Appealing Apps

Publisher Information

Appealing Apps is a software publisher located in Philadelphia, Pennsylvania in the United States*. The company is a primary distributor of unwanted software. Appealing Apps (Red Online Marketing Group LP) is a advertising software producer of web browser add-ons designed to display ads and affiliate offers within the web pages of a web browser. The company re-distributes a few dozen of the same adware type programs through monetized bundled installations primarily using the Crossrider toolbar platform.
Authority:
Thawte, Inc.

Valid from:
6/4/2013 2:00:00 AM

Valid to:
6/5/2014 1:59:59 AM

Subject:
CN=Appealing Apps, O=Appealing Apps, L=Philadelphia, S=Pennsylvania, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
0444aa3b06f7bbdc2e37af0824fb38c7

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.50OnRed (M), Adware.GamePlayLabs (M)
100.00%

1 / 68      (Adware)
frameworkbho.dll (Framework)  (ee634a18cca8680cb9acb492d4c664ae)

1 / 68      (Adware)
frameworkengine.exe (Framework)  (3aad611bf47161a809f137be2130fac7)

1 / 68      (Adware)
awh8a.tmp  (e12672df22eed12eb977ad8050128997)

1 / 68      (Adware)
frameworkengine.exe (Framework)  (854a1065d72b3a2e7f50b7e6ea9f7e1a)

1 / 68      (Adware)
31409.exe  (74a6a9876c4d663f7b0a80173aa80b20)

1 / 68      (Adware)
frameworkbho64.dll (Framework)  (cf688bf21e27c713f586a56dce8f0fe9)

1 / 68      (Adware)
frameworkengine.exe (Framework)  (b720b6dea5dd7e9c60b6259b6f6b84e5)

1 / 68      (Adware)
setup_savings wizard-1.0.20140505.exe  (3711e01dbda3b81876ba931f80296379)

1 / 68      (Adware)
frameworkengine.exe (Framework)  (0d821d2a0351221e45f0b497d9e7f93e)

1 / 68      (Adware)
frameworkbho64.dll (Framework)  (1aacf9a49c91af80844e56fe0e70b45f)

1 / 68      (Adware)
discount buddy.exe  (bd81056a90364669b59f4dca42e8133f)

1 / 68      (Adware)
frameworkbho64.dll (Framework)  (a114901802a4654dfae100024521ee2b)

1 / 68      (Adware)
awh62b.tmp  (a69e4d48d2e5c3cd20979c4c60d3b712)

1 / 68      (Adware)
coupon server.exe  (ffdcd9a694646fa4084f4940a5f62d84)

1 / 68      (Adware)
setup_discount dragon-1.0.20140505.exe  (46f83381a61c482abb6c45aee219f097)

1 / 68      (Adware)
setup_sharp savings-1.0.20140505.exe  (d441d649ded2dc45c2c2b99922dbe22e)

1 / 68      (Adware)
coupon server.exe  (d635f0ec1e162dd913f0d9246e0caf4e)

1 / 68      (Adware)
coupon server.exe  (45ebf4c42aeb30ca7e47ff9f62a2aaa7)

1 / 68      (Adware)
687da1bf-1fe6-4287-a551-fb62ee5575c4  (f6a39243459d289fc59a898a0962b1e4)

1 / 68      (Adware)
frameworkbho64.dll (Framework)  (48a8f8061c4610cc2e59ad4536833a94)

1 / 68      (Adware)
content.076.infected (Framework)  (4cca20f550cb78aae72931b5ffe37a54)

1 / 68      (Adware)
coupon server.exe  (b99f8129c739d89b5f7a6571043148f1)

1 / 68      (Adware)
setup_savings sidekick-1.0.20140505.exe  (1363aca7af1adc4ddfd964fff8dd2721)

1 / 68      (Adware)
trz682b.tmp (Framework)  (ced1e2a98a3cd02aa0d8990d225f09c0)

1 / 68      (Adware)
setup_coupon server-1.1.20140505.exe  (7ee4dcaff3678ff8fab5e6da1c4fcc0d)

1 / 68      (Adware)
setup_discount dragon-1.0.20140505.exe  (c6a9791524427f40d0cf7c7054f81624)

1 / 68      (Adware)
coupon server.exe  (5dd81cca5b067a42462ec23535830bee)

1 / 68      (Adware)
coupon server.exe  (8b68ec5f1fd93317a0d603eee9886c20)

1 / 68      (Adware)
frameworkengine.exe (Framework)  (09d32c1314c73fba2ae07bb4966ed932)

1 / 68      (Adware)
frameworkbho64.dll (Framework)  (b8d2c54e188e10122598cd9897dd624a)

 
Latest 30 of 1,057 files

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to Appealing Apps by Thawte, Inc. on June 04, 2013 with the serial number '0444aa3b06f7bbdc2e37af0824fb38c7'.