How to Remove “cbSetup.exe”

What is cbSetup.exe?


cbSetup.exe is a legitimate process file popularly known as Cobian Backup 11 Gravity – Setup.  It is associated with software Cobian Backup 11 Gravity - Setup developed by BitTorrent. It is located in c:\users\%USERNAME%\downloads\by default.

Malware programmers write virus files with malicious scripts and save them as cbSetup.exe with an intention to spread virus on the internet.

Affected Platforms: Windows OS


How to determine if your computer is infected with cbSetup.exe malware?


Look out for the these symptoms to check if your PC is infected with cbSetup.exe malware:

  • Unstable internet connection
  • cbSetup.exe occupies extra CPU space
  • PC processing speed slows down
  • Browser often redirects to irrelevant websites
  • Browser is bombarded with hordes of popup ads
  • Computer screen freezes repeatedly

Take the following steps to diagnose your PC for possible cbSetup.exe malware attack:

Step 1: Simultaneously press CTRL+ALT+DEL keys to open Task Manager.

Step 2: If you notice the file located outside c:\users\%USERNAME%\downloads\ perform an antivirus scan to get rid of the malware.

How to remove cbSetup.exe malware from system using Comodo Antivirus?

Step 1: Download our award-winning Comodo Free Antivirus

Step 2: Installation configuration frames will be displayed. Select the configuration you would like to apply.

Step 3: Select Customize Configuration option and arrange installers, configuration, and file location.

Step 4: Restart your PC after the installation gets over

Step 5: Wait for Comodo Internet Security to update the antivirus.

Step 6: Proceed with the quick scan that automatically begins after the update.

Step 7: If threats are found during the scanning, you will be notified through an alert screen.

Step 8: Comodo Antivirus will remove cbSetup.exe malware from your computer including all other malwares!
 

5

Malware Entries

First Seen: 29 July 2010 at 4:01 pm
No. Company File Type SHA1 MD5 Malware
Name
Digitally
Signed
File
Version
Product
Version
Submitted
From
Malware Behavior
1 N/A Executable 3d7adb4ecb345693
d2a6f1cd214c4572
eba63f47
8ce7bbea55ee84f6
588de3d75373c7bd
Application.
Win32.Agent.
blkbu
No N/A N/A 172.127.183.175/32 N/A
2 MARX CryptoTech LP Executable 049567e48fd8a8b7
d749af7b0ced4288
99bb9d32
14d843d08330014f
70f179366211e5a3
Unclassified
Malware
No 1, 0, 4,
408
1, 0, 4,
408
Internal Submission N/A
3 N/A Executable 3d7adb4ecb345693
d2a6f1cd214c4572
eba63f47
8ce7bbea55ee84f6
588de3d75373c7bd
Application.
Win32.Agent.
blkbu
No N/A N/A United States N/A
4 codercreations Executable 1cd9de64bfa43987
b9c464c968423fd5
fdaaa882
709aa74cacaf5221
47acce4fb15e6e44
Unclassified
Malware
No 1.152 1.152 Internal Submission N/A
Display 4 items per page
  • 4 items per page
  • 8 items per page
  • 16 items per page
  • 32 items per page
39

Safe Entries

First Seen: 27 June 2008 at 2:15 pm
No. Company File Type SHA1 MD5 Digitally
Signed
File
Version
Product
Version
Submitted
From
1 MARX CryptoTech LP Executable bdff9a3c712b1259
951b402046569de4
e7c9e402
5b1376e1b7272bbf
155eac9d25f063eb
No 1, 0, 7,
404
1, 0, 7,
404
10.224.1.116/32
2 Luis Cobian, CobianSoft Executable b9a7ad2be90180ba
8c6ec33e12fda511
ebfc7d9c
3a6070bb1bb27d3a
84d4ffaf32107e75
No 11.2.0.148 11.2.0.0 Internal Submission
3 Luis Cobian, CobianSoft Executable 78e64d6598a58aea
2c8789493bad364b
c8b55d4b
2a83295e2d2a2d1f
9233732065e19cce
No 11.2.0.147 11.2.0.0 10.224.1.65/32
4 N/A Executable 6feb0dd5a0ad65be
67c6206621cbcbec
6a2d1f0f
98314081ebda5d1d
3adb805a62ba3082
No N/A N/A Internal Submission
Display 4 items per page
  • 4 items per page
  • 8 items per page
  • 16 items per page
  • 32 items per page
 
Exclusive Offer
Get Free Endpoint Protection
Get Advanced
Endpoint
Protection

Award-Winning Security to Protect Your Clients from Cyber Attacks

Comodo Internet Security Pro

Free Antivirus protection from hackers! Get the ultimate Antivirus solution to keep your PC clean and to remove viruses from a slow or infected PC. Improve the PC performance at home or use it on-the-go!

Get Comodo Internet Security Comodo Internet Security