Couponarific

Publisher Information

Couponarific is a software publisher located in Seattle, Washington in the United States*. The company is a primary distributor of unwanted software. There is one additional code signing certificate issued to this publisher.
Authority:
GlobalSign nv-sa

Valid from:
10/6/2014 4:12:43 PM

Valid to:
10/7/2015 4:12:43 PM

Subject:
E=support@couponarific.com, CN=Couponarific, O=Couponarific, L=Seattle, S=WA, C=US

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121d5217fdb68336d578ac0747743835652

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Couponarific.K, PUP.Service.Couponarific.M, PUP.Couponarific.H, PUP.Couponarific.L, PUP.Couponarific.AA, PUP.Couponarific.V, PUP.Couponarific.J, Threat.Adpeak.Installer, PUP.Adpeak.Couponarific (M), PUP.Adpeak.Couponarific.Installer (M), PUP.Adpeak.Couponar.Installer (M), PUP.Adpeak (M)
100.00%

AVG
Generic, Generic6, Adware Generic6, Adware Generic6.ARE
76.00%

Kaspersky
not-a-virus:AdWare.Win32.AdPeak
72.00%

Trend Micro House Call
Suspicious_GEN.F47V1122, TROJ_GEN.R08NH07L814, Suspicious_GEN.F47V1127, Suspicious_GEN.F47V1201, TROJ_GEN.R012H07L314, TROJ_GEN.R047B01L314, TROJ_GEN.R0C1H07L614, TROJ_GEN.R047H07L314, TROJ_GEN.R047H07L614
52.00%

McAfee
Artemis!BA41A84E9ED9, Trojan.Artemis!071ABF784363, Artemis!18D154518AC3, Artemis!99E1DC1FCF5E, Artemis!A2DCC4E51BBC, Artemis!8A0AD5869EB9
50.00%

NANO AntiVirus
Trojan.Win32.DownLoad3.djigdy, Trojan.Win32.DownLoad3.djkwer
50.00%

Dr.Web
Trojan.DownLoad3.35108, Trojan.DownLoad3.35130, infected with Trojan.DownLoad3.35130, infected with Trojan.DownLoad3.35108
50.00%

VIPRE Antivirus
Trojan.Win32.Generic, Threat.4150696
50.00%

Avira AntiVirus
ADWARE/Adware.Gen, APPL/Adpeak.682992
50.00%

Agnitum Outpost
PUA.Adpeak
46.00%

1 / 68      (Adware)
nsy71cf.tmp.exe  (789afd0d232d5adba9e1e8902eb5e1a8)

1 / 68      (Adware)
couponarific.exe  (4ac8b16950452f5398eb425a362c6e4c)

1 / 68      (Adware)
uninstaller.exe  (9a4fb64e317ec62f3656262791596929)

1 / 68      (Adware)
couponarificp_soft_partner.exe  (b79c3094f8f51f6169ed14e32eb151f0)

1 / 68      (Adware)
uninstaller.exe  (b64210e8c39cdd42a3749472a32cb367)

1 / 68      (Adware)
couponarific.exe  (3d6504bfc6f16a812725f0eeabd751b0)

1 / 68      (Adware)
tmp0000005b45e9e9616c602b0f  (3a8d6553e6016e4cf82cd698e75b6624)

1 / 68      (Adware)
hjbtbedpmh32.exe  (00aee0eb07a2dca222b3faf150492e82)

1 / 68      (Adware)
nsra536.tmp.exe  (b5087c713bdb220105c226a41b46f90e)

1 / 68      (Adware)
wcsoongcsu32.exe  (d3b79da415560dd742272926eb7f3a54)

8 / 68      (Adware)
uninstaller.exe  (bdc126f127a35c4cf179da570f6a851f)

30 / 68    (Adware)
rbm.exe  (e38e5ba493510c264b0493a2ac4f5e19)

12 / 68    (Adware)
nscd3ab.tmp.exe  (941c8426942d500181950c64b59959b4)

15 / 68    (Adware)
fvcadgdzjp32.exe  (2b2f807f7748299f2c9022b11860b2b3)

12 / 68    (Adware)
nsbd6f0.tmp.exe  (5aea90513da033181d0a0f6dc9e06e34)

31 / 68    (Adware)
hpsnytkwtm32.exe  (05c681d57fb6616f92f4ddb3f4fe5ab3)

8 / 68      (Adware)
nsa367d.tmp.exe  (ee7bd722891adc0396d798b4ea606034)

5 / 68      (Adware)
nssfe5.tmp.exe  (1f2d6cbe9a31cfe7e5f4fb7d3c52be5b)

29 / 68    (Adware)
5244156678.exe  (d4f5370cfc92ce4d284e4da12d069d97)

16 / 68    (Adware)
lbvxatjqpw32.exe  (94f2db04f90a494821da31952bb537dc)

4 / 68      (Adware)
nse1333.tmp.exe  (acdaa19ae5a186845c6a5c53eecb3224)

16 / 68    (Adware)
duuwysugju32.exe  (3f20673890c685cd93181b46bfe80380)

6 / 68      (Adware)
nsv4c0e.tmp.exe  (2ce3fe0c792c0b1f3087f02ede2e70c1)

15 / 68    (Adware)
kzmhgtoyat32.exe  (1d097659d9156835d40ad61c54767e7e)

19 / 68    (Adware)
nov26adk_20141201.exe  (835251c871a7a05d85c0c54d618a4d62)

5 / 68      (Adware)
uninstaller.exe  (a36277ee80b83463fa825ca9d8d35d46)

22 / 68    (Adware)
9585851305  (70e42a2ae0a90af24bad17e5b1635acc)

13 / 68    (Adware)
bite80a.tmp  (ed55b2425df6c9d901bcdd244cb591b0)

15 / 68    (Adware)
nov26im.exe  (8fb2539e199bf7f894ebdb7aac546187)

5 / 68      (Adware)
nsg86fb.tmp.exe  (7413779b86fbc878f2a9d073f24b94e7)

 
Latest 30 of 86 files

Downloads URLs for files signed by Couponarific.

9 / 68      (Adware)
http://cdn.airdlr1.com/downloads/offers/.../nov26air.exe  (22b12f9b7c2be50152af3eecfe2d7273)

13 / 68    (Adware)
http://d2baov6ticicd8.cloudfront.net/.../wp.exe  (ed55b2425df6c9d901bcdd244cb591b0)

22 / 68    (Adware)
http://d2baov6ticicd8.cloudfront.net/.../us.exe  (70e42a2ae0a90af24bad17e5b1635acc)

The following websites host and distribute files published by Couponarific.

The following certificate is also signed by Couponarific.

1121BAF1CEB5BEDBBCF6DD9BB46EF6AA44A8  (Nov 04, 2014 to Nov 04, 2015)

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to Couponarific by GlobalSign nv-sa on October 06, 2014 with the serial number '1121d5217fdb68336d578ac0747743835652'.