Chencheng Cai

Publisher Information

Chencheng Cai is a software developer located in Beijing, China*. A majority of the programs developed by the company can be classified as adware or other potentially unwanted programs. Thre are 32 additional code signing certificates issued to this publisher.
Authority:
thawte, Inc.

Valid from:
6/21/2016 9:00:00 PM

Valid to:
1/17/2017 9:59:59 PM

Subject:
CN=Chencheng Cai, OU=Individual Developer, O=No Organization Affiliation, L=Beijing, S=Beijing, C=CN

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
1b38e894e8619e9cffa77f0fc3f17b4d

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Elex.Chenchen.Meta (M), PUP.Thinknice.WinZipper (M), PUP.ELEX.Chenchen.Installer.Meta (M), PUP.Winzipper.Chenchen.Meta (L), PUP.ELEX.Chenchen.Meta (M), PUP.Winzipper.Chenchen.Meta (M), PUP.ELEX (M)
100.00%

VIPRE Antivirus
Threat.4150696
4.00%

ESET NOD32
Win32/ELEX.HW potentially unwanted application
4.00%

1 / 68      (PUP)
wzdl.exe  (109701ab4ba807d02c694962848fca12)

1 / 68      (PUP)
wzdl.exe  (78b43cc479b2254894c252b960023f7f)

1 / 68      (PUP)
exnvd.exe  (811b62bbb86fc18f66f6d5839dff82aa)

1 / 68      (PUP)
dzkcmjw.exe  (c32afe8059a166c439bb8e4c8a91879d)

1 / 68      (PUP)
exnvd.exe  (1ff932117fe00074e3787fe6c74d7ba3)

3 / 68      (PUP)
wzupg.exe  (e7dbd0309542c5ec0751120222bffd55)

1 / 68      (PUP)
wzshellctx64.dll (WinZiper by Winziper Pvt)  (3d4608cec555ca71d4ec8364348aa272)

1 / 68      (PUP)
wzShellctx.dll (WinZiper by Winziper Pvt)  (0e19554f68f258ee90b40d40ba8e4cfe)

1 / 68      (PUP)
wzUninstall.exe (WinZipper by Winziper Pvt)  (721ce8474c619dad040852e07096ce63)

1 / 68      (PUP)
wzdl.exe (Winziper by Winziper Pvt)  (e4a5d58732be0ce62ee37b787886b6af)

1 / 68      (PUP)
winziper.exe (winziper by Winziper Pvt)  (cadd7712f0b78f64329b46fa3b488374)

1 / 68      (PUP)
exnvd.exe  (85ccc577ec96b92a8427f34643047a45)

1 / 68      (PUP)
winzipersvc.exe (Winziper by Winziper Pvt)  (96d76bbcdbab8448fe9bdae42d70f51a)

1 / 68      (PUP)
wzupg.exe  (3eb841cbfbfdb3e2a7dfa631ed8bd8b0)

1 / 68      (PUP)
dzkcmjw.exe  (ce75643c6e7577ec648cdc31bbc31202)

1 / 68      (PUP)
eupgrade.exe (WinZiper by Winziper Pvt)  (e9baaaa659476fe3f43ee4f48c6dd32f)

1 / 68      (PUP)
wzUninstall.exe (WinZipper by Winziper Pvt)  (d9b97105baac02e8668c7bd59b49e53a)

1 / 68      (PUP)
wzshellctx64.dll (WinZiper by Winziper Pvt)  (efbcd7e6f56adb31d005813ff1803860)

1 / 68      (PUP)
wzShellctx.dll (WinZiper by Winziper Pvt)  (c7df40c84b35df7a0fa33e1e5e563005)

1 / 68      (PUP)
wzdl.exe (Winziper by Winziper Pvt)  (e297469815a833ae65d858f7176db358)

1 / 68      (PUP)
winziper.exe (winziper by Winziper Pvt)  (efad38c4902a5effef10c13271ebdc3e)

1 / 68      (PUP)
einstall.exe (Winziper by Winziper Pvt)  (f4426e1b754ab9da13978e5ff9e67e74)

1 / 68      (PUP)
winzipersvc.exe (Winziper by Winziper Pvt)  (6119ba3f5429d9fda4637096a3071d62)

1 / 68      (PUP)
wzupg.exe  (a821d00f5ad707b7dbbe9c2b9f8972e7)

1 / 68      (PUP)
winzipper.exe (dltools.exe by dltools)  (d31d9f16ca9c4af668fbe3fb949b78f2)

The certificates below are also signed by Chencheng Cai.

437EFF18668F2949A8387EF2021D76B8  (Oct 19, 2016 to Sep 23, 2017)

3075116CD57C1E0CD4624D000E0D48F4  (Jul 26, 2016 to Jan 18, 2017)

3849AD0AD94858E163C64D14480BFB45  (Sep 26, 2016 to Jan 18, 2017)

40FA13985158ACB4435D05F1B89D98DA  (Jul 28, 2016 to Jan 18, 2017)

7BA6E3663709F53FDC5CC9B998626C04  (Sep 12, 2016 to Jan 18, 2017)

1602B3C8A91624463DFC128FAEFB8AF1  (May 27, 2016 to Jan 18, 2017)

2931BE83DAB28F03C77CFBA2BD22204D  (Jul 07, 2016 to Jan 18, 2017)

34937668E8DC5B870FBDE612BA9635D2  (Jun 24, 2016 to Jan 18, 2017)

3D7668F12D69ADE858BD3BC551DAACAF  (Jun 02, 2016 to Jan 18, 2017)

4E1F202EB0EF7EB74A664B970BE2EBE4  (Jun 29, 2016 to Jan 18, 2017)

10 of 32 code signing certificates issued

* Note, the details and description above are based on the code signing digital signature issued to Chencheng Cai by thawte, Inc. on June 21, 2016 with the serial number '1b38e894e8619e9cffa77f0fc3f17b4d'.