Hangzhou Yunbao Network&Technology Co.,Ltd

Publisher Information

Hangzhou Yunbao Network&Technology Co.,Ltd is a software publisher located in Hangzhou, Zhejiang in China*. Thre are 4 additional code signing certificates issued to this publisher.
Authority:
VeriSign, Inc.

Valid from:
6/26/2014 2:00:00 AM

Valid to:
8/26/2015 1:59:59 AM

Subject:
CN="Hangzhou Yunbao Network&Technology Co.,Ltd", OU=IT Dept., O="Hangzhou Yunbao Network&Technology Co.,Ltd", L=Hangzhou, S=Zhejiang, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7d7b3cbf4105dae7a25aa30ff7c8cd21

Status:
Inconclusive detections from multiple engines

Scan engine
Details
Detections

Qihoo 360 Security
Malware.QVM07.Gen, Win32/Trojan.Adware.37e
73.08%

Dr.Web
Trojan.DownLoader12.55923, Trojan.DownLoader12.54676, Trojan.DownLoader12.35573, Trojan.DownLoader12.47736
57.69%

IKARUS anti.virus
PUA.HYunbao, PUA.Liuliangbao
53.85%

Trend Micro House Call
Suspicious_GEN.F47V1231, Suspicious_GEN.F47V1028, Suspicious_GEN.F47V0401, TROJ_GEN.R02SC0ODR15, Suspicious_GEN.F47V0430
38.46%

ESET NOD32
Win32/Liuliangbao (variant), Win32/Adware.HYunbao (variant), Win32/Liuliangbao.A potentially unwanted (variant)
26.92%

ESET NOD32
Win32/Adware.HYunbao.A application, Win32/Liuliangbao.A potentially unwanted application, Detection.Undefined
23.08%

Fortinet FortiGate
Riskware/Liuliangbao
23.08%

Avira AntiVirus
TR/Rogue.498176.4, TR/Kazy.1397736, TR/Kazy.1383400, TR/Kazy.1392616, TR/Kazy.1159168
19.23%

McAfee
Artemis!F733C36A79BB, Artemis!211807F17439, Artemis!84E3DD119EF8, Artemis!C65E28A6E5AD, Artemis!685E6D1E442E
19.23%

Agnitum Outpost
Riskware.Agent
15.38%

0 / 68

7 / 68      (PUP)

0 / 68
_iu14d2n.tmp  (8178f63b8d5cfeae3e94fab03e0cb920)

0 / 68
wmiprvse.exe (liuliangbao by www.liuliangbao.cn)  (732d58d0be63a7a11fa6138c269b1768)

0 / 68
svchost.exe (liuliangbao by www.liuliangbao.cn)  (e9cc91fea8fc32b0122f4dcc9beb39a3)

2 / 68      (PUP)
流量宝挂机版_1.1.512.exe (by liuliangbao.cn)  (5cadf0a2f23542c48aaaa9afe520cf7a)

0 / 68
aaa.exe (by liuliangbao.cn)  (30bc1232da57997a2a2630fcd7c56dcb)

0 / 68

8 / 68      (PUP)
server.exe (liuliangbao by www.liuliangbao.cn)  (6c9d8343db3e951669f5a4481a6e3af4)

4 / 68

0 / 68
流量宝流量版.exe  (66355ec8ebd16b5745e7f56263ebe73d)

4 / 68

13 / 68    (PUP)

4 / 68

0 / 68

4 / 68

12 / 68    (PUP)

4 / 68

13 / 68    (PUP)

2 / 68

4 / 68      (inconclusive)

1 / 68

1 / 68      (inconclusive)
流量宝流量版_2.2.999.exe (by liuliangbao.cn)  (0c54815ac0b4188298961b2cc6c9221c)

5 / 68      (PUP)
挂机版.exe  (e0f7e3481fae2ddb5fd772e660232547)

7 / 68      (PUP)
liuliangbao.exe (liuliangbao by www.liuliangbao.cn)  (f733c36a79bba65cdc36cddf7977ab61)

1 / 68

0 / 68
2.2.999.exe (by liuliangbao.cn)  (f0e75cb27b3ec7caa0b39bbbe230a75b)

2 / 68
2.2.954.exe (by liuliangbao.cn)  (33a0ff4f21f6837d5dbc43c7fd4e8877)

 
Latest 30 of 36 files

Downloads URLs for files signed by Hangzhou Yunbao Network&Technology Co.,Ltd.

0 / 68
http://cltres.liuliangbao.cn/clt/Up/.../llb2.2.942.1.exe  (66355ec8ebd16b5745e7f56263ebe73d)

12 / 68    (PUP)

1 / 68      (inconclusive)

The following websites host and distribute files published by Hangzhou Yunbao Network&Technology Co.,Ltd.

The certificates below are also signed by Hangzhou Yunbao Network&Technology Co.,Ltd.

44C288BD6EAFCD721B2BB028D5CA06D0  (Aug 26, 2016 to Oct 25, 2017)

1BED00C480C169774B3859AEBBC46346  (Jul 16, 2015 to Sep 14, 2016)

6985D5B0F41E07F0048EB9B37F33A7EE  (Apr 29, 2013 to Jul 30, 2014)

20A8A051262352A8DD384AEAB5155BB6  (Jun 14, 2012 to Jun 15, 2013)

* Note, the details and description above are based on the code signing digital signature issued to Hangzhou Yunbao Network&Technology Co.,Ltd by VeriSign, Inc. on June 26, 2014 with the serial number '7d7b3cbf4105dae7a25aa30ff7c8cd21'.