Taiwan Shui Mu Chih Ching Technology Limited

Publisher Information

Taiwan Shui Mu Chih Ching Technology Limited is a software publisher located in New Taipei City, Taiwan*. The company is a primary distributor of unwanted software. Thre are 4 additional code signing certificates issued to this publisher.
Authority:
GlobalSign nv-sa

Valid from:
1/15/2015 1:36:14 PM

Valid to:
2/25/2015 4:15:36 PM

Subject:
CN=Taiwan Shui Mu Chih Ching Technology Limited, O=Taiwan Shui Mu Chih Ching Technology Limited, L=New Taipei City, S=Taiwan, C=TW

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11214791c542722d5c418927dcc4a64e75b7

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.TaiwanShuiMuChihChingTechnologyLimited.I, PUP.TaiwanShuiMuChihChingTechnologyLimited.K, PUP.TaiwanShuiMuChihChingTechnologyLimited.N, PUP.Service.TaiwanShuiMuChihChingTechnologyLimited.O, PUP.BHO.TaiwanShuiMuChihChingTechnologyLimited.G, PUP.TaiwanShuiMuChihChingTechnologyLimited.M, PUP.Thinknice.TaiwanShuiMuChihChingTechnology (M), PUP.Thinknice.TaiwanSh (M), PUP.Thinknice (M)
100.00%

Baidu Antivirus
Adware.Win32.Elex
23.53%

ESET NOD32
Win32/ELEX.BM potentially unwanted application, Win32/Thinknice.B potentially unwanted application
17.65%

G Data
Win32.Application.SearchProtect.AA@gen, Adware.SearchProtect, Win32.Application.SubTab
17.65%

Vba32 AntiVirus
AdWare.SearchProtect, suspected of Trojan.Downloader.gen.h
17.65%

Dr.Web
Adware.Mutabaha.120, Adware.Mutabaha.119, Adware.Mutabaha.117, Threat.Undefined
14.71%

K7 AntiVirus
Trojan , Unwanted-Program
14.71%

Malwarebytes
PUP.Optional.BrowserWatch, PUP.Optional.XTab.A, PUP.Optional.SupTab.A
14.71%

Zillya! Antivirus
Adware.SearchProtect.Win32.22, Adware.SearchProtect.Win32.14, Adware.SearchProtect.Win32.20
11.76%

Qihoo 360 Security
HEUR/QVM30.1.Malware.Gen, HEUR/QVM10.1.Malware.Gen, HEUR/QVM20.1.Malware.Gen
11.76%

1 / 68      (Adware)
tmp000000491e0144066b18db1f (XTab)  (5ed705efb26fdfd135acc9873a851e55)

1 / 68      (Adware)

1 / 68      (Adware)
xtab_v4.0.exe (XTab)  (0915db8b0f6a5f5a53b07ac5b6299460)

1 / 68      (Adware)
xtab_v4.0.exe (XTab)  (1fe2d31baf81570775fddae90486681e)

1 / 68      (Adware)
protectservice.exe (XTab by XTab system)  (b32a88b91e59bfb553a9bebf78a1e567)

1 / 68      (Adware)
tmp00000033491a7aac76749adb (SearchProtect)  (41e5ed5fd3ce63e78cf146f21c9f04de)

1 / 68      (Adware)
hpnotify.exe (XTab by XTab system)  (c04d8bc933470b3913e4e3e6c3115793)

1 / 68      (Adware)
protectservice.exe (XTab by XTab system)  (b32a88b91e59bfb553a9bebf78a1e567)

1 / 68      (Adware)
xtab_v4.0.exe (XTab)  (77df467a483a3f36fb6dc274ba215b52)

1 / 68      (Adware)
protectservice.exe (XTab by XTab system)  (b32a88b91e59bfb553a9bebf78a1e567)

1 / 68      (Adware)
xtab_v4.0.exe (XTab)  (3ef9984958774e00371f316c043f25f4)

1 / 68      (Adware)
xtab_v4.0.exe (XTab)  (599416d07010ece90b41af154f400f19)

1 / 68      (Adware)
CmdShell.exe (SearchProtect)  (c06980b6f51df5b8d882cab1d4e4cef8)

1 / 68      (Adware)
CmdShell.exe (SearchProtect)  (c09eef71e5b283a7b957cccfa2f63a73)

1 / 68      (Adware)
tmp00000003d0addc3b13992d1e (SearchProtect)  (bf205a6fcd840ac84657ec7c1b19275b)

1 / 68      (Adware)
xtab_v4.0.exe (XTab)  (935021fd3206c1ed614370e5427ecf75)

1 / 68      (Adware)
xtab_v4.0.exe (XTab)  (f73a7929c68dae2c6674c891dfa5b3b1)

1 / 68      (Adware)
xtab_v4.0.exe (XTab)  (6583cf217d58edc7cd1c2e9d3c6f2a48)

1 / 68      (Adware)
xtab_v4.0.exe (XTab)  (ac1496139d19b3da6fc4390234eac1e2)

1 / 68      (Adware)
xtab_v4.0.exe (XTab)  (a97017bcb4d2de34df6bb9b04720c9a0)

1 / 68      (Adware)
xtab_v4.0.exe (XTab)  (aafb0918a09189c15f17184f4f754e0e)

1 / 68      (Adware)
xtab_v4.0.exe (XTab)  (514fcb0a2b9a2013496e45b25d233f4b)

1 / 68      (Adware)
hpnotify.exe (XTab by XTab system)  (c04f0459999a890afde0d14ef69e557b)

1 / 68      (Adware)
xtab_v4.0.exe (XTab)  (47db94cb5acbd3ee858e0b8efd5e1836)

1 / 68      (Adware)
xtab_v4.0.exe (XTab)  (57072f2a88e59d6903f01fc73cd16db8)

4 / 68      (Adware)
stab_down_6.0.6.8.exe (STab by STab_Down)  (0a1d8c442bf10ba569bc89cf7dfc3855)

7 / 68      (Adware)
xtab_4.0.2.1716.exe (XTab)  (55bae15d523e4fabaa551023703d3fd9)

4 / 68      (Adware)
suptab.dll (SupTab by Thinknice Co. Limited)  (fece5b81614bd16ff043051f338183a0)

20 / 68    (Adware)
protectservice.exe (XTab by XTab system)  (b32a88b91e59bfb553a9bebf78a1e567)

16 / 68    (Adware)
CmdShell.exe (SearchProtect)  (77590ce0cdeb6bbee8dc056fea0b107c)

 
Latest 30 of 34 files

The certificates below are also signed by Taiwan Shui Mu Chih Ching Technology Limited.

1121003857AB2AD439A7293EF2F1A8B3DCB6  (Mar 04, 2015 to Mar 04, 2016)

112127474DE010DA49D31D0EE8193EAC2D0E  (Mar 05, 2015 to Mar 04, 2016)

1121BCD23750153699E1F59ACE477A6DE070  (Feb 24, 2014 to Feb 25, 2015)

1121243D90C81CD8FEC70E99813154FB6459  (Mar 13, 2013 to Mar 14, 2014)

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to Taiwan Shui Mu Chih Ching Technology Limited by GlobalSign nv-sa on January 15, 2015 with the serial number '11214791c542722d5c418927dcc4a64e75b7'.