P4hostcom

Publisher Information

P4hostcom is a software developer located in VAN NUYS, California in the United States*. The company is a primary distributor of unwanted software.
Authority:
COMODO CA Limited

Valid from:
12/10/2014 7:00:00 PM

Valid to:
12/11/2015 6:59:59 PM

Subject:
CN=P4hostcom, O=P4hostcom, STREET=15339 WYANDOTTE ST, L=VAN NUYS, S=California, PostalCode=91406, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
41454c8a0557125c4b0c373a489b1003

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.P4hostcom (M), PUP.P4hostcom.Installer (M), PUP.P4hostco.Installer (M), PUP.P4hostco (M), PUP (M)
100.00%

Dr.Web
Adware.Superfish.217, Adware.OptimizerMonitor.2, Adware.Superfish.1
52.00%

Bkav FE
W32.HfsAdware, W64.HfsAdware
50.00%

AVG
Generic, Generic6
44.00%

Malwarebytes
PUP.Optional.Winsock.HijackBoot, Rootkit.WeWatcher.PUP
42.00%

avast!
Win32:Adware-gen [Adw], Win32:Evo-gen [Susp]
18.00%

Qihoo 360 Security
HEUR/QVM42.1.Malware.Gen, HEUR/QVM30.1.Malware.Gen, HEUR/QVM42.0.Malware.Gen, HEUR/QVM10.1.Malware.Gen
12.00%

Trend Micro House Call
Suspicious_GEN.F47V0516, Suspicious_GEN.F47V0212
12.00%

K7 AntiVirus
Riskware
6.00%

herdProtect (fuzzy)
a variant of 820f7314a451a3e403fdbafceafb98dcd952d2e1, a variant of 020d0606b91e02bbef60ffccbc7bf61feb250a3e
4.00%

1 / 68      (Adware)
wwd.sys (WeWatcher)  (ab0cf0ca37f3aa4413c2a967d7b66a20)

1 / 68      (Adware)
webwatchersetup.exe  (14ef0b1a973fbd947b83a4cc49d9bad3)

1 / 68      (Adware)
webwatchersetup.exe  (48c0ce79cec480777411e314b4c98f59)

1 / 68      (Adware)
wwd.sys (WeWatcher)  (fa2a17e301277a40dfa01d1b2d5b7f69)

1 / 68      (Adware)
wwwd.sys (WebWatcher)  (3bd727daa48080aee5232d983b287a9e)

1 / 68      (Adware)
wwd.sys (WeWatcher)  (e5ae1ce9c9b86d487d48034ea3f6a077)

1 / 68      (Adware)
webwatchersetup.exe  (1cda08711a0def3a414324ba89c7e82d)

1 / 68      (Adware)
friend1.exe  (f2c38a4b4d04af9aeba63092e2b42cd8)

1 / 68      (Adware)
healthcaregovtool.exe  (ac577cfc89eb6b8948a3180773c2671d)

1 / 68      (Adware)
healthcarehelp.exe  (7d681799d8cc96f2c590b6a2348c61b3)

1 / 68      (Adware)
healthcaregovtool.exe  (ab198c095d43ed21f7e32af8e9e5fd39)

1 / 68      (Adware)
sysfiles.exe  (85ce535f8df2d5fdc107bff02f7fda6e)

5 / 68      (Adware)
wwd.sys (WeWatcher)  (3e89c3ec727259ba9269cf61e2573cd0)

1 / 68      (Adware)
healthcarehelp.exe  (9899fa42408b2ef72888886d7c9d89cf)

5 / 68      (Adware)
wwwd.sys (WebWatcher)  (90b58d39f5f9f269303834f3269c9085)

5 / 68      (Adware)
wwd.sys (WeWatcher)  (62429dd50317f3f4e6417b4a3bfc27d4)

1 / 68      (Adware)
wewatcherlsp64.exe (WeWatcherLSP64.exe by WeWatcher)  (c0455ce4e2941443d8f27e50f6063c7a)

1 / 68      (Adware)
wewatcherlsp64.dll (WeWatcherLSP64.dll by WeWatcher)  (3ab451245836bc1b4971dcb9fa83046f)

1 / 68      (Adware)
wewatcherlsp.exe (WeWatcherLSP.exe by WeWatcher)  (a9afde13693e8ae0c24c4f2522832a62)

1 / 68      (Adware)
wewatchercert.dll (WeWatcherCert.dll by WeWatcher)  (9ce811de44fffa866e70abc587d0d3cf)

1 / 68      (Adware)
healthcarehelp.exe  (88380205545fbacbdc6f98175b406578)

1 / 68      (Adware)
wewatcherlsp.dll (WeWatcherLSP.dll by WeWatcher)  (0fb37a7e8dd181860c5f6deb8af5cc5e)

1 / 68      (Adware)
sysfiles_backup.exe  (fc6a2fdcfc73064df8a372bcc18d49b9)

5 / 68      (Adware)
wwd.sys (WeWatcher)  (1e37788bd6be4243c98aa0cb62e8c542)

5 / 68      (Adware)
wwwd.sys (WebWatcher)  (8b149a31cc17fafbcf9418677023bf88)

1 / 68      (Adware)
healthcarehelp.exe  (10393e95477b541f304b60de293ecc58)

1 / 68      (Adware)
sysfiles_backup.exe  (b4bc45f17a8deb0fa19b4f35e95b1165)

9 / 68      (Adware)
healthcarehelp.exe  (937ac8f8520aacb5efcba3316d486e24)

7 / 68      (Adware)
wewatcherproxy.exe (WeWatcherProxy.exe by WeWatcher)  (045387bb71a810600cd390dd6ecfdf3e)

26 / 68    (Adware)
webwatchersetup_backup.exe  (c88ab82ed9a7c960625812bab15d1ce2)

 
Latest 30 of 187 files

Downloads URLs for files signed by P4hostcom.

7 / 68      (Adware)

6 / 68      (Adware)
http://healthcaregovtool.com/hci/.../SysFiles.exe  (4bd3e5bce67c84a10d8f3b0871c63056)

The following websites host and distribute files published by P4hostcom.

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to P4hostcom by COMODO CA Limited on December 10, 2014 with the serial number '41454c8a0557125c4b0c373a489b1003'.