Should I block it?

No, this file is 100% safe to run.

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
GetTokenInformation, RegisterTraceGuidsW, UnregisterTraceGuids, TraceEvent, ConvertStringSecurityDescriptorToSecurityDescriptorW, RegQueryValueExW, ControlTraceW, StartTraceW, EnableTrace, ControlService, RegDeleteKeyW, RegSetValueExW, CreateServiceW, RegOpenKeyExW, RegCreateKeyExW, DeleteService, RegCloseKey, LookupPrivilegeValueW, AdjustTokenPrivileges, QueryServiceStatus, OpenSCManagerW, OpenServiceW, StartServiceW, QueryServiceStatusEx, CloseServiceHandle, GetTraceEnableLevel, GetTraceLoggerHandle, LookupAccountSidW, OpenProcessToken, OpenThreadToken, SetThreadToken
kernel32.dll
OpenProcess, GetWindowsDirectoryW, GetSystemDirectoryW, ExpandEnvironmentStringsW, CreateFileW, SetFilePointer, ReadFile, GetFileAttributesExW, GetUserDefaultLangID, InitializeCriticalSection, Sleep, InterlockedCompareExchange, GetCurrentProcessId, TerminateThread, PostQueuedCompletionStatus, QueryDosDeviceW, CreateIoCompletionPort, GetModuleFileNameW, CopyFileW, CreateProcessW, DeleteFileW, DeviceIoControl, OpenThread, WriteFile, FreeLibrary, LoadLibraryW, QueryPerformanceFrequency, GetSystemWindowsDirectoryW, GetVersionExW, InterlockedDecrement, QueryPerformanceCounter, GetCurrentThreadId, GetQueuedCompletionStatus, MultiByteToWideChar, LocalAlloc, LocalFree, GetLongPathNameA, HeapFree, GetProcessHeap, UnmapViewOfFile, InterlockedIncrement, MapViewOfFile, CreateFileMappingW, HeapAlloc, CreateWaitableTimerW, CancelWaitableTimer, CreateThread, FlushFileBuffers, SetWaitableTimer, GetTickCount, WaitForMultipleObjects, GetCurrentProcess, GetSystemInfo, GetProcAddress, GetModuleHandleW, WaitForSingleObject, SetEvent, LeaveCriticalSection, EnterCriticalSection, CreateEventW, DeleteCriticalSection, InitializeCriticalSectionAndSpinCount, GetLastError, ResetEvent, CloseHandle, GetEnvironmentStringsW, GetSystemTimeAsFileTime, GetUserDefaultLCID, GetLocaleInfoA, EnumSystemLocalesA, IsValidLocale, HeapReAlloc, GetConsoleCP, GetConsoleMode, SetStdHandle, WriteConsoleW, GetOverlappedResult, FreeEnvironmentStringsW, GetModuleFileNameA, GetStartupInfoW, GetFileType, SetHandleCount, HeapDestroy, HeapCreate, WideCharToMultiByte, InterlockedExchange, GetStringTypeW, GetCommandLineA, RaiseException, RtlUnwind, LCMapStringW, GetCPInfo, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, HeapSize, ExitProcess, IsProcessorFeaturePresent, GetStdHandle, GetLocaleInfoW, GetACP, GetOEMCP, IsValidCodePage, TlsAlloc, TlsGetValue, TlsSetValue, TlsFree, SetLastError
ole32.dll
CoUninitialize, CoCreateGuid, CoInitializeEx
psapi.dll
GetModuleFileNameExW
sbte.dll
SBCSScanFileTrace, SBCSQueryThreatDataW, SBCSScanRegistryTrace, SBCSAddUserKnownEntity, SBCSRemoveFileCacheEntry, SBCSQuarantineFile2W
sfc.dll
SfcIsFileProtected
shell32.dll
SHGetFolderPathW
version.dll
VerQueryValueW, GetFileVersionInfoSizeW, GetFileVersionInfoW
Export table
SBAPAddAllowedPid
SBAPAddBlockedPid
SBAPClearCache
SBAPGetAllAllowedPids
SBAPGetAllBlockedPids
SBAPGetCacheCount
SBAPGetMonitorAction
SBAPGetMonitorActive
SBAPIsAllowedPid
SBAPIsBlockedPid
SBAPIsETWRunning
SBAPIsStarted
SBAPRemoveAllAllowedPids
SBAPRemoveAllBlockedPids
SBAPRemoveAllowedPid
SBAPRemoveBlockedPid
SBAPSetExtensionList
SBAPSetLoggerCallback
SBAPSetMonitorAction
SBAPSetMonitorActive
SBAPSetNotifyCallback
SBAPSetPromptCallback
SBAPSetReportCallback
SBAPSetUserKnownEntityCallback
SBAPSimulateMessage
SBAPStart
SBAPStartETW
SBAPStartVolumeWatcher
SBAPStop
SBAPStopETW
SBAPStopVolumeWatcher
SBAPUninstallDriver

sbap.dll

GFI AntiMalware Common SDK Merge Module by GFI Software (Florida) Inc. (Signed)

Remove sbap.dll
Version:   6.2.4.7
MD5:   d4a7818649c59dcc6643597bd659a8bb
SHA1:   57ca4c82b4957de1526b14bc72e74b70bfe20af2
SHA256:   40d2753586fb464c81112d9f4f185c92cab390b2b2c6c2a6377180e9eef3efa9

Overview

sbap.dll is loaded as dynamic link library that runs in the context of a process. It is installed with a couple of know programs including VIPRE Internet Security published by GFI Software and VIPRE Antivirus published by GFI Software. The file is digitally signed by GFI Software (Florida) Inc. which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:sbap.dll
Publisher:ThreatTrack Security, Inc.
Product name:GFI AntiMalware Common SDK Merge Module
Description:Active Protection Library
Typical file path:C:\Program Files\gfi software\vipre\sbap.dll
File version:6.2.4.7
Size:511.81 KB (524,096 bytes)
Build date:4/18/2013 11:38 AM
Certificate
Issued to:GFI Software (Florida) Inc.
Authority (CA):VeriSign
Effective date:Wednesday, January 25, 2012
Expiration date:Sunday, January 25, 2015
Digital DNA
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
GFI Software
10% remove
VIPRE Internet Security is the award-winning antivirus software that includes a firewall, a spam filter and bad website blocking into one powerful solution for complete protection against malware. From a two-way firewall that keeps away malicious Internet traffic to VIPRE® Easy Update™ that automatically updates out-of-date software, VIPRE Internet Security 2013 features provide complete PC security. Updates the most common cause of PC ...
GFI Software
8% remove
Vipre Antivirus is the essential antivirus software that protects against over 100,000 new web threats every day without slowing down your computer. It also eliminates conflicts during installation with Vipre Easy Install, protects against email viruses and phishing scams and scans USB sticks and other removable drives for malicious software. Vipre Antivirus keeps your personal and financial information safe from identity theft, cybercr...

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 66.67%
Windows Vista Ultimate 33.33%

Distribution by countryDistribution by country

United States installs about 66.67% of GFI AntiMalware Common SDK Merge Module.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 66.67%
Toshiba 33.33%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE