OOO

Publisher Information

OOO is a software publisher located in Moscow, Russia*. The company is a primary distributor of unwanted software. Thre are 80 additional code signing certificates issued to this publisher.
Authority:
COMODO CA Limited

Valid from:
3/7/2017 3:00:00 AM

Valid to:
7/28/2017 2:59:59 AM

Subject:
CN="OOO ""KING REALTI""", O="OOO ""KING REALTI""", STREET="Lyusinovskaya Street, 72", L=Moscow, S=Moscow, PostalCode=115162, C=RU

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
18c5f13d0d9379c2f6d7b711f33afe12

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP (M)
90.00%

MicroWorld eScan
Gen:Variant.FakeAlert.93, Gen:Variant.Symmi.41078
10.00%

Arcabit
Trojan.FakeAlert.93, Trojan.Symmi.DA076
10.00%

Baidu Antivirus
Win32.Trojan.Kryptik
10.00%

Bitdefender
Gen:Variant.FakeAlert.93, Gen:Variant.Symmi.41078
10.00%

Lavasoft Ad-Aware
Gen:Variant.FakeAlert.93, Gen:Variant.Symmi.41078
10.00%

Emsisoft Anti-Malware
Gen:Variant.FakeAlert.93, Gen:Variant.Symmi.41078
10.00%

Comodo Security
TrojWare.Win32.AdLoad.BA
10.00%

F-Secure
Gen:Variant.FakeAlert.93, Gen:Variant.Symmi.41078
10.00%

VIPRE Antivirus
LooksLike.Win32.Upatre.mj
10.00%

18 / 68    (Adware)
syslog.exe  (af1487a5c71e6f76f7ae862bd10b2aa9)

1 / 68      (Adware)
powermonitor_upgrade.exe  (31799363d60396be3098f9d6680cf5d5)

1 / 68      (Adware)
svshost.exe  (f8baa910c216ec674f8a7e7140556e04)

1 / 68      (Adware)
svshost.exe  (934986b848d496366412a2518fd752df)

1 / 68      (Adware)
powermonitor.exe  (f194075ddcbf304353c2a5b8e9d4314b)

1 / 68      (Adware)
e.exe  (34d2c7bc58dd5b6310bc920876250ce4)

1 / 68      (Adware)
wutphost.exe  (54ae7f5e42ec83d0d19470787b0b6987)

1 / 68      (Adware)
syslog.exe  (966361e4fb7fba32288f6d4748c77380)

1 / 68      (Adware)
scriptwriter.exe  (34d2c7bc58dd5b6310bc920876250ce4)

1 / 68      (Adware)
comdev_upgrade.exe  (e9e768cbc9e8919dacf3284827dbc4d7)

3 / 68      (Adware)
indexer.exe  (5cb14813509901fc7e30003e3e1e346c)

1 / 68      (Adware)
scriptwriter.exe  (f1d1f7efa97eb564d31ed8f364c38d6e)

1 / 68      (Adware)
comdev_upgrade.exe  (592670c8a68851049f6d4bcdb35b1ac7)

1 / 68      (Adware)
d72c.tmp.exe  (fe0ddb6e731857e4ce53262b7e836406)

17 / 68    (Adware)
filesystemdriver_upgrade.exe  (2f6210999dd345e01ca777e0254768cf)

18 / 68    (Adware)
syslog_upgrade.exe  (c4280633507a0354aa88ac9d78e7e544)

1 / 68      (Adware)
syslog_upgrade.exe  (5256b5d3621af85aaf8cffcf3c8feca2)

1 / 68      (Adware)
comdev.exe  (ef1df397f7abcffb5fdbcf008d61a3e9)

1 / 68      (Adware)
scriptwriter_upgrade.exe  (42456926e4bd52bb229d6b507063f50b)

18 / 68    (Adware)
scriptwriter_upgrade.exe  (8f0c3d5ac20f2db286fac886953e8aeb)

1 / 68      (Adware)
syslog.exe  (b5ab39ff0fb9aafea334b59902fdae94)

1 / 68      (Adware)
comdev.exe  (bef7c89b4b0ec4ceea2103d1a4aad0a4)

1 / 68      (Adware)
syslog_upgrade.exe  (029d37ab9ede727f6e356cb4b3c4edfa)

1 / 68      (Adware)
comdev_upgrade.exe  (dfa58316862611996e937f388f0ca814)

1 / 68      (Adware)
comdev_upgrade.exe  (ffb448a7d7b928dea5843c931b9f3220)

1 / 68      (Adware)
7gfg7gkxrvmb.exe  (61a68db5993f0f4596488713fcd4b46f)

1 / 68      (Adware)
comdev.exe  (fe0ddb6e731857e4ce53262b7e836406)

1 / 68      (Adware)
scriptwriter.exe  (934b7e958892b3f67e78a31295eb4943)

1 / 68      (Adware)
comdev.exe  (934b7e958892b3f67e78a31295eb4943)

1 / 68      (Adware)
comdev_upgrade.exe  (e0ed3b56ecd3379bcf40cec3f0c612f1)

 
Latest 30 of 55 files

The certificates below are also signed by OOO .

09C2413E3B0CACE3E855A2C1A5CADBD6  (Mar 07, 2016 to Mar 08, 2019)

00E706CCD87DA6065486B42C0646C2DBF9  (Feb 11, 2016 to Feb 10, 2019)

5F5A06A7374A1B0B8DD3B08620FB7E8F  (Nov 27, 2015 to Dec 19, 2018)

009B0833F8AD9F393DF6B1E28AD4D38F9E  (Jun 09, 2016 to Jun 10, 2018)

00E2D0DD88AA54AE6A33646C36CF01E955  (Mar 23, 2015 to Mar 23, 2018)

6A96EA380826A911F2E88338A7053400  (Oct 18, 2016 to Oct 19, 2017)

00B526F3AAE3DA60C05A2E941DBACDBFF2  (Sep 28, 2016 to Sep 29, 2017)

79DB1629A125B1CDAA6C39B8A0B7360E  (Nov 09, 2016 to Sep 29, 2017)

00B633A6D77942DEBFF38D2DA2ABA75A23  (Jan 09, 2017 to Sep 01, 2017)

00BC4D5469B576BF5C92276B809D9303A6  (Aug 29, 2016 to Aug 30, 2017)

10 of 80 code signing certificates issued

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to OOO by COMODO CA Limited on March 07, 2017 with the serial number '18c5f13d0d9379c2f6d7b711f33afe12'.