GT Consultoria em Informática Ltda

Publisher Information

GT Consultoria em Informática Ltda is a software publisher located in Juiz de Fora, Minas Gerais in Brazil*. The company is a primary distributor of unwanted software. There is one additional code signing certificate issued to this publisher.
Authority:
COMODO CA Limited

Valid from:
8/2/2015 9:00:00 PM

Valid to:
12/30/2015 9:59:59 PM

Subject:
CN=GT Consultoria em Informática Ltda, O=GT Consultoria em Informática Ltda, STREET="AV PRESIDENTE ITAMAR FRANCO, 3180/404", L=Juiz de Fora, S=Minas Gerais, PostalCode=36025-290, C=BR

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
009704dc419fc73b34ecf547a8e3103a7e

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.installCore.GTConsultoriaemInformaticaa (M), PUP.installCore.GTConsultoriaemInformaticaa.Installer (M), PUP.installCore.GTConsul (M), PUP.installCore.GTConsul.Installer (M), PUP.installCore (M)
100.00%

ESET NOD32
Win64/NetFilter.A potentially unsafe (variant), Win32/NetFilter.A potentially unsafe (variant), Win32/RiskWare.NetFilter
20.93%

Baidu Antivirus
Adware.Win32.InstallCore
13.95%

G Data
Win32.Adware.Adpeak, Win32.Application.Agent.VNB5AW, Win32.Riskware.Netfilter
11.63%

Panda Antivirus
Generic Suspicious
11.63%

McAfee
Artemis!B5719690475A, Artemis!6F29D97831BC, Artemis!6F0C638817AC
9.30%

Kaspersky
not-a-virus:NetTool.Win64.NetFilter
9.30%

VIPRE Antivirus
NetFilter
9.30%

Sophos
Generic PUA JD (PUA), Generic PUA DA (PUA), Generic PUA FM (PUA)
9.30%

Fortinet FortiGate
Riskware/NetFilter
9.30%

1 / 68      (Adware)
enable_dotnet.exe  (d222f0fb0bea6d454d9d56645bc07820)

1 / 68      (Adware)
RestartExplorer.exe  (fe19b3eb6621dd3caaf7e5ba57af2d28)

1 / 68      (Adware)
RegisterExtensionDotNet20.exe  (bf1136964320206136c4a9fc59d10b0f)

1 / 68      (Adware)
legendas33.exe (Legendas 3.3 by LegendasBrasil.com.br)  (74ee46de6c813c470ea620d9f5324132)

1 / 68      (Adware)
vivadrv.sys (NetFilter SDK by NetFilterSDK.com)  (6cea8774179e1c9799c6521dc1b64527)

1 / 68      (Adware)
srvlegendas.exe  (80cae71d09cefdf4d368dba364cfeb4a)

1 / 68      (Adware)
legendas33.exe (Legendas 3.3 by LegendasBrasil.com.br)  (edfac0125af38efd285173bf7bfbba05)

1 / 68      (Adware)

1 / 68      (Adware)
srvlegendas.exe  (7f89e8ed392abbfb78d432dede1e9f55)

1 / 68      (Adware)
legendas33.exe (Legendas by Legendas Brasil)  (a8f0d27bef2d8a723c27bc080e06515b)

10 / 68    (Adware)
legendas33.exe (Legendas 3.3 by LegendasBrasil.com.br)  (7a618658f874a03576d908d12e87a2fe)

1 / 68      (Adware)

1 / 68      (Adware)
RestartExplorer.exe  (bd50052e88c4e71c2dfb466d03b5cda3)

1 / 68      (Adware)
RegisterExtensionDotNet40.exe  (1e01b13b28fab4aa2367b3f5b5450978)

1 / 68      (Adware)
RegisterExtensionDotNet20.exe  (e61bdd8de8bc14068231f7edd00f3e95)

1 / 68      (Adware)
perfectmatch.exe (by Legendas Brasil)  (6d0e636d54ff280dd48e04bec38aa7c7)

2 / 68      (Adware)
nfregdrv.exe  (521ba2de9bd21a2103c7c0219ad60775)

1 / 68      (Adware)
legendasdrv.sys (Viva drv by GT)  (aada1d4b7fcfbf0614c8f1f31d45016d)

1 / 68      (Adware)
srvlegendas.exe  (9890d25b47d3e28e44ff9c5f9ca2f9b9)

12 / 68    (Adware)
legendas33.exe (Legendas 3.3 by LegendasBrasil.com.br)  (6f0c638817ac043589627c88445fb292)

1 / 68      (Adware)

11 / 68    (Adware)
legendas33.exe (Legendas 3.3 by LegendasBrasil.com.br)  (6f29d97831bc8e05de48a7e4e8ac5d3e)

1 / 68      (Adware)

1 / 68      (Adware)
srvlegendas.exe  (a2e0eeeab430502bbf7f28af21fbdf6b)

1 / 68      (Adware)
vivadrv.sys (NetFilter SDK by NetFilterSDK.com)  (2289c51ebd2de5825aabbb4ff738c289)

6 / 68      (Adware)

5 / 68      (Adware)

2 / 68      (Adware)

1 / 68      (Adware)
nfregdrv.exe  (08f05a4a88556d09df85941343558cb2)

1 / 68      (Adware)

 
Latest 30 of 43 files

Downloads URLs for files signed by GT Consultoria em Informática Ltda.

6 / 68      (Adware)
http://legendasbrasil.org/.../Legendas33.exe  (42dc499358a6ced05fb13efa77b6a648)

1 / 68      (Adware)

10 / 68    (Adware)

1 / 68      (Adware)
http://legendasbrasil.org/.../Legendas33.exe  (de2619b29c325edfbfa95008acd66a6e)

12 / 68    (Adware)
http://legendasbrasil.org/.../Legendas33.exe  (6f0c638817ac043589627c88445fb292)

1 / 68      (Adware)
http://legendasbrasil.org/.../Legendas33.exe  (af30395fc12ac1e87ed7dc8d4c2c44b5)

11 / 68    (Adware)
http://legendasbrasil.org/.../Legendas33.exe  (6f29d97831bc8e05de48a7e4e8ac5d3e)

11 / 68    (Adware)

12 / 68    (Adware)

11 / 68    (Adware)

6 / 68      (Adware)

6 / 68      (Adware)

The following websites host and distribute files published by GT Consultoria em Informática Ltda.

The following certificate is also signed by GT Consultoria em Informática Ltda.

00F50B06E8234F5A0EB2D866646C969911  (Jun 30, 2014 to Jul 01, 2015)

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to GT Consultoria em Informática Ltda by COMODO CA Limited on August 02, 2015 with the serial number '009704dc419fc73b34ecf547a8e3103a7e'.