360 Security
Win32/Trojan.050
1.0.0.1015

Rising Antivirus
PE:Trojan.Win32.Generic.1436CB26!339135270
23.00.65.151201

Sophos
Mal/Generic-S
4.98

Trend Micro
TROJ_GEN.R047C0DCA15
10.465.03

Vba32 AntiVirus
Trojan-Downloader.Revelation.Tibs.B
3.12.26.4

VIPRE Antivirus
Trojan.Win32.Generic
42904

File size:
8 MB (8,381,768 bytes)

Product version:
2.00.0125

Copyright:
(C) 2005 - 2011 eDisplay srl

Original file name:
sendblaster2.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
The USERTRUST Network

Valid from:
11/29/2010 4:00:00 PM

Valid to:
11/29/2013 3:59:59 PM

Subject:
CN=eDisplay srl, O=eDisplay srl, STREET=via Palmanova 24, L=Milano, S=MI, PostalCode=20132, C=IT

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
4939FD5538FBAF215833BD69281EEA67

File PE Metadata
Compilation timestamp:
2/9/2011 7:04:12 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
196608:VI777PX7FUBX7FU5bX+78w1LQ2D6EYn1pFM2oLOGu+LfCw:IX7FUBX7FUtLS

Entry address:
0xD46A0

Entry point:
68, 48, 4E, 4D, 00, E8, 56, F9, 71, 00, 00, 00, 48, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 4B, EB, E9, 81, AC, 31, 24, 41, BC, A6, 1A, 17, 53, 7A, 4F, 03, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 48, 00, 02, 50, AA, 02, 53, 65, 6E, 64, 42, 6C, 61, 73, 74, 65, 72, 00, BC, 39, 0D, 01, 00, 00, 00, 00, 90, 22, 0F, 01, C0, 00, 00, 00, 90, 00, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 22, 00, 00, 00, 29, 4F, 1F, 61, 0B, 1E, DE, 40, 92, 52, 57, 59, 59, 4C, E1, AC, 01, 00, 00, 00, A0, 00, 00, 00...
 
[+]

Entropy:
6.1422

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
7.9 MB (8,335,360 bytes)

The file sendbl~2.exe has been discovered within the following program.

SendBlaster 2  by eDisplay
www.sendblaster.com
About 3% of users remove it
 
Powered by Should I Remove It?

Remove sendbl~2.exe - Powered by Reason Core Security