MARi MARa

Publisher Information

MARi MARa is a software developer located in Dublin, Ireland*. The company is a primary distributor of unwanted software. Thre are 25 additional code signing certificates issued to this publisher.
Authority:
thawte, Inc.

Valid from:
6/7/2015 7:00:00 PM

Valid to:
12/17/2015 5:59:59 PM

Subject:
CN=MARi MARa, O=MARi MARa, L=Dublin, S=Dublin, C=IE

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
50e3d498f56fc6d5b1d3fe3a3182461c

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Outbrowse.MARiMARa.Bundler (M), PUP.Outbrowse.MARiMARa (M), PUP.Outbrowse (M)
100.00%

1 / 68      (Adware)
flash player.exe (JPYNZ)  (741986391e8853fc5b0788304cd79648)

1 / 68      (Adware)
setup.exe (HGFYL)  (d90ac1c0c79e2716c478b5be1047a8f1)

1 / 68      (Adware)
setup.exe (RUIBQ)  (5944f8e650a5cd6073bafc132fb69274)

1 / 68      (Adware)
Setup.exe (FFPDU)  (a395b645981348d9678b5eaa0a8ffa3f)

1 / 68      (Adware)
Setup.exe (CDOQA)  (4a529ed1be5d77d4ff678859aa20ddaa)

1 / 68      (Adware)
sin confirmar 818428.crdownload (VZEJR)  (eefdc7e95ee476890f4a93664e1989a3)

1 / 68      (Adware)
setup.exe (QMIHH)  (f5be5b93016475719870ba6451563688)

1 / 68      (Adware)
setup.exe (ZIIIK)  (4f03ee152b65f4428765c6bcefbe4352)

1 / 68      (Adware)
Setup.exe (JVKQB)  (8344a0c5c3de14926ca0bf2f8d67daf4)

1 / 68      (Adware)
setup.exe (KGUCB)  (59ac63a297714ba947d35413d703702f)

1 / 68      (Adware)
setup.exe (WRPFS)  (37f42f886386903df2262b290b03fcc1)

1 / 68      (Adware)
setup.exe (DHFTL)  (d4809b8dbd29100fe7d6e1739086d550)

1 / 68      (Adware)
dragon city hack_2.exe (OZNOU)  (ec3408c4c0e8afa909043c183da7c5cf)

1 / 68      (Adware)

1 / 68      (Adware)
beddiaiaic.exe  (ae2493d51a7582a7444d61aa5cb6409a)

1 / 68      (Adware)
Setup.exe (FNFGH)  (e4403c81acac6b623ec355bcf0743ffa)

1 / 68      (Adware)
setup.exe (NPEES)  (afddb3356b0e44d93db827c496436e77)

1 / 68      (Adware)

1 / 68      (Adware)
Setup.exe (FYJDL)  (729d5432d561cd1979e1797ec660b0fe)

1 / 68      (Adware)
Setup.exe (POJZL)  (bc97c0731fd4820ed63163846b3e7b10)

1 / 68      (Adware)
dead effect free download pc game.exe (SYTKA)  (dcceef9c75ab1a6ffbef449406fad958)

1 / 68      (Adware)
Setup.exe (VRJQV)  (3a5c5889970feadd304d1391462ede73)

1 / 68      (Adware)
setup.exe (ORSKX)  (55f021b50e26f575216e925adf9c3a12)

1 / 68      (Adware)
setup.exe (WJWQK)  (124b1a45784156539e7f999115f94256)

1 / 68      (Adware)
setup.exe (IKKGQ)  (ed6a5eb460dfbf676635d34b2991c312)

1 / 68      (Adware)
Setup.exe (KQKAY)  (0b56ca23f5ea95fa8f3d5c26e807dd76)

1 / 68      (Adware)
vlc-2.1.6a-win32setup.exe (CDCJG)  (bc0fbdd73136ec91aa3af9eb79344d42)

1 / 68      (Adware)
setup.exe (QCDAJ)  (d32253745afc5b85ef7435e94b1c61ef)

1 / 68      (Adware)
setup.exe (IJTRB)  (8d48efec918a2255e7d59d844e15337e)

1 / 68      (Adware)
Setup.exe (JIBZZ)  (be8fb49c9ace0f813e6525a62f3108c2)

 
Latest 30 of 57 files

Downloads URLs for files signed by MARi MARa.

The following websites host and distribute files published by MARi MARa.

The certificates below are also signed by MARi MARa.

00A984AF8887D3F771  (Jan 27, 2015 to Jan 12, 2016)

00D18A488D65A4D211  (Apr 08, 2015 to Jan 12, 2016)

5D3973BCF3BBD250BC14EB900D1D372D  (Jun 11, 2015 to Dec 18, 2015)

74C061A145C985D389CAB15131FE91BA  (Jan 21, 2015 to Dec 18, 2015)

276A2491AB97531E62A8220F03F277B5  (Jun 15, 2015 to Dec 18, 2015)

5A032CA124C33EB5E15E4FA789433A10  (Jan 19, 2015 to Dec 18, 2015)

0C5A5F3054B6FC24883D98F176A89291  (Jun 30, 2015 to Dec 18, 2015)

2F78E7C3884AEA31CF472A4054044FF7  (Mar 01, 2015 to Dec 18, 2015)

3FCC1659BC631720EE70257E7ED76D84  (May 28, 2015 to Dec 18, 2015)

716FF2D241D4B916F230218656D70846  (Jan 05, 2015 to Dec 18, 2015)

10 of 25 code signing certificates issued

The following publishers (by Authenticode signature organization name) are related.

30 of 33 publishers

* Note, the details and description above are based on the code signing digital signature issued to MARi MARa by thawte, Inc. on June 07, 2015 with the serial number '50e3d498f56fc6d5b1d3fe3a3182461c'.