LLC

Publisher Information

LLC is a software publisher located in Slavutych, Kyyivska in Ukraine*. The company is a primary distributor of unwanted software. Thre are 210 additional code signing certificates issued to this publisher.
Authority:
COMODO CA Limited

Valid from:
5/26/2015 2:00:00 AM

Valid to:
5/26/2016 1:59:59 AM

Subject:
CN="LLC ""Soft-Portal""", O="LLC ""Soft-Portal""", STREET="Moskovskyy Kvartal, 12/3", L=Slavutych, S=Kyyivska, PostalCode=07100, C=UA

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
4376dd1de225c965b55e10f0ef32f115

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Amonitize.Installer, PUP.Amonitize (M), PUP.Amonitize.OpenSource.Installer (M), PUP.Amonitize.OpenSour.Installer (M), PUP.Amonitize.Startup
100.00%

ESET NOD32
Win32/BitCoinMiner.BY potentially unsafe (variant), Win64/BitCoinMiner.AT potentially unsafe (variant), Win64/BitCoinMiner.AP potentially unsafe (variant)
34.29%

Baidu Antivirus
Hacktool.Win32.BitCoinMiner, Hacktool.Win64.BitCoinMiner
31.43%

Dr.Web
Trojan.BtcMine.709, Trojan.BtcMine.711
28.57%

IKARUS anti.virus
Trojan.BitCoinMiner, not-a-virus:RiskTool.BitCoinMiner
22.86%

Avira AntiVirus
TR/BitCoinMiner.2410272, TR/BitCoinMiner.4626720.2
20.00%

K7 AntiVirus
Unwanted-Program
14.29%

Qihoo 360 Security
HEUR/QVM42.1.Malware.Gen, HEUR/QVM10.1.Malware.Gen
14.29%

avast!
Multi:BitCoinMiner-B [PUP], Win32:Miner-B [PUP], Win32:Malware-gen
11.43%

NANO AntiVirus
Riskware.Nsis.BitCoinMiner.dqgttf
8.57%

1 / 68      (Adware)
cpm.exe (cpuminer)  (3d9734a1a606dabc347a540f7301bd62)

1 / 68      (Adware)
gpuminer-setup.exe (SGM - Setup by Open Source)  (b1401c5fe6c42c98ad7ea26226ad2385)

1 / 68      (Adware)
awh1230.tmp (Setup by Open Source)  (0380cfe7d7a2a40ab40cac1f7e9d0d1d)

1 / 68      (Adware)
gpuminer-setup.exe (SGM - Setup by Open Source)  (a8ad3e1c98e52a79c3f76c7ed45717c6)

1 / 68      (Adware)
gpuminer-setup.exe (SGM - Setup by Open Source)  (d063196844247e07482de55876294b94)

1 / 68      (Adware)
cpm.exe (cpuminer)  (8a5f994f3094516ac9e8e897846d1aa2)

1 / 68      (Adware)
cpuminer-x86.exe (cpuminer)  (1ce0a91a0af66a68321a547112334b27)

1 / 68      (Adware)
cpuminer-x86.exe (cpuminer)  (dc0808ec3db6f28046edb60dfb142d77)

1 / 68      (Adware)
gpuminer-setup.exe (SGM - Setup by Open Source)  (ac28c3225cd43ee2b97e1545d3ca50d1)

16 / 68    (Adware)
cpuminer.exe (CPU Miner - Setup by Open Source)  (da53eda158e893b5dc3a26edda95f198)

9 / 68      (Adware)
awh2a5a.tmp (Setup by Open Source)  (687d603d3831388582f8fbc188e5b44e)

7 / 68      (Adware)
cpm.exe (cpuminer)  (12d7565d7f64a77da65e83c718bdd494)

5 / 68      (Adware)
cpm.exe (cpuminer)  (b182e4ecd0568166d303e71a7946fbf5)

1 / 68      (Adware)
gpuminer-setup.exe (SGM - Setup by Open Source)  (26f57626e9ece59025932e5e54cb9b02)

6 / 68      (Adware)
cdn.exe (Setup by Open Source)  (1c7da349c811d386f5330f5c3d4daf98)

5 / 68      (Adware)
cpm.exe  (523b330587699dcb80d604d3860d15d8)

1 / 68      (Adware)
cpm.exe  (52fd608edc1c85bee033cfd2a3ccccca)

1 / 68      (Adware)
awh51d6.tmp (Setup by Open Source)  (77ca1d655436718cc7b73c21b947c637)

1 / 68      (Adware)
cpm.exe  (a24ed34112a8260a79286241d4c354f2)

1 / 68      (Adware)
cpm.exe (cpuminer)  (f0ae3cb2a14e52ab6319e2dd636d5345)

1 / 68      (Adware)
awh883e.tmp (Setup by Open Source)  (bf73854dd8de1dd7297699c374361e27)

5 / 68      (Adware)
cpm.exe (cpuminer)  (45deb8845b0d0b0e9ab5d028c69a17ac)

1 / 68      (Adware)
cpm.exe (cpuminer)  (536a1ccb80e70701c0d417afb276a3ee)

4 / 68      (Adware)
cpm.exe  (a48c5e264a0a471f3a5388bf1006cf58)

1 / 68      (Adware)
setup.exe (Setup by Open Source)  (7e8988899f47e6b0a39370131b0bc174)

5 / 68      (Adware)
cpm.exe  (5e3d8fd4e621b1caf6e361018863d98e)

5 / 68      (Adware)
cpm.exe  (f38b4e5b7a69ec91dc8912f6e587933e)

1 / 68      (Adware)
cpm.exe  (bde98d68eff4575d28c4b774fef469f0)

8 / 68      (Adware)
awh8a4a.tmp (Setup by Open Source)  (7e02a6a2ca4e82e2f116ccbec3f4902d)

13 / 68    (Adware)
cpuminer-x86.exe (cpuminer)  (c179100d7dddcf36bb4286fcb26cb6eb)

 
Latest 30 of 35 files

Downloads URLs for files signed by LLC .

16 / 68    (Adware)
http://cdn-14b7.kxcdn.com/cdn.exe  (da53eda158e893b5dc3a26edda95f198)

9 / 68      (Adware)
http://setup-14b7.kxcdn.com/setup.exe  (687d603d3831388582f8fbc188e5b44e)

7 / 68      (Adware)
http://cdn-14b7.kxcdn.com/cdn.exe  (ccc4c30218e08f6a4cb752ab39865322)

6 / 68      (Adware)
http://cdn-14b7.kxcdn.com/cdn.exe  (1c7da349c811d386f5330f5c3d4daf98)

The following websites host and distribute files published by LLC .

The certificates below are also signed by LLC .

00FE7B351079FD02F4C109D42C37F5C27A  (Jun 29, 2015 to Jun 29, 2018)

2A7DD7BCCEB648F185DD5A9432FE186D  (Oct 20, 2016 to Sep 04, 2017)

00F5EC479E1B7B3F9CEC13CFC8EDCC113C  (Sep 08, 2016 to Sep 03, 2017)

1A810FEC80052E26B932F3A315075709  (Aug 29, 2016 to Aug 30, 2017)

00F7244EEE637B20E588B65F59A244BFE1  (Aug 22, 2014 to Aug 22, 2017)

0CD9A2B4BA92EEB65DD3227ED6D3AF1E  (Jul 19, 2016 to Aug 22, 2017)

5A0289F4CB40DCA36F3E58617454A7C8  (Aug 01, 2016 to Aug 02, 2017)

20D09F2559BFDF0848AD8BC883379F18  (Oct 26, 2016 to Jul 23, 2017)

00CB1CD5925F9E2F5B0B456369E2C54C8B  (Jul 08, 2016 to Jul 09, 2017)

27DBE55E53BFEEB479C49E640598529F  (Aug 17, 2016 to Jul 09, 2017)

10 of 210 code signing certificates issued

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to LLC by COMODO CA Limited on May 26, 2015 with the serial number '4376dd1de225c965b55e10f0ef32f115'.