VIPRE Antivirus
What is VIPRE Antivirus? (from GFI Software)
Vipre Antivirus is the essential antivirus software that protects against over 100,000 new web threats every day without slowing down your computer. It also eliminates conflicts during installation with Vipre Easy Install, protects against email viruses and phishing scams and scans USB sticks and other removable drives... Read more
Overview
VIPRE Antivirus is a software program developed by GFI Software. The most common release is 6.2.4.7, with over 98% of all installations currently using this version. During setup, the program creates a startup registration point in Windows in order to automatically start when any user boots the PC. Upon being installed, the software adds a Windows Service which is designed to run continuously in the background. Manually stopping the service has been seen to cause the program to stop functing properly. It adds a background controller service that is set to automatically run. Delaying the start of this service is possible through the service manager. A scheduled task is added to Windows Task Scheduler in order to launch the program at various scheduled times (the schedule varies depending on the version). When installed, it will add a context menu handler to the Windows shell in order to provide quick access to the program. The programs's main executable is SBAMSvc.exe and has been seen to consume an average CPU of less than one percent, and utilizes about 62.93 MB of memory. The setup package generally installs about 40 files and is usually about 213.72 MB (224,098,294 bytes). Relative to the overall usage of users who have this installed on their PCs, most are running Windows 7 (SP1) and Windows 10. While about 93% of users of VIPRE Antivirus come from the United States, it is also popular in Canada and Australia.
Program details
URL: www.vipreantivirus.com/VIPRE-antivirus
Installation folder: C:\Program Files\GFI Software\VIPRE\
Uninstaller: MsiExec.exe /X{A6D6F78A-7AC4-4B9C-A877-D9972FE93D71}
(The Windows Installer is used for the installation, maintenance, and removal.)
Estimated size: 213.72 MB
Language: English (United States)
Files installed by VIPRE Antivirus
Program executable: | SBAMSvc.exe |
Name: | GFI AntiMalware Common SDK Merge Module |
| GFI Software Anti Malware Service |
Signed by: | GFI Software Development Ltd. |
Path: | C:\Program Files\GFI Software\VIPRE\SBAMSvc.exe |
MD5: | bce943896289a91ad75cc5652620b1c6 |
| GFI Software Anti Malware Service - GFI/VIPRE Antivirus combines antispyware and antivirus together which detects and removes viruses, spyware, rootkits, bots, Trojans and all other types of malware. |
Additional files:
-
IncompatiblePrograms.dll
-
SBRC.exe - Registry Cleaner
-
SBRE.dll - Anti-Rootkit Engine
-
vipre.dll - VIPRE Threat detection and remediation system
-
SBAMOutlook.dll - GFI AntiMalware Email AV SDK Merge Module (Outlook Antivirus Plugin)
-
GFI.Tools.Run64.exe - GFI AntiMalware Common SDK Merge Module (GFI Software Run64 Application)
-
SBAMSvc.exe - GFI Software Anti Malware Service
-
SBAMSvcPS.dll - SBAMSvcP Dynamic Link Library
-
sbap.dll - Active Protection Library
-
SBArva.dll - GFI Email Antivirus
-
SBCA.dll - Custom Actions for the Installer
-
SBPIMSvc.exe - Plug-in Manager Service
-
SBTE.dll - Threat Engine Dynamic Link Library
-
SpursDownload.dll - Spurs Download Dynamic Link Library
-
gfiutil.dll - VIPRE Utility Drivers
-
gfiark.dll - VIPRE Anti-Rootkit
-
gfiarksh.dll
-
SbHips.dll - GFI Firewall SDK (GFI Firewall SDK Host Intrusion Prevention System Library)
-
SBSetupDrivers.exe - GFI Firewall SDK Drivers Installer
-
SBTIS.dll - GFI Firewall SDK Transport Inspection System Library
-
kbu.dll - VIPRE Antivirus (kbu Dynamic Link Library)
-
SBAgentDiagnosticTool.exe - SBAgentDiagnosticTool
-
SBAMCommandLineScanner.exe - GFI Command Line Scanner
-
SBAMCreateRestore.exe - Create Restore Point
-
SBAMRes.dll - VIPRE English Language Resources
-
SBAMSafeModeUI.exe - Mamba Safe Mode UI
-
SBAMScanShellExt.dll - SBAM Scan Shell Extension
-
SBAMTray.exe - SBAMTray Application
-
sbamui.exe - SBAMUI
-
sbamwsc.exe - WSC Interface Application
-
SBFE.DLL - Secure File Eraser Shell Extension
-
SBRES_VPC_en-US.dll
-
Sfe.exe - SFE
-
fldrvw2008.ocx (by LogicNP Software (http://www.ssware.com)) - FolderView ActiveX Control
-
mimepp.dll (by Hunny Software, Inc) - Hunny MIME++ Library (DLL for Hunny MIME++ Library)
-
oeapiinitcom.dll (by Nektra) - OEAPI (OEAPI oeapiinitcom)
-
oecom.dll (by Nektra) - OEAPI oecom
-
oehook.dll - OEAPI oehook
-
oestore.dll - OEAPI oestore
-
unrar.dll - RAR decompression library
Behaviors exhibited
2 Context Menu Handlers
- SBFE.DLL added to Windows Explorer under the name 'FileEraserShellExt' with a class of {D29FEC44-36A2-4865-AE5E-175C61587F1D}.
- SBAMScanShellExt.dll added to Windows Explorer under the name 'SBAMScanShellExt' with a class of {D47F1671-0EAA-4c02-8AC9-960BB08DB951}.
Scheduled Task
- sbamui.exe is scheduled as a task with the class '{EDDD1903-4F57-41A6-90A4-3242A154D40B}' (runs on registration).
2 Services
- SBAMSvc.exe runs as a service named 'SpeedMaxPc AntiVirus' (SBAMSvc) "Manages your antispyware and antivirus application".
- SBPIMSvc.exe runs as a service named 'SB Recovery Service' (SBPIMSvc) "SB Recovery Service".
2 Startup Files (All Users Run)
- SBAMTray.exe is loaded in the all users (HKLM) registry as a startup file name 'SBAMTray' which loads as "C:\Program Files\GFI Software\VIPRE\SBAMTray.exe".
- SBRC.exe is loaded in the all users (HKLM) registry as a startup file name 'SBRegRebootCleaner' which loads as "C:\Program Files\GFI Software\VIPRE\SBRC.exe".
Network connections
- SBAMSvc.exe connects to 4.27.18.126 (port 80).
Resource utilization averages
Show technical details
SBAMSvc.exe |
Memory: | 62.93 MB | |
Total CPU: | 0.0062231895% | |
Kernel CPU: | 0.00232273% | |
User CPU: | 0.00390045% | |
CPU cycles/sec: | 10,110,272 | |
Switches/sec: | 24 | |
I/O reads/min: | 2.43 MB | |
I/O writes/min: | 1.71 MB | |
SBPIMSvc.exe |
Memory: | 3.92 MB | |
Total CPU: | 0.0001990042% | |
Kernel CPU: | 0.00016039% | |
User CPU: | 0.00003862% | |
CPU cycles/sec: | 25,467 | |
I/O reads/min: | 7 Bytes | |
I/O writes/min: | 286 Bytes | |
SBAMTray.exe |
Memory: | 2.79 MB | |
Total CPU: | 0.0001314660% | |
Kernel CPU: | 0.00006962% | |
User CPU: | 0.00006185% | |
CPU cycles/sec: | 304,039 | |
I/O writes/min: | 2 Bytes | |
How do I remove VIPRE Antivirus?
You can uninstall VIPRE Antivirus from your computer by using the Add/Remove Program feature in the Window's Control Panel.
- On the Start menu (for Windows 8, right-click the screen's bottom-left corner), click Control Panel, and then, under Programs, do one of the following:
- Windows Vista/7/8/10: Click Uninstall a Program.
- Windows XP: Click Add or Remove Programs.
- When you find the program VIPRE Antivirus, click it, and then do one of the following:
- Windows Vista/7/8/10: Click Uninstall.
- Windows XP: Click the Remove or Change/Remove tab (to the right of the program).
- Follow the prompts. A progress bar shows you how long it will take to remove VIPRE Antivirus.
OS VERSIONS
Win 7 (SP1) 73%
Win 7 2%
|
|
HOW IT STARTS
Automatically starts? Yes
(Found in the run registry)
|
|
USER ACTIONS
|
Uninstall it 8%
Keep it 92%
|
|
Windows
Which Windows OS versions does it run on?
Windows 7 |
74.82% |
|
Windows 10 |
9.85% |
|
Windows Vista |
8.03% |
|
Windows XP |
7.30% |
|
Which OS releases does it run on? |
Windows 7 Home Premium |
54.44% |
|
Windows 7 Professional |
11.11% |
|
Windows 7 Ultimate |
7.04% |
|
Microsoft Windows XP |
7.04% |
|
Windows Vista Home Premiu... |
6.67% |
|
Windows 8 Pro |
3.70% |
|
Geography
92.76% of installs come from the United States
Which countries install it?
United States |
92.76% |
Canada |
2.04% |
Australia |
1.58% |
Italy |
0.90% |
Ireland |
0.45% |
United Kingdom |
0.45% |
Brazil |
0.23% |
Belgium |
0.23% |
NG |
0.23% |
Russia |
0.23% |
India |
0.23% |
Spain |
0.23% |
Croatia |
0.23% |
Egypt |
0.23% |
PC manufacturers
What PC manufacturers (OEMs) have it installed?
Dell |
29.89% |
|
Acer |
27.17% |
|
Hewlett-Packard |
24.46% |
|
Toshiba |
7.07% |
|
ASUS |
2.17% |
|
GIGABYTE |
2.17% |
|
Intel |
1.63% |
|
Gateway |
1.09% |
|
American Megatrends |
1.09% |
|
Alienware |
1.09% |
|
Lenovo |
1.09% |
|
Samsung |
1.09% |
|
Common models |
HP Pavilion dv7 Notebook ... |
3.60% |
|
HP Pavilion dv6 Notebook ... |
2.88% |
|
Gateway NV77H |
2.16% |
|
HP Pavilion g6 Notebook P... |
2.16% |
|
Acer Aspire 5736Z |
2.16% |
|
Dell Inspiron 620 |
2.16% |
|
About GFI Software
GFI Software is a developer of computer security software whose products include software for filtering spam and viruses from e-mail as well as for monitoring and scanning networks for security purposes.
Publisher URL: www.gfi.com