Montiera Technologies LTD

Publisher Information

Montiera Technologies LTD is a software developer located in Tel Aviv, Gush Dan in Israel*. The publisher primarily developes software that can be classified as adware. Montiera is a toolbar monetization company specializing in providing a web browser toolbar platform where publishers can design and distribute various web browser extensions for search. Such toolbars include Babylon, Funmoods, Softonic and others. In addition to search montization, the toolbars also provide context based advertising. There is one additional code signing certificate issued to this publisher.
Authority:
COMODO CA Limited

Valid from:
7/22/2014 7:00:00 PM

Valid to:
7/23/2015 6:59:59 PM

Subject:
CN=Montiera Technologies LTD, O=Montiera Technologies LTD, STREET=Harbert Samuel 46, L=Tel Aviv, S=Gush Dan, PostalCode=6330303, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00ccd3cd85f8c32f5c3ff9264e1a57c07d

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Task.Montiera, PUP.MontieraTechnologies.L, PUP.Montiera.MontieraTechnologies, PUP.MontieraTechnologies.S, PUP.MontieraTechnologies.T, PUP.Montiera.PayByAds (M), PUP.Montiera (M)
100.00%

VIPRE Antivirus
Montiera, Threat.4791856
80.00%

Baidu Antivirus
PUA.Win32.Montiera, Hacktool.Win32.Montiera, Adware.Win32.Montiera
80.00%

AVG
Montiera
80.00%

Kaspersky
not-a-virus:WebToolbar.Win32.Montiera, not-a-virus:Downloader.Win32.Montiera, not-a-virus:Downloader.Win32.Agent
75.00%

McAfee
Artemis!3E1F5E3366A9, Artemis!17042647DC9C, Artemis!A5A597FABD84, Artemis!4ED4AC0A1088, Artemis!1730EBB23AE7, Artemis!FEC0FAF42DD4, Artemis!3DA26A7DBD02, Artemis!C7BFB42EEFF9
75.00%

Trend Micro House Call
Suspicious_GEN.F47V0808, Suspicious_GEN.F47V0807, Suspicious_GEN.F47V0811, Suspicious_GEN.F47V0802
70.00%

Panda Antivirus
Trj/Chgt.B, Trj/Chgt.C
70.00%

Malwarebytes
PUP.Optional.PayByAds.A, PUP.Optional.WhiteSmoke.A
50.00%

Sophos
Generic PUA MA, PayByAds
50.00%

1 / 68      (Adware)
whitesmoke.exe (by Pay By Ads)  (1447ec925e8c43d6716529cf4fd0179c)

1 / 68      (PUP)
kms_1.3.10.2_cn.exe  (3e3a073f985bf387f1b6e9a09ac73afe)

1 / 68      (PUP)
trz1cc3.tmp  (27debd8b2b4a55f5785408082154eede)

1 / 68      (Adware)
webprotect.exe (by Pay By Ads)  (d6cce6da966ae5860f6fdd099ca5fd12)

15 / 68    (Adware)
whtsmksetup.exe (by Pay By Ads)  (d4db46034cf02f2b616b14de9cbdbd5e)

11 / 68    (PUP)
appsteinsetup.exe  (58a98b0c5b5c01ec6c71b80a908e32a7)

15 / 68    (Adware)
pricehorse.exe (by Pay By Ads)  (c7bfb42eeff9cb9cca568f2c6001b7d0)

18 / 68    (Adware)
dsrlte.exe (by Pay By Ads)  (10bb309d76aa3bd20feb3e8e472529fd)

16 / 68    (PUP)
wp.exe  (3da26a7dbd02a3e219a540276afe4c72)

14 / 68    (Adware)
webprotect.exe (by Pay By Ads)  (d6cce6da966ae5860f6fdd099ca5fd12)

16 / 68    (PUP)
playnowradio_0708-ed492330.exe  (a5a597fabd8475a3f477b23f8f601936)

13 / 68    (Adware)
playnowradio.exe (by Pay By Ads)  (eefb7478ca9593a0a547764a61af0114)

16 / 68    (PUP)
onlysearch_1.3.10.2_cn.exe  (870f163eae1380a60a74cced323fca98)

15 / 68    (Adware)
buenosearch.exe (by Pay By Ads)  (382ea84f8ce35d4e6beb366f09acdfc3)

14 / 68    (Adware)
onlysearch.exe (by Pay By Ads)  (fec0faf42dd48d39fb8073b7e3bfc085)

16 / 68    (PUP)
mysearchs_1.3.11.0_cn.exe  (1730ebb23ae7368074e9b05dc8f80cc3)

24 / 68    (Adware)
mysearchs.exe (by Pay By Ads)  (4ed4ac0a1088e46ecb2f2f6d38b6e361)

16 / 68    (PUP)
searcharmor.exe  (2a8709652c64a0f9ee167fb143de8c62)

13 / 68    (Adware)
searcharmor.exe (by Pay By Ads)  (17042647dc9cd169c58c15763aa74793)

14 / 68    (Adware)
onekit.exe (by Pay By Ads)  (3e1f5e3366a9c06a5b95bad869fe2590)

Downloads URLs for files signed by Montiera Technologies LTD.

1 / 68      (PUP)
http://dwnl.toolbarservices.com/onekit_1.3.11.0_cn.exe  (27debd8b2b4a55f5785408082154eede)

16 / 68    (PUP)
http://dwnl.toolbarservices.com/mysearchs_1.3.11.0_cn.exe  (1730ebb23ae7368074e9b05dc8f80cc3)

The following websites host and distribute files published by Montiera Technologies LTD.

The following certificate is also signed by Montiera Technologies LTD.

3E6A02DA5FCBA17D267CD5B0DBC10A17  (Jun 25, 2013 to Jun 26, 2014)

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to Montiera Technologies LTD by COMODO CA Limited on July 22, 2014 with the serial number '00ccd3cd85f8c32f5c3ff9264e1a57c07d'.