superbackup.exe

Super Backup Online Backup

Strongvault Online Storage LLC

The application superbackup.exe, “This installer database contains the logic and data required to install Super Backup Online Backup.” by Strongvault Online Storage has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a self-extracting archive and installer and has been known to bundle potentially unwanted software.
Publisher:
Stronghold.com  (signed by Strongvault Online Storage LLC)

Product:
Super Backup Online Backup

Description:
This installer database contains the logic and data required to install Super Backup Online Backup.

Version:
2.5.0.5

MD5:
25d93f19f8e499f3dedccd935f7471c3

SHA-1:
9c339d1b24572a68b2a68ca4bfb2c55bd5e67f97

SHA-256:
8d31d73cc072859a404c5aa470b3dfb761fb08600f9ea875647fae1e5bbbc5c7

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/25/2024 9:29:48 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic
16.1.8.14

File size:
16.2 MB (17,029,232 bytes)

Product version:
2.5.0.5

Copyright:
Copyright (C) Stronghold.com

Original file name:
SuperBackup-.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\superbackup.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
2/12/2013 4:00:00 PM

Valid to:
2/13/2014 3:59:59 PM

Subject:
CN=Strongvault Online Storage LLC, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Strongvault Online Storage LLC, L=newport beach, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
48A7245B07D6ADFDDD6F3FAC024F13AF

File PE Metadata
Compilation timestamp:
11/29/2012 12:55:28 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
393216:LjRB5RmX3xI6y25/om/y7u8r/p4FrUZuULiH703zYFS/nDgm:vRJmP5/oljr/pMXHIjYs9

Entry address:
0xAE649

Entry point:
E8, 25, B9, 00, 00, E9, 79, FE, FF, FF, 8B, FF, 55, 8B, EC, 51, 53, 56, 8B, F0, 33, DB, 3B, F3, 75, 1E, E8, CF, 44, 00, 00, 6A, 16, 5E, 53, 53, 53, 53, 53, 89, 30, E8, CB, EB, FF, FF, 83, C4, 14, 8B, C6, E9, C2, 00, 00, 00, 57, 39, 5D, 0C, 77, 1E, E8, AB, 44, 00, 00, 6A, 16, 5E, 53, 53, 53, 53, 53, 89, 30, E8, A7, EB, FF, FF, 83, C4, 14, 8B, C6, E9, 9D, 00, 00, 00, 33, C0, 39, 5D, 14, 66, 89, 06, 0F, 95, C0, 40, 39, 45, 0C, 77, 09, E8, 7C, 44, 00, 00, 6A, 22, EB, CF, 8B, 45, 10, 83, C0, FE, 83, F8, 22, 77...
 
[+]

Entropy:
7.9377  (probably packed)

Code size:
899 KB (920,576 bytes)

Remove superbackup.exe - Powered by Reason Core Security