Theme Your World LLC

Publisher Information

Theme Your World LLC is a brand of the Sambreel/Yontoo group, a web advertising company located in Carlsbad, CA. The company is a primary distributor of unwanted software. It is part of the Yontoo/Sambreel group and distributes web browser add-ons, typically potentially unwanted and adware in nature, that are designed to modify a user's typical search beahvior as well as display context and popup advertising. There is one additional code signing certificate issued to this publisher.
Authority:
GoDaddy.com, Inc.

Valid from:
5/9/2011 2:38:01 PM

Valid to:
5/9/2012 2:38:01 PM

Subject:
CN=Theme Your World LLC, O=Theme Your World LLC, L=Carlsbad, S=CA, C=US

Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
080229c2ad472d

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.ThemeYourWorld.Q, PUP.Installer.ThemeYourWorld.N, PUP.Installer.ThemeYourWorld.P, PUP.Installer.ThemeYourWorld.J, PUP.Yontoo.ThemeYourWorld.Installer (M), PUP.Yontoo.ThemeYou.Installer (M), PUP.Yontoo (M)
100.00%

VIPRE Antivirus
Yontoo
58.00%

ESET NOD32
Win32/Adware.Yontoo (variant), Win32/Adware.KKLWKLK (variant), Win32/Adware.DPWBQTL (variant), Win32/Adware.JCSZAZL (variant), Win32/Adware.IFHUPII (variant), Win32/Adware.LCWNKDY (variant)
52.00%

Comodo Security
UnclassifiedMalware, Heur.Suspicious, Application.Win32.Yontoo.a
44.00%

Dr.Web
Adware.Siggen.24249, Adware.Plugin.11, Adware.Plugin.8
44.00%

IKARUS anti.virus
AdWare.Yontoo, not-a-virus.Adware.Conduit
38.00%

Rising Antivirus
Trojan.InstallRex!562A, PE:Trojan.Win32.Generic.152DF3B7!355333047, PE:Trojan.Win32.Generic.1525A7D0!354789328, PE:Trojan.Win32.Generic.12A37661!312702561
36.00%

Trend Micro House Call
BKDR_BIFROSE.BMC, TROJ_GEN.R0CBH0AIF13, TROJ_GEN.R0CBH01H513, TROJ_GEN.R47H1HP, TROJ_BIFROSE.USB20VC, TROJ_GEN.R22H1HV, TROJ_GEN.R47H1J8, TROJ_GEN.RFFH1EA, TROJ_GEN.R49H1ED
30.00%

Baidu Antivirus
AdWare.Win32.Yontoo, Adware.Win32.Yontoo, Trojan.Adware.Win32.Yontoo, Trojan.Win32.Agent
30.00%

Avira AntiVirus
Adware/LRYETGT.A, ADWARE/Yontoo.Gen, Adware/Tarma.B, Adware/MQIIMIX.A
16.00%

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

9 / 68      (Adware)

9 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
pageragesetup.exe (Yontoo Layers Runtime by Yontoo)  (bd19e0746e5ac094a230169a218046a1)

1 / 68      (Adware)

10 / 68    (Adware)

18 / 68    (Adware)
pageragesetup.exe (Yontoo Layers Runtime by Yontoo)  (0fa3e71cd05347330c761bba17a09ff9)

1 / 68      (Adware)
pagerage-silentinstaller.exe  (7206091b5c223deaa9fcc2d8e6d676da)

10 / 68    (Adware)

10 / 68    (Adware)
pagerage.exe (Theme Your World by Theme Your World)  (8824ccbf7244e03b0a6061e04f3975e8)

8 / 68      (Adware)

3 / 68      (Adware)

3 / 68      (Adware)

 
Latest 30 of 60 files

Downloads URLs for files signed by Theme Your World LLC.

9 / 68      (Adware)
http://download.pagerage.com/PageRageGCSetup.exe  (e3811b6b94b7a28b507d20cdaa6757bd)

2 / 68      (Adware)
http://download.pagerage.com/PageRageGCSetup.exe  (978ab547f88a30fc5194c4f0cb31a21a)

1 / 68      (Adware)
http://download.pagerage.com/PageRageSetup.exe  (bd19e0746e5ac094a230169a218046a1)

3 / 68      (Adware)
http://download.pagerage.com/PageRageSetupv2.exe  (515b036db5d895150f69e8727a701109)

3 / 68      (Adware)
http://download.pagerage.com/PageRageSetupAff.exe  (204ce65b804f0a4fb6d6c6a1f3aa4795)

1 / 68      (Adware)
http://download.pagerage.com/PageRageSetupAff-Min.exe  (d4c88d493cd7c36313e7ba17e0d5e023)

10 / 68    (Adware)
http://download.pagerage.com/PageRageSetup.exe  (a4fd4b6834e7d5df137e3ac64c6438f3)

13 / 68    (Adware)
http://download.pagerage.com/PageRageSetup.exe  (447b0d87728fff87b5b6b97f83b8d445)

9 / 68      (Adware)
http://download.pagerage.com/PageRageSetup.exe  (28f35d2ba8ad89ce60588c0784203f4c)

12 / 68    (Adware)
http://download.pagerage.com/PageRageSetup.exe  (7f5517d980ec3b553e6e41c02f624cc1)

10 / 68    (Adware)
http://download.pagerage.com/PageRageSetupAff.exe  (949f599dea957ac8647c7c088264c268)

10 / 68    (Adware)
http://download.pagerage.com/PageRageSetupAff.exe  (a42f8b11f6a051e62e2e3f9a3ee1ea7b)

11 / 68    (Adware)
http://download.pagerage.com/PageRageSetup.exe  (d7fccac8130c51eea57770c2e928a523)

The following websites host and distribute files published by Theme Your World LLC.

The following certificate is also signed by Theme Your World LLC.

0418C993014B2F  (May 15, 2012 to May 15, 2013)

* Note, the details and description above are based on the code signing digital signature issued to Theme Your World LLC by GoDaddy.com, Inc. on May 09, 2011 with the serial number '080229c2ad472d'.