superantispyware_cb-dl-manager.exe

COMPUTER BILD Digital GmbH

The application superantispyware_cb-dl-manager.exe by COMPUTER BILD Digital GmbH has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. The program is a setup application that uses the Covus installer. With this installer, users are expecting to download SUPERAntiSpyware but before that occurs they may be presented with additional offers, mostly potentially unwanted software or adware.
Publisher:
COMPUTER BILD Digital GmbH  (signed and verified)

MD5:
a4337d26674ae33e64abfa2758523c6b

SHA-1:
ade3a4ffcf2adb2119f8507f3fbee34d0563b99e

SHA-256:
26db713e3c614d40e8c60612f44c47875fd9fb43b34ce584e6214cc4aba4dfcc

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Description:
This is also known as bundleware, or downloadware, which is an downloader designed to simply deliver ad-supported offers in the setup routine of an otherwise legitimate software.

Analysis date:
11/27/2024 5:00:00 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Covus (M)
17.3.16.13

File size:
541.7 KB (554,672 bytes)

File type:
Executable application (Win32 EXE)

Bundler/Installer:
Covus

Language:
English (United States)

Common path:
C:\users\{user}\downloads\superantispyware_cb-dl-manager.exe

Digital Signature
Authority:
thawte, Inc.

Valid from:
3/6/2015 1:00:00 AM

Valid to:
9/10/2016 1:59:59 AM

Subject:
CN=COMPUTER BILD Digital GmbH, O=COMPUTER BILD Digital GmbH, L=Hamburg, S=Hamburg, C=DE

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
3FA913BCFD78C2AA7C07414BB8442483

File PE Metadata
Compilation timestamp:
11/28/2015 12:01:34 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0x146CC

Entry point:
E8, D4, 7A, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 20, 8B, 45, 08, 56, 57, 6A, 08, 59, BE, 28, B5, 45, 00, 8D, 7D, E0, F3, A5, 89, 45, F8, 8B, 45, 0C, 5F, 89, 45, FC, 5E, 85, C0, 74, 0C, F6, 00, 08, 74, 07, C7, 45, F4, 00, 40, 99, 01, 8D, 45, F4, 50, FF, 75, F0, FF, 75, E4, FF, 75, E0, FF, 15, A8, B1, 45, 00, C9, C2, 08, 00, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, D8, E2, 47, 00, 89, 0D, D4, E2, 47, 00, 89, 15, D0, E2, 47, 00, 89, 1D, CC, E2, 47, 00, 89, 35, C8, E2, 47, 00, 89, 3D...
 
[+]

Code size:
358 KB (366,592 bytes)

Remove superantispyware_cb-dl-manager.exe - Powered by Reason Core Security