Thinknice Co., Limited

Publisher Information

Thinknice Co., Limited is a software publisher located in 香港, Hong Kong*. The company is a primary distributor of unwanted software. Thre are 11 additional code signing certificates issued to this publisher.
Authority:
GlobalSign nv-sa

Valid from:
10/20/2014 10:26:52 AM

Valid to:
10/21/2015 10:26:52 AM

Subject:
CN="Thinknice Co., Limited", O="Thinknice Co., Limited", L=香港, S=香港, C=HK

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11217b1525408e122e96f2fc3cb018a64466

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Service.Thinknice, PUP.Thinknice, PUP.BHO.Thinknice, PUP.Installer.Thinknice, PUP.Thinknice.ThinkniceCo (M), PUP.Thinknice.XTab (M), PUP.Thinknice (M)
100.00%

G Data
Adware.SearchProtect, Win32.Application.SearchProtect.AA@gen, Adware.Agent.OFO, Win32.Application.SubTab
55.10%

Dr.Web
Adware.Mutabaha.112, Adware.Mutabaha.120, Threat.Undefined, Adware.Mutabaha.119, Adware.Mutabaha.117, infected with Trojan.Click3.8536
51.02%

K7 AntiVirus
Trojan , Unwanted-Program
48.98%

Vba32 AntiVirus
AdWare.SearchProtect, AdWare.Agent
48.98%

ESET NOD32
Win32/ELEX.BM potentially unwanted application, Win32/Thinknice.B potentially unwanted application
44.90%

Malwarebytes
PUP.Optional.XTab.A, PUP.Optional.BrowserWatch, PUP.Optional.SupTab.A
40.82%

Zillya! Antivirus
Adware.SearchProtect.Win32.20, Adware.SearchProtect.Win32.22, Adware.SearchProtect.Win32.14, Adware.Agent.Win32.9903, Adware.Agent.Win32.33108
34.69%

Avira AntiVirus
PUA/SearchProtect.EH, TR/Trash.Gen, W32/Sality.AT, TR/Dropper.Gen, ADWARE/Adware.Gen, PUA/SearchProtect.Gen
32.65%

Baidu Antivirus
Adware.Win32.Elex, Adware.Win32.SupTab
32.65%

1 / 68      (Adware)

1 / 68      (Adware)
stab_v4.0.exe (XTab)  (63d6fabd629b2575e48c87fbd6502e13)

1 / 68      (Adware)
stab_v4.0.exe (XTab)  (8a3f760f27d9cd23f77c72cc29cc28f2)

1 / 68      (Adware)
stab_v4.0.exe (XTab)  (3c90261a2efcd98928b12d46e35c240e)

1 / 68      (Adware)
bhoenabler.exe  (ea1e46fda56d44899afb3b901784e5e0)

28 / 68    (Adware)
stab_v4.0.exe (XTab)  (baa311fd91c54e89fabe23e36b47f1cb)

1 / 68      (Adware)
tmp000000042bac94676133521f (XTab by XTab system)  (e97588bb0ee625950626befcebc15297)

1 / 68      (Adware)
stab_v4.0.exe (XTab)  (89e0404a1a779e8c9f34cd2a2ca02450)

1 / 68      (Adware)
stab_v4.0.1.1251.exe (STab)  (98166b58af1ca9ff16221677bc478859)

8 / 68      (Adware)
IeWatchDog.dll (SearchProtect by Search Protecter)  (21dcb2b1c20dd232209313e200ee3cc7)

5 / 68      (Adware)
bhoenabler.exe  (19e39c091eb00da56fedc8c125f5dd92)

5 / 68      (Adware)
suptab.dll (SupTab by Thinknice Co. Limited)  (c30458159aed49894b9a4dccd8697830)

10 / 68    (Adware)
protectservice.exe (XTab by XTab system)  (93faf870f13c310cd8fe3b58979ee8d5)

2 / 68      (Adware)
hpnotify.exe (XTab by XTab system)  (a44a828280dcfcb8d3640ab1ec68e051)

3 / 68      (Adware)
CmdShell.exe (SearchProtect)  (0d01f64f495c062d0a10d345ad669286)

2 / 68      (Adware)
browerwatchff.dll (XTab)  (79124a02bc96d8857755e53f945b3908)

2 / 68      (Adware)
browerwatchch.dll (XTab)  (9a371490fb46fbee3d82046a29a0ed86)

11 / 68    (Adware)
stab_v4.0.exe (XTab)  (684ce32af59ccba1cc2954b5b369e364)

27 / 68    (Adware)
suptab.dll (SupTab by Thinknice Co. Limited)  (b22e4b04c4b65f896dbba64781864354)

25 / 68    (Adware)
stab_v4.0.exe (XTab)  (c8a02394ccb21ab040ccac7dc6f4e72c)

8 / 68      (Adware)
IeWatchDog.dll (SearchProtect by Search Protecter)  (cc67b4bb5b9328d0e150529af7c0f2a2)

11 / 68    (Adware)
browerwatchff.dll (XTab)  (a9ac6659d2d29344cb4886252ee668e8)

11 / 68    (Adware)
browerwatchch.dll (XTab)  (8ea6b54b332b013c3e81cdb99fe174bd)

2 / 68      (Adware)
hpnotify.exe (XTab by XTab system)  (992febdaa047ea93b8f0290009935bf2)

16 / 68    (Adware)
CmdShell.exe (SearchProtect)  (3001d4fdba4d8f48e0318e6c208e8b70)

20 / 68    (Adware)
protectservice.exe (XTab by XTab system)  (32beb118d11cac135ed162e7562729aa)

4 / 68      (Adware)
bhoenabler.exe  (477c33bcccdedf09c8832e633c97468b)

10 / 68    (Adware)
browerwatchff.dll (XTab)  (cdedc026f3f7d4c7cbb7be0fe1a62bcb)

24 / 68    (Adware)
suptab.dll (SupTab by Thinknice Co. Limited)  (e4dc6a5c2b9dea9f7676f78550010452)

23 / 68    (Adware)
stab_v4.0.exe (XTab)  (616bb60a3d405fa75107e984aaaca47e)

 
Latest 30 of 49 files

The certificates below are also signed by Thinknice Co., Limited.

112170C8A859FAC5632237A13A696FA39819  (Sep 25, 2015 to Oct 21, 2015)

1121A1CF5D56F294C3AE3C86D57954C3D206  (Sep 02, 2015 to Oct 21, 2015)

1121CBE5C1558EDCC9CCFB7F6A4D0149AC0F  (Aug 24, 2015 to Oct 21, 2015)

11210D8FFB9CE8F41CAC6BFC5F9E175348EF  (Oct 20, 2015 to Oct 21, 2015)

1121EFBDA7AD15572D2AE066B4E5E3A93D59  (Oct 15, 2015 to Oct 21, 2015)

1121528E742BFE9208616B879CB05DA32392  (Sep 06, 2015 to Oct 21, 2015)

1121948AE7CDF399F225331BCCDB2A49702C  (Oct 13, 2015 to Oct 21, 2015)

1121A999331F30FB5D6CFEB452D062BE7BA5  (Oct 16, 2015 to Oct 21, 2015)

1121F671AB6293D47F258F57988EE5F47C30  (Oct 08, 2015 to Oct 21, 2015)

11214C4844480632D72985DD9135BD0E276D  (Aug 19, 2015 to Oct 21, 2015)

10 of 11 code signing certificates issued

* Note, the details and description above are based on the code signing digital signature issued to Thinknice Co., Limited by GlobalSign nv-sa on October 20, 2014 with the serial number '11217b1525408e122e96f2fc3cb018a64466'.