Rollnon

Publisher Information

Rollnon is a software developer located in Bellevue, Washington in the United States*. The company is a primary distributor of unwanted software. There is one additional code signing certificate issued to this publisher.
Authority:
VeriSign, Inc.

Valid from:
4/1/2014 8:00:00 PM

Valid to:
4/2/2015 7:59:59 PM

Subject:
CN=Rollnon, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Rollnon, L=Bellevue, S=Washington, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
38db31e5040834d048da19b96d864789

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Rollnon.R, PUP.BHO.Rollnon.F, PUP.Rollnon.H, PUP.Rollnon.F, PUP.Rollnon.M, PUP.Rollnon.Q, PUP.Rollnon.U, PUP.Rollnon.O, PUP.Rollnon.P, PUP.Verti.Rollnon, PUP.Verti.Rollnon.Bundler (M), PUP.Verti.Rollnon (M), PUP.Verti (M)
100.00%

Trend Micro House Call
TROJ_GEN.F47V0517, ADW_PRICEPEEP, TROJ_GEN.F47V0526, TROJ_GEN.F47V0519, Suspicious_GEN.F47V0610, Suspicious_GEN.F47V0617, Suspicious_GEN.F47V0621
76.00%

VIPRE Antivirus
Blinkx/LeadImpact, Threat.4740961
64.00%

Trend Micro
ADW_PRICEPEEP
64.00%

AVG
Rollnon
52.00%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
26.00%

IKARUS anti.virus
AdWare.PricePeep
26.00%

Malwarebytes
PUP.Optional.Boost.A
12.00%

F-Prot
W32/PricePeep.A (exact, not disinfectable)
6.00%

Qihoo 360 Security
HEUR/Malware.QVM10.Gen
4.00%

1 / 68      (Adware)
boost.dll (Jigsaw)  (9ae8e2e3f8c4d7ab6f5214f509c838cb)

1 / 68      (Adware)
64boost.dll (Jigsaw)  (87c10ca895e2c5a6f0034ec6436bacc2)

1 / 68      (Adware)
boost.exe  (05066bc45251ec2d249521e2710b27a9)

1 / 68      (Adware)
shop with boost.exe  (791b413590454c419d295b3cf092c860)

1 / 68      (Adware)
64boost.dll (Jigsaw)  (2ef207b3540716f2ad01cd7a3d392fcb)

1 / 68      (Adware)
boost.dll (Jigsaw)  (d39be46c7e9e41c1c71a7ad85d4e7f8c)

1 / 68      (Adware)
boost_770001_1003.exe  (50d34f0814347a77674b4ee4b866a699)

1 / 68      (Adware)
boost.dll (Jigsaw)  (8220089370c6661ca8ce6e9ebd66d3f6)

1 / 68      (Adware)
64boost.dll (Jigsaw)  (c3a2ef29d9f6d366c038629a1619ff14)

1 / 68      (Adware)
boost.dll (Jigsaw)  (b7bbd63bf1645504b2cd4efa08c19e48)

1 / 68      (Adware)
boost_5272014.exe  (433c3cd0a1e52c5ff1c2ca6274626d66)

1 / 68      (Adware)
64boost.dll (Jigsaw)  (6506f3560cebbdde3baffdffd9daaa14)

1 / 68      (Adware)
boost_770001_0101.exe  (0506ddc01cc45eefd1ccd2cda63d5891)

5 / 68      (Adware)
boost.dll (Jigsaw)  (451563ba817e48ab88d28c141d48e291)

5 / 68      (Adware)
64boost.dll (Jigsaw)  (8b3ef0ced262fe8d2d67adb15070457b)

5 / 68      (Adware)
64boost.dll (Jigsaw)  (683beb3accf4df953563af282c35e4b8)

5 / 68      (Adware)
boost.dll (Jigsaw)  (a7e290f7aa0eb9e5a071cdb77c568baa)

12 / 68    (Adware)
awh21e4.tmp  (61b494d60419aaefcf67b06903f03ec6)

5 / 68      (Adware)
64boost.dll (Jigsaw)  (8b2a1901ffb6b3164ff55c1b3372c283)

5 / 68      (Adware)
boost.dll (Jigsaw)  (d263c665debd45a6888b959185803a7e)

13 / 68    (Adware)
ff80808146a1881e0146a8e03bf00002.exe  (5c2b9d2837e3b1af857ec9840d569454)

5 / 68      (Adware)
boost.dll (Jigsaw)  (546bf542f53275bdfee4814304143992)

10 / 68    (Adware)
boost_800001_1010.exe  (069186b331ff9845099d02fb12a6812d)

5 / 68      (Adware)
64boost.dll (Jigsaw)  (b969605a2a38e314bc88f80550b4fc5b)

7 / 68      (Adware)
boost.dll (Jigsaw)  (010578b14013326cd1e0226e45b085fb)

9 / 68      (Adware)
shop with boost.exe  (8ddc9bcead0f3524b29a1874ce91ed8a)

5 / 68      (Adware)
64boost.dll (Jigsaw)  (1a2f27947f3516fde9ef67a461539c06)

5 / 68      (Adware)
64boost.dll (Jigsaw)  (bf0d9bd521f2ffba2fd29bddc8c7c55c)

6 / 68      (Adware)
boostinstaller.exe  (27eb81723f141538290c0bdec20077e9)

9 / 68      (Adware)
boost.exe  (9d9aa113d83a7397a5b6b19501a60b14)

 
Latest 30 of 50 files

Downloads URLs for files signed by Rollnon.

4 / 68      (Adware)
http://secure.goeastcdncache.com/.../Boost_Master.exe  (cbeed5b6c9cdd519818ddf28c4ab0aee)

4 / 68      (Adware)
http://secure.ilandcachecdn.com/.../Boost_Master.exe  (cbeed5b6c9cdd519818ddf28c4ab0aee)

4 / 68      (Adware)
http://secure.letigerfastcdn.com/.../Boost_Master.exe  (cbeed5b6c9cdd519818ddf28c4ab0aee)

4 / 68      (Adware)

4 / 68      (Adware)
http://secure.cacheanglegoeast.com/.../Boost_Master.exe  (cbeed5b6c9cdd519818ddf28c4ab0aee)

6 / 68      (Adware)
http://cdn.airdlr10.com/downloads/offers/.../Boost1.exe  (178a162bbeb502cb36d06506fc410a59)

4 / 68      (Adware)

4 / 68      (Adware)

4 / 68      (Adware)

The following websites host and distribute files published by Rollnon.

The following certificate is also signed by Rollnon.

6C8BE128901FD5CAC240ACBD1CC43ABC  (May 26, 2014 to May 27, 2015)

The following publishers (by Authenticode signature organization name) are related.

30 of 51 publishers

* Note, the details and description above are based on the code signing digital signature issued to Rollnon by VeriSign, Inc. on April 01, 2014 with the serial number '38db31e5040834d048da19b96d864789'.