cbox3.0.1.9.exe

CBox央视影音

CCTV International Networks Co., Ltd

This is a setup program which is used to install the application. The file has been seen being downloaded from global-shared-files-l3.softonic.com and multiple other hosts.
Publisher:
中国网络电视台   (signed by CCTV International Networks Co., Ltd)

Product:
CBox央视影音

Version:
3.0.1.9

MD5:
d48cca17f7349c79e227d62e63a6ff1b

SHA-1:
5b380a569cc57bac63d79761ddfc97d3a9dc3c27

SHA-256:
3308d0b399aae9ff9698c406bac2b47a49d112ce0bdf058e424a8a5d15189f95

Scanner detections:
4 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
12/26/2024 9:28:50 PM UTC  (today)

Scan engine
Detection
Engine version

McAfee
Artemis!D48CCA17F734
5600.7049

Trend Micro House Call
Suspicious_GEN.F47V0616
7.2.216

Vba32 AntiVirus
Trojan.Genome.jb
3.12.26.3

Zillya! Antivirus
Trojan.Patched.Win32.79623
2.0.0.1859

File size:
6.6 MB (6,930,680 bytes)

Product version:
3.0.1

Copyright:
中国网络电视台 版权所有

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\cbox3.0.1.9.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
11/26/2012 8:00:00 AM

Valid to:
2/26/2016 7:59:59 AM

Subject:
CN="CCTV International Networks Co., Ltd", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="CCTV International Networks Co., Ltd", L=Bei Jing, S=Bei Jing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2D2FF241D4797FC990E3E9BE8849F81A

File PE Metadata
Compilation timestamp:
10/28/2013 3:13:14 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:oTkjgodSccQ56KrzWnN2pcAk6xJvTn+fgoQ+UJXNFLL9U:ndpccDWnVmxN8kbbFLL9U

Entry address:
0x113C4

Entry point:
55, 8B, EC, 83, C4, A4, 53, 56, 57, 33, C0, 89, 45, C4, 89, 45, C0, 89, 45, A4, 89, 45, D0, 89, 45, C8, 89, 45, CC, 89, 45, D4, 89, 45, D8, 89, 45, EC, B8, F8, 0A, 41, 00, E8, E0, 51, FF, FF, 33, C0, 55, 68, A6, 1A, 41, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 62, 1A, 41, 00, 64, FF, 32, 64, 89, 22, A1, 48, 5B, 41, 00, E8, 22, D8, FF, FF, E8, D9, D3, FF, FF, 80, 3D, 08, 2B, 41, 00, 00, 74, 0C, E8, 37, D9, FF, FF, 33, C0, E8, 78, 32, FF, FF, 8D, 55, EC, 33, C0, E8, EA, A4, FF, FF, 8B, 55, EC, B8, 54, 86...
 
[+]

Entropy:
7.9916

Developed / compiled with:
Microsoft Visual C++

Code size:
66 KB (67,584 bytes)

The file cbox3.0.1.9.exe has been seen being distributed by the following 2 URLs.

Scan cbox3.0.1.9.exe - Powered by Reason Core Security