CBSI.AppStore.Main.exe

Download App

CBS Interactive

The application CBSI.AppStore.Main.exe, “Download App Store” by CBS Interactive has been detected as a potentially unwanted program by 2 anti-malware scanners. This file is typically installed with the program Download App by CBS Interactive which is a potentially unwanted software program.
Publisher:
CBS Interactive Inc.  (signed by CBS Interactive)

Product:
Download App

Description:
Download App Store

Version:
1.6.2.150

MD5:
db654f148cd1997d1808db2a84f8b264

SHA-1:
5a30b90d0cd015adfe1b76dd2d88182cb4404ee9

SHA-256:
d592c9181cb61d69f809597922f11de8567a0a94adcd76bfae4d9ba5e1a75b3f

Scanner detections:
2 / 68

Status:
Potentially unwanted

Analysis date:
4/19/2024 11:59:30 AM UTC  (today)

Scan engine
Detection
Engine version

Boost by Reason
UnneededApp.Startup.CBSInteractive.Q
164288

Reason Heuristics
Adware.Startup.CBSInteractive.Q
13.12.24.15

File size:
1.4 MB (1,426,568 bytes)

Product version:
1.6.2.150

Copyright:
©2013 CBS Interactive Inc. All rights reserved.

Original file name:
CBSI.AppStore.Main.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\roaming\cbs interactive\download app\cbsi.appstore.main.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
7/21/2013 5:00:00 PM

Valid to:
8/21/2015 4:59:59 PM

Subject:
CN=CBS Interactive, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=CBS Interactive, L=San Francisco, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
4E4BA2EE1F4C2B3D88BE589DA3471167

File PE Metadata
Compilation timestamp:
1/9/2014 4:50:32 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
12288:72WfesvzY5laVU67LSb7tjyZyq1/+Lx9LDzwvLZz/DtvUtb+3a:71fHEGUaSdjuBGt6q

Entry address:
0x5BFD0

Entry point:
E8, D5, 06, 00, 00, E9, 24, FD, FF, FF, CC, CC, CC, CC, CC, CC, FF, 25, 38, 54, 46, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 57, 56, 53, 33, FF, 8B, 44, 24, 14, 0B, C0, 7D, 14, 47, 8B, 54, 24, 10, F7, D8, F7, DA, 83, D8, 00, 89, 44, 24, 14, 89, 54, 24, 10, 8B, 44, 24, 1C, 0B, C0, 7D, 14, 47, 8B, 54, 24, 18, F7, D8, F7, DA, 83, D8, 00, 89, 44, 24, 1C, 89, 54, 24, 18, 0B, C0, 75, 18, 8B, 4C, 24, 18, 8B, 44, 24, 14, 33, D2, F7, F1, 8B, D8, 8B, 44, 24, 10, F7, F1, 8B, D3, EB, 41, 8B, D8, 8B, 4C, 24, 18, 8B...
 
[+]

Entropy:
4.7518

Code size:
398 KB (407,552 bytes)

The file CBSI.AppStore.Main.exe has been discovered within the following programs.

Download App  by CBS Interactive
Publisher's description - “The Download App is a free application from Download.com that helps update the software on your Windows computer. The Download App will scan your computer and notify you when updates are available for the software you have installed.”
www.cnet.com/techtracker
62% remove it
 
Powered by Should I Remove It?

The executing file has been seen to make the following network communications in live environments.

TCP (HTTP):
Connects to d117152208.ppp117152.cyberway.com.sg  (203.117.152.208:80)

TCP (HTTP):
Connects to static.vnpt.vn  (113.171.234.26:80)

TCP (HTTP):
Connects to phx1-dw-cbsi-xw-lb.cnet.com  (64.30.224.172:80)

TCP (HTTP):
Connects to a87-243-6-137.deploy.akamaitechnologies.com  (87.243.6.137:80)

TCP (HTTP):
Connects to a184-28-218-138.deploy.static.akamaitechnologies.com  (184.28.218.138:80)

TCP (HTTP):
Connects to phx2-dw-cbsi-xw-lb.cnet.com  (216.239.120.246:80)

TCP (HTTP):

TCP (HTTP):
Connects to a184-28-218-139.deploy.static.akamaitechnologies.com  (184.28.218.139:80)

TCP (HTTP SSL):
Connects to phx1-rb-columbia-ca-lb.cnet.com  (64.30.224.92:443)

TCP (HTTP):
Connects to d117152200.ppp117152.cyberway.com.sg  (203.117.152.200:80)

TCP (HTTP):
Connects to d117152195.ppp117152.cyberway.com.sg  (203.117.152.195:80)

TCP (HTTP):
Connects to a88-221-113-58.deploy.akamaitechnologies.com  (88.221.113.58:80)

TCP (HTTP):
Connects to a23-78-222-243.deploy.static.akamaitechnologies.com  (23.78.222.243:80)

TCP (HTTP):
Connects to a23-78-222-241.deploy.static.akamaitechnologies.com  (23.78.222.241:80)

TCP (HTTP):

TCP (HTTP):

TCP (HTTP):

TCP (HTTP):

TCP (HTTP):

TCP (HTTP):

Remove CBSI.AppStore.Main.exe - Powered by Reason Core Security