Bellaphant

Publisher Information

Bellaphant is a brand of the Sambreel/Yontoo group, a web advertising company located in Carlsbad, CA. It is part of the Yontoo/Sambreel group and distributes web browser add-ons, typically potentially unwanted and adware in nature, that are designed to modify a user's typical search beahvior as well as display context and popup advertising. There is one additional code signing certificate issued to this publisher.
Authority:
VeriSign, Inc.

Valid from:
2/3/2015 7:00:00 PM

Valid to:
3/5/2016 6:59:59 PM

Subject:
CN=Bellaphant, O=Bellaphant, L=Santa Monica, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1436437d1ef58ac8b6136958bff51a68

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Yontoo.Bellapha (M), PUP.Yontoo (M)
100.00%

1 / 68      (Adware)
{f235764e-679a-49e9-a948-c7657a26aa0a}w.sys (StdLib)  (23688aa9c70e9ae664c7f1f0fed7339e)

1 / 68      (Adware)
{62103bd7-f0d8-4c03-8a82-144566142848}gt.sys (StdLib)  (46a51d4eaece2d84195eb7be14ec6a91)

1 / 68      (Adware)
{4bae8ebd-e7db-4888-9b82-c7a49ab25890}gt.sys (StdLib)  (d38490df94da15fb61d77879fe2bf6c6)

1 / 68      (Adware)
{45bce296-b364-4c32-bc4c-53ef7a8c516d}gt.sys (StdLib)  (eb3ca0a835c3cfbfe3cbc7b341c7971b)

1 / 68      (Adware)
maintainer.bak  (4726da27c09d122102351742374fb93b)

The following certificate is also signed by Bellaphant.

091E341F0CA025C071ED6948A741F5F4  (Feb 04, 2014 to Feb 05, 2015)

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to Bellaphant by VeriSign, Inc. on February 03, 2015 with the serial number '1436437d1ef58ac8b6136958bff51a68'.