Covus Pro GmbH

Publisher Information

Covus Pro GmbH is a software publisher located in Berlin, Germany*. The company is a primary distributor of unwanted software. Thre are 4 additional code signing certificates issued to this publisher.
Authority:
VeriSign, Inc.

Valid from:
1/23/2014 1:00:00 AM

Valid to:
1/24/2016 12:59:59 AM

Subject:
CN=Covus Pro GmbH, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Covus Pro GmbH, L=Berlin, S=Berlin, C=DE

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
249e4122d3206380e8c5db9afc085c73

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Covus (M), PUP.Covus.Bundler
100.00%

1 / 68      (Adware)
windows-live-mail.exe  (fad581e04a8ff84c3cff052e7c450324)

1 / 68      (Adware)
adobe-reader.exe  (29da66df91067b49999743f1dc4d96f0)

1 / 68      (Adware)
pdf24-creator.exe  (b303fb4a760636d3ccfe537d757629cb)

1 / 68      (Adware)
ccleaner.exe  (53d1369e85f8c1d2124b9b0049c78d30)

1 / 68      (Adware)
sweet-home-3d.exe  (d0af59aeb84ac518111615a4c2eadf27)

1 / 68      (Adware)
internet-explorer.exe  (19e6bf21b45d8293d1c7649a1d4793e9)

1 / 68      (Adware)
word.exe  (21f228ad06bcd00ddabed441da40fb81)

1 / 68      (Adware)
download-adblock-chrome.exe  (7e3fdd2ee7c0d84627b2f83fad38a045)

1 / 68      (Adware)
minecraft.exe  (a2ac798a0a1e8b0e30a0c35bd14a1a71)

1 / 68      (Adware)
vlc-media-player.exe  (5c34318525caf15da2ec9d409cc3f213)

1 / 68      (Adware)
internet-explorer.exe  (5aad0ef269a48a667281629230d20960)

1 / 68      (Adware)
download-adblock-chrome.exe  (183bba9776027876ca8591df77ac530d)

1 / 68      (Adware)
download-adblock-chrome.exe  (c3cd61148d7600b27bda11f691afd52d)

1 / 68      (Adware)
mozilla-firefox.exe  (74859d187615cf721706382795da8841)

1 / 68      (Adware)
download-apache-openoffice.exe  (61c0ad8e98a273caa61f0cd596f5efc1)

1 / 68      (Adware)
download-apache-openoffice.exe  (3cd2800258fda20377bd124d24899164)

1 / 68      (Adware)
avira-free-antivir.exe  (6404e343726cff48835ba7058b7a90bb)

1 / 68      (Adware)
download-apache-openoffice.exe  (1e00296635c1868eb2a9d071734f5804)

1 / 68      (Adware)
avira-free-antivir.exe  (ea79c6372db1e608b9edfee56c7a80e9)

1 / 68      (Adware)
nero-burning-rom.exe  (d904732d99f5d892d1999d112b73acbf)

1 / 68      (Adware)
windows-movie-maker.exe  (3107f8529322e664f149a5a8787cc5a8)

1 / 68      (Adware)
samsung-kies.exe  (c482e6e652e654db576a778c96f7031d)

1 / 68      (Adware)
adblock-plus-firefox.exe  (bb888f88d5d734c6fad469edac1e8a1c)

1 / 68      (Adware)
7-zip.exe  (8ddfe6877735440d6ec4ce7ff76040e7)

1 / 68      (Adware)
download-adobe-flash-player.exe  (b2423c250e677c27f6b65bca7261104d)

1 / 68      (Adware)
avira-free-antivir.exe  (313f0488be20e3ace6238b3fac8ec24d)

1 / 68      (Adware)
mozilla-firefox.exe  (906a978ef438d1c973848572a7691c6c)

1 / 68      (Adware)
avira-free-antivir.exe  (9d457865f827bfa52e7a24e8845493cf)

1 / 68      (Adware)
avira-free-antivir.exe  (8d8abc3945596f8a9caa5cc1655f706a)

1 / 68      (Adware)
microsoft-powerpoint.exe  (4541cf3b6b1ef74d243deb03bad97bdc)

 
Latest 30 of 1,504 files

Downloads URLs for files signed by Covus Pro GmbH.

1 / 68      (Adware)

1 / 68      (Adware)
http://sda.pro.de/pro.php?pro=apc  (download-adblock-chrome.exe)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

The certificates below are also signed by Covus Pro GmbH.

00B62BB34DE8E3FE56  (Mar 11, 2015 to Feb 23, 2016)

404873D3F4F98D31  (Feb 23, 2015 to Feb 23, 2016)

61A79175C602D4C6B8D777D3A741B75A  (Feb 05, 2014 to Feb 06, 2015)

00B3EC5582300459EBAEAA1DCABDECF1A8  (Feb 05, 2013 to Feb 06, 2014)

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to Covus Pro GmbH by VeriSign, Inc. on January 23, 2014 with the serial number '249e4122d3206380e8c5db9afc085c73'.