JE communication

Publisher Information

JE communication is a software publisher located in Gangnam, Seoul in Korea*. The company is a primary distributor of unwanted software. Thre are 4 additional code signing certificates issued to this publisher.
Authority:
Thawte, Inc.

Valid from:
8/15/2011 9:00:00 AM

Valid to:
10/14/2012 8:59:59 AM

Subject:
CN=JE communication, O=JE communication, L=Gangnam, S=Seoul, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
6ae5926ad804699f49bff482b2bf0b53

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.JEcommunication (M), PUP.JEcommunication.Installer (M), PUP.JEcommun.Installer (M), PUP.JEcommun (M), PUP (M)
100.00%

MicroWorld eScan
Application.BootCare.A, Gen:Variant.Symmi.5744
7.41%

McAfee
Generic FakeAlert.lx, Generic FakeAlert.it
7.41%

Malwarebytes
Adware.Kraddare
7.41%

Zillya! Antivirus
Trojan.FakeAV.Win32.135036, Trojan.FakeAV.Win32.152959
7.41%

SUPERAntiSpyware
Trojan.Agent/Gen-FraudScan[Com]
7.41%

K7 AntiVirus
Unwanted-Program , Adware
7.41%

NANO AntiVirus
Trojan.Win32.Fakealert.cytgzc, Trojan.Win32.FakeAV.mqdai
7.41%

Norman
Kraddare.L, Krypt.DI
7.41%

Trend Micro House Call
TROJ_FAKEAV.CRH, Suspicious_GEN.F47V1117
7.41%

1 / 68      (Adware)
privacyndm.exe  (8ef593e5b9a848aa89c407dd9aae47a7)

1 / 68      (Adware)
uninst_fileboan.exe  (387e978e8fa927bccc5f32d1cb69a49a)

1 / 68      (Adware)
updatesvcd.exe  (4f66921afd73ab0f3fe3a65264c2a57a)

1 / 68      (Adware)
InfoSevenuck.exe  (afd6309d4cb5626a74e15ab69d80dae6)

1 / 68      (Adware)
addscheduler_.exe  (ce7f776ab700d9abfd9b4d3f98af0d4a)

1 / 68      (Adware)
autoshutdownd.exe (AutoShutdown manager)  (e14f9dc5051513831543456bd311e8fa)

1 / 68      (Adware)
shupdatb.exe  (5170c5d38f2b1e4e300bd115a5bf7595)

1 / 68      (Adware)
anycop.exe  (5763b1c3edab168c9a591590d1a108e2)

1 / 68      (Adware)
updatesvc.exe  (92873e73573bbb2e3ba922c4af3a211b)

1 / 68      (Adware)
autoshutdownb.exe (AutoShutdown manager)  (af65b8fc60243d88429061b27ee6b18a)

1 / 68      (Adware)
EGutil.dll  (37316734cce57a1c055992afc60053bf)

1 / 68      (Adware)
winspop.exe  (c1a40c871a69d3514241b6e89450b6e8)

1 / 68      (Adware)
updatesvcb.exe  (99b612c3399dc74e09e1c4517115a784)

1 / 68      (Adware)
programuserset.EXE  (9f0ade788e0a66b2644dfd8f409f3958)

1 / 68      (Adware)
InfoSevenMtr.exe  (e2881d21e8c1d6f7fd6582601e806a3c)

1 / 68      (Adware)
InfoSeven.exe  (688e9d7fb45210f4162318db85d56d00)

1 / 68      (Adware)
vaccinecomsetup_table.exe  (b2b0d8d028ff9f007cc3f1e007661f04)

1 / 68      (Adware)
doublevaccinesetup_end.exe  (1b5c433950f02db25121231bd45d1393)

1 / 68      (Adware)
vaccinelabplus_table.exe  (60c37057e1dcaae55a2f7c5a178d4932)

1 / 68      (Adware)
vaccinecop_modul.exe  (d5865ab39ce8d704fa4e51e76867b287)

1 / 68      (Adware)
idboan_staten_s.exe  (e2117b441bb00e4bd08f23ec09ecfe03)

1 / 68      (Adware)
idboan_silicon_s.exe  (0a47170670ed1433e3c2c14275babadc)

1 / 68      (Adware)
uninst_doublevaccine.exe  (5a3d4608ba27bfcdd8e167f98f115b5f)

1 / 68      (Adware)
shupdatc.exe  (f6f85a42d00b0f4e808d2a75d12dc8ae)

1 / 68      (Adware)
autoshutdownc.exe (AutoShutdown manager)  (befe880af30ed3e57286d84c969f81c5)

37 / 68    (Adware)
privacynsetup_table.exe  (067b01245c13c6bcd7cd8e74682bf01b)

33 / 68    (Adware)
privacynBK.exe  (7f610d0433039b6d019381d3e1be8634)

The certificates below are also signed by JE communication.

40E440C0868BF76724AB0B79E1D1A63F  (Mar 26, 2014 to Mar 27, 2015)

79BFEDDF41C2E1BD5C1C61870556A607  (Oct 29, 2012 to Nov 29, 2013)

434F5FDE34495332B10E00CB5F8397AD  (Jan 09, 2012 to Oct 17, 2012)

217805E59F1C39EA283584DAC5CEAD29  (Aug 30, 2010 to Aug 31, 2011)

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to JE communication by Thawte, Inc. on August 15, 2011 with the serial number '6ae5926ad804699f49bff482b2bf0b53'.