Steel Cut

Publisher Information

Steel Cut is a brand of the Sambreel/Yontoo group, a web advertising company located in Carlsbad, CA. The company is a primary distributor of unwanted software. It is part of the Yontoo/Sambreel group and distributes web browser add-ons, typically potentially unwanted and adware in nature, that are designed to modify a user's typical search beahvior as well as display context and popup advertising.
Authority:
VeriSign, Inc.

Valid from:
1/10/2015 7:00:00 PM

Valid to:
1/11/2016 6:59:59 PM

Subject:
CN=Steel Cut, O=Steel Cut, L=San Diego, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0abb826deffe019b3b61d91322de992a

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Yontoo (M), Adware.Yontoo (M)
100.00%

1 / 68      (Adware)
{dee42ad1-b246-490c-8250-9d87161e8054}gw.sys (StdLib)  (e13a98913bd19ca559eda20b7ee21a09)

1 / 68      (Adware)
utilsteelcut.exe  (a656e05b23d1c8a842ea1c6b3f6cfad4)

1 / 68      (Adware)
fjuj2ylu.lwd  (6b2ae1f9ae6a97d5a310245d560cf0fb)

1 / 68      (Adware)
steelcut.expextdll.dll  (18455a99845befbc842442fe349a1a74)

1 / 68      (Adware)
steelcut.expextdll.dll  (b2c7e369f80aa9e5169d36bde68de5e2)

1 / 68      (Adware)
steelcut.expext.exe  (4ce047cae7355b3e0bdd049d2e7d0ab4)

1 / 68      (Adware)
{98946827-7431-4790-817d-d5deb83f5aaf}gw64.sys (StdLib)  (d970292747557916c0d33826a76daa69)

1 / 68      (Adware)
trzf0ee.tmp  (6365c9f25cc1bd9d4d0ee967e4379f5c)

1 / 68      (Adware)
trze9f2.tmp  (6338110815cf79cdb92526475c19508e)

1 / 68      (Adware)
SteelCut.BOAS.exe  (d2bcf8091bc0702ae7fb0015f097fa0a)

1 / 68      (Adware)
SteelCut.BOAS.exe  (0849b87fa3e2a22e910740901df852f4)

1 / 68      (Adware)
trz71de.tmp  (a7beb18988497ae147adcce6ac297ffd)

1 / 68      (Adware)
SteelCut.BOAS.exe  (8312f4db713f921b5fbdc1e4b869ad63)

1 / 68      (Adware)
SteelCut.BOAS.exe  (bcac2c2212d1067c0cfc25bfdea26b86)

1 / 68      (Adware)
trz22c5.tmp  (e5d409c385a22fd6b9eef782a09fa0ce)

1 / 68      (Adware)
steelcutuninstall.exe  (2300f0c43320e845730996c2b20712e9)

1 / 68      (Adware)
plugin.exe  (c806d582bfc95f151065e6eea12af948)

1 / 68      (Adware)
{4892723d-a7bd-44aa-848e-1a2264b27545}w64.sys (StdLib)  (585967dc4e6a05320121310fc3d1bd9b)

1 / 68      (Adware)
steelcut.purbrowseg.dll  (f416d4ba30376bf7cb73c68c38d04fde)

1 / 68      (Adware)
SteelCut2015080908.exe  (1a350cb8fa6bc6aa515ad187085ab889)

1 / 68      (Adware)
appmgr.bak  (4b241ff702f72e5e7d16ce499e94332c)

1 / 68      (Adware)
steelcutuninstall.exe  (a6b891865b5ac6df1c47cb67cc1ea3ab)

1 / 68      (Adware)
mntz_installer.exe  (a50a4b4d996b3e51c9bcc33e064a8ae4)

1 / 68      (Adware)
{4892723d-a7bd-44aa-848e-1a2264b27545}gt.sys (StdLib)  (82f774c9a44ddaabbc502f3451ef92fd)

1 / 68      (Adware)
{c4c2c700-004c-4879-84f8-b768888d1ff3}gw.sys (StdLib)  (9f09ff766fe482a0955a7835985221bb)

1 / 68      (Adware)
{84bfd739-7146-4d79-9d72-490fc9430427}gw.sys (StdLib)  (6fc91fbf83b5d989e67cda274fa17d8d)

1 / 68      (Adware)
{23f7051d-18e8-44e2-a226-2e4ebb10608f}w.sys (StdLib)  (226d10a490e3ddece40b9457ce39d11a)

1 / 68      (Adware)
{0cb0c545-305c-44e0-9816-7e316bdfe237}w.sys (StdLib)  (363d40f0c76188a6aa712e97059d2e90)

1 / 68      (Adware)
steelcut.browseradapter64.exe  (46f7d5fad23f834adb4dd87d841fc814)

1 / 68      (Adware)
steelcutun.exe  (10d8d65e3dedc1423e2ee4814ed9134a)

 
Latest 30 of 12,224 files

The following publishers (by Authenticode signature organization name) are related.

30 of 151 publishers

* Note, the details and description above are based on the code signing digital signature issued to Steel Cut by VeriSign, Inc. on January 10, 2015 with the serial number '0abb826deffe019b3b61d91322de992a'.