LLC

Publisher Information

LLC is a software publisher located in Brovary, Kievska in Ukraine*. The company is a primary distributor of unwanted software. Thre are 210 additional code signing certificates issued to this publisher.
Authority:
COMODO CA Limited

Valid from:
6/28/2015 3:00:00 AM

Valid to:
6/28/2016 2:59:59 AM

Subject:
CN="LLC ""SOFT ERA""", O="LLC ""SOFT ERA""", STREET="str. Parkhomenka, 11", L=Brovary, S=Kievska, PostalCode=07400, C=UA

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
68e455b0112ee583e54746eaf224f225

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Amonitize.OpenSource.Installer (M), PUP.Amonitize.OpenSource (M), PUP.Amonitize (M), PUP.Amonitize.OpenSour.Installer (M), PUP.BitcoinMiner.Amonitize.Meta (M), PUP.BitcoinMiner (M), PUP.Amonitize.Installer
100.00%

Baidu Antivirus
Hacktool.Win64.BitCoinMiner, Hacktool.Win32.BitCoinMiner
24.32%

ESET NOD32
Win64/BitCoinMiner.AT potentially unsafe (variant), Win32/BitCoinMiner.BY potentially unsafe (variant), Win64/BitCoinMiner.AP potentially unsafe (variant)
24.32%

IKARUS anti.virus
not-a-virus:RiskTool.BitCoinMiner, Trojan.BitCoinMiner
16.22%

AVG
CoinMiner
16.22%

Arcabit
Trojan.Strictor.D1575E
13.51%

Bitdefender
Gen:Variant.Strictor.87902
13.51%

Lavasoft Ad-Aware
Gen:Variant.Strictor.87902
13.51%

Emsisoft Anti-Malware
Gen:Variant.Strictor.87902
13.51%

F-Secure
Gen:Variant.Strictor.87902
13.51%

1 / 68      (Adware)
cpuminer.exe (CPU Miner - Setup by Open Source)  (d4f5aaef90ed69a361be870f1806627f)

1 / 68      (Adware)
cpuminer-x86.exe (cpuminer)  (6f07285bec6597c62281a30a09bf3a56)

1 / 68      (Adware)
cpuminer-x86.exe (cpuminer)  (167cc1495499b0dcee1867e3ff29192a)

1 / 68      (Adware)
cpuminer-x86.exe (cpuminer)  (c43ef5e7ed322b255425adaf34924988)

1 / 68      (Adware)
gpuminer-setup.exe (SG Miner - Setup by Open Source)  (6fe667278cfd718e715d324767639bdc)

1 / 68      (Adware)
gpuminer-setup.exe (SG Miner - Setup by Open Source)  (efbd074a63ef5029ed47070c288690c4)

1 / 68      (Adware)
cpuminer-x86.exe (cpuminer)  (30224478d823db4d37311e3d05844e6f)

1 / 68      (Adware)
cpuminer-gw64.exe  (24f912ffd64e5a4b6430406965bf6c7d)

1 / 68      (Adware)
gpuminer-setup.exe (SG Miner - Setup by Open Source)  (eb38a4545638f7de1ed2198dc109131a)

1 / 68      (Adware)
1339.exe (Setup by Open Source)  (50642618af256fcfc08bb66234530703)

1 / 68      (Adware)
gplyra-setup.exe (GPLYRA - Setup by Open Source)  (2394220ca351f6260dcef311685ba43f)

1 / 68      (Adware)
1339.exe (Setup by Open Source)  (557f2906839d5aab9c0b29ac35c518d5)

3 / 68      (Adware)
1339.exe (Setup by Open Source)  (e1ff769ddb82f408445db64d8caa0149)

1 / 68      (Adware)
1339.exe (GPLYRA - Setup by Open Source)  (1011171d783a9dd2ad2eed1e8d71e053)

1 / 68      (Adware)
cpm.exe  (c2bb0f7afc2478782d8c17f65fb8fc13)

1 / 68      (Adware)
zone3.exe (GPLYRA - Setup by Open Source)  (8acfd43a57f6b776a1a50d0abb460849)

1 / 68      (Adware)
gplyra.exe (- by Open Source)  (52301081642109090645d60dadfafaf8)

1 / 68      (Adware)
ms1bcf.tmp.exe (Setup by Open Source)  (f5de15ca2a474e797903bd55e4ab4212)

1 / 68      (Adware)
cpm.exe  (ef4417bb1dc118f03be7d1c89245517f)

1 / 68      (Adware)
gpuminer-setup.exe (SG Miner - Setup by Open Source)  (db91a12c8871765081ad5a7c6e87e27f)

13 / 68    (Adware)
cpuminer-x86.exe (cpuminer)  (68addb7a93ff0a6bd2302752e4d88f9f)

11 / 68    (Adware)
cpuminer-x86.exe (cpuminer)  (e26c0e7dc1d20a433b530049e6029eae)

9 / 68      (Adware)
cpuminer-gw64.exe  (969ff9a6bbffdca5718c374d84777733)

1 / 68      (Adware)
cpuminer.exe (CPU Miner - Setup by Open Source)  (4356d52104869cbdddda78ef7f64a485)

21 / 68    (Adware)
cdn.exe (CPU Miner - Setup by Open Source)  (7fb3c0adcd4f55274524172ca1bb7747)

1 / 68      (Adware)
cpuminer-x86.exe (cpuminer)  (568836e8d965d0a3fb81562a00e45ca6)

16 / 68    (Adware)
cdn.exe (CPU Miner - Setup by Open Source)  (310a7716672dab67e09d27210f57d743)

5 / 68      (Adware)
cpuminer-gw64.exe  (f5384042ff325bebb6763f5ce408cec4)

12 / 68    (Adware)
cpuminer-x86.exe (cpuminer)  (5bf5fff58aa78b4953cd088731230d5c)

1 / 68      (Adware)
gpuminer-setup.exe (SG Miner - Setup by Open Source)  (1efbded2cefab870331a4811812788c8)

 
Latest 30 of 37 files

Downloads URLs for files signed by LLC .

1 / 68      (Adware)
http://113.171.224.209/.../Zone4.exe  (1011171d783a9dd2ad2eed1e8d71e053)

16 / 68    (Adware)
http://cdn-14b7.kxcdn.com/cdn.exe  (310a7716672dab67e09d27210f57d743)

1 / 68      (Adware)
http://113.171.224.242/.../Zone4.exe  (1011171d783a9dd2ad2eed1e8d71e053)

1 / 68      (Adware)
http://zone4-14b7.kxcdn.com/Zone4.exe  (50642618af256fcfc08bb66234530703)

3 / 68      (Adware)
https://zone4.izabelcoin.com/Zone4.exe  (e1ff769ddb82f408445db64d8caa0149)

1 / 68      (Adware)
https://zone4.izabelcoin.com/Zone4.exe  (1011171d783a9dd2ad2eed1e8d71e053)

1 / 68      (Adware)
http://zone4-14b7.kxcdn.com/Zone4.exe  (557f2906839d5aab9c0b29ac35c518d5)

1 / 68      (Adware)
http://zone3-14b7.kxcdn.com/Zone3.exe  (f5de15ca2a474e797903bd55e4ab4212)

1 / 68      (Adware)
http://zone4-14b7.kxcdn.com/Zone4.exe  (8acfd43a57f6b776a1a50d0abb460849)

1 / 68      (Adware)
http://zone4-14b7.kxcdn.com/Zone4.exe  (1011171d783a9dd2ad2eed1e8d71e053)

1 / 68      (Adware)
http://zone3-14b7.kxcdn.com/Zone3.exe  (8acfd43a57f6b776a1a50d0abb460849)

3 / 68      (Adware)
http://zone4-14b7.kxcdn.com/Zone4.exe  (e1ff769ddb82f408445db64d8caa0149)

The following websites host and distribute files published by LLC .

The certificates below are also signed by LLC .

00FE7B351079FD02F4C109D42C37F5C27A  (Jun 29, 2015 to Jun 29, 2018)

2A7DD7BCCEB648F185DD5A9432FE186D  (Oct 20, 2016 to Sep 04, 2017)

00F5EC479E1B7B3F9CEC13CFC8EDCC113C  (Sep 08, 2016 to Sep 03, 2017)

1A810FEC80052E26B932F3A315075709  (Aug 29, 2016 to Aug 30, 2017)

00F7244EEE637B20E588B65F59A244BFE1  (Aug 22, 2014 to Aug 22, 2017)

0CD9A2B4BA92EEB65DD3227ED6D3AF1E  (Jul 19, 2016 to Aug 22, 2017)

5A0289F4CB40DCA36F3E58617454A7C8  (Aug 01, 2016 to Aug 02, 2017)

20D09F2559BFDF0848AD8BC883379F18  (Oct 26, 2016 to Jul 23, 2017)

00CB1CD5925F9E2F5B0B456369E2C54C8B  (Jul 08, 2016 to Jul 09, 2017)

27DBE55E53BFEEB479C49E640598529F  (Aug 17, 2016 to Jul 09, 2017)

10 of 210 code signing certificates issued

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to LLC by COMODO CA Limited on June 28, 2015 with the serial number '68e455b0112ee583e54746eaf224f225'.