RUn apps fOrevEr Lld

Publisher Information

RUn apps fOrevEr Lld is a software publisher located in Dublin, Ireland*. The company is a primary distributor of unwanted software. Thre are 20 additional code signing certificates issued to this publisher.
Authority:
thawte, Inc.

Valid from:
9/8/2015 2:00:00 AM

Valid to:
1/28/2016 1:59:59 AM

Subject:
CN=RUn apps fOrevEr Lld, O=RUn apps fOrevEr Lld, L=Dublin, S=Dublin, C=IE

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
4446a2cc2ac6572146b2d5ee8a574212

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Outbrowse.RUnappsfOrevErLld.Bundler (M), PUP.Outbrowse.RUnappsf.Bundler (M), PUP.Outbrowse (M)
100.00%

1 / 68      (Adware)
no flex zone remix feat. nicki minaj.exe (FFXDC)  (5363f6ecc945023a8a90460ccdfea956)

1 / 68      (Adware)
nsu4ae3.tmp (JVMKE)  (9a58c2fa6c099d7d85535f949e71ec1b)

1 / 68      (Adware)
plants vs. zombies 2 game for pc full crack.exe (DEHCF)  (bcf4160366380625ddceba0d73cecc86)

1 / 68      (Adware)
plants vs. zombies 2 game for pc full crack.exe (IDDET)  (be50c4c1b6d62ffb3e5c634d24d8046d)

1 / 68      (Adware)
nsncba0.tmp (ILZKW)  (ec722b45cd5d9c5e9d6fac3c6e148ae4)

1 / 68      (Adware)
nsscbd3.tmp (JZTQK)  (b8bf70b3a21b7348aa6e30646cf87996)

1 / 68      (Adware)
nsscd4b.tmp (GEVOH)  (57f4f20022e91559a0a4ed78d860686b)

1 / 68      (Adware)
nshcd74.tmp (LOOHL)  (eff0e785e1d2a5012817f7c18700da46)

1 / 68      (Adware)
nsc5c34.tmp (UHAFS)  (9c2ea68fdeb24fc1be855ccdaf555e19)

1 / 68      (Adware)
nsl5f85.tmp (TJDWL)  (d1a332e8f6b36977aa77ae8d39204c6d)

1 / 68      (Adware)
nsn69be.tmp (DSHXI)  (2070518c2eacab96e4861b491d6fbcd0)

1 / 68      (Adware)
nsx8aa4.tmp (ZQZYE)  (0a9ce5c277887b355fc145821b617863)

1 / 68      (Adware)
setup.exe (WRMET)  (aa95ca08c76a201f01dab463436be450)

1 / 68      (Adware)
setup.exe (HASCB)  (acbd32704fc14b89d5afa7a4742f6212)

1 / 68      (Adware)
microsoft toolkit 2.5.4 update.exe.exe (VYMTA)  (fe792c8ba7b7299037eb1bf78faf387f)

1 / 68      (Adware)
setup.exe (DWJGL)  (5c6b76cc6e8b1ef068a48affd3671bc8)

1 / 68      (Adware)
setup-1228.exe (DDZKG)  (00bd65aa1f106870938dd068201fe043)

1 / 68      (Adware)
uizmfphv.exe (MXNOR)  (4a98983e42937abe154a4939a2a4114e)

1 / 68      (Adware)
nss4a7c.tmp (WPQNP)  (23616ff5ed7ddda3fffd658d4eae6d1a)

1 / 68      (Adware)
nsy256.tmp (RXACG)  (20cdbf0464f09c84dfb14fe2b0a74e6b)

1 / 68      (Adware)
nslac20.tmp (OJQXQ)  (fcd7a5ba23f37a3bf3da74195fd00b7e)

1 / 68      (Adware)
nsv33fd.tmp (TBALS)  (df9b99ebbb7d1ae2b575812eead30974)

1 / 68      (Adware)
beehbeggij.exe  (d4f1ec3efb54cd98b656886d7c4bf086)

1 / 68      (Adware)
nso45c6.tmp (AMHMQ)  (2386ffdb83807509b6451c067efad811)

1 / 68      (Adware)
nsqbfd7.tmp (EFENI)  (43bd906feecb8d2b181ed0b1dec176ff)

1 / 68      (Adware)
setup_4.exe (LHSPG)  (75771b9a614fdec75931e0d170999b75)

1 / 68      (Adware)
setup-1228.exe (ACLOZ)  (72b755127066be31fde8797ca0c45aba)

1 / 68      (Adware)
candy-crush-saga.exe (SJHFU)  (c29f402c772c786aa84b1bb6935789e3)

1 / 68      (Adware)
beefhggdda.exe  (e3e1eb68fa049996ac3fc4116372e25a)

1 / 68      (Adware)

 
Latest 30 of 70 files

The certificates below are also signed by RUn apps fOrevEr Lld.

2AAF265EE597F479271EB3B28CB199AB  (Mar 16, 2015 to Jan 28, 2016)

3D6317ABD1CEDA6B87389D27D552A923  (Feb 05, 2015 to Jan 28, 2016)

30973460518025FFA56B90586A9CB15A  (May 18, 2015 to Jan 28, 2016)

5FA58FC8B7A29ECBD333FCB2E5DADA69  (May 31, 2015 to Jan 28, 2016)

0348FE6A0D3890E5B53CB0FE2215219D  (Jun 30, 2015 to Jan 28, 2016)

1BB8B0E42BC70162C0D4296395926232  (Jun 08, 2015 to Jan 28, 2016)

61671722FDDEE90F2D0AE318A84265A3  (Apr 26, 2015 to Jan 28, 2016)

71541FE7C89F07232AEEE2CE1D493C46  (Jan 27, 2015 to Jan 28, 2016)

03943858218F35ADB7073A6027555621  (Nov 24, 2015 to Jan 27, 2016)

6C1E6A5C9415444C7F3A03CB3256040C  (Feb 03, 2015 to Jan 27, 2016)

10 of 20 code signing certificates issued

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to RUn apps fOrevEr Lld by thawte, Inc. on September 08, 2015 with the serial number '4446a2cc2ac6572146b2d5ee8a574212'.