Triple Pose

Publisher Information

Triple Pose is a brand of the Sambreel/Yontoo group, a web advertising company located in Carlsbad, CA. The company is a primary distributor of unwanted software. It is part of the Yontoo/Sambreel group and distributes web browser add-ons, typically potentially unwanted and adware in nature, that are designed to modify a user's typical search beahvior as well as display context and popup advertising.
Authority:
VeriSign, Inc.

Valid from:
1/14/2015 6:00:00 PM

Valid to:
1/15/2016 5:59:59 PM

Subject:
CN=Triple Pose, O=Triple Pose, L=San Diego, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
79187915743161a667527d4f9a20bc7a

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Yontoo (M), Adware.Yontoo (M)
100.00%

1 / 68      (Adware)
tripleposeuninstall.exe  (b2b5afcc8269638835b7c45e3e815cbd)

1 / 68      (Adware)
triplepose.expextdll.dll  (c08a97b0d1ee3766e3aa6e4705cf162b)

1 / 68      (Adware)
b8757f83ba64.dll  (3ebb2de25c0d5dbc2633a82acb295efa)

1 / 68      (Adware)
b8757f83ba.dll  (66f8311dd0efa424792f4312a0349c97)

1 / 68      (Adware)
b87564.dll (by TODO: <Company name>)  (fb80432f21b3b96ee3d90111a0b7802e)

1 / 68      (Adware)
b875.dll (by TODO: <Company name>)  (9302d907b4fab235f20bdbabe852e27a)

1 / 68      (Adware)
403b76b94f64.dll  (81b9c4cf5d782fbe4a675aaeee646519)

1 / 68      (Adware)
403b76b94f.dll  (2e6e92ac6297f04578d46f16555363b9)

1 / 68      (Adware)
tripleposeun.exe  (1352f0356685baf5d80f9b62c315bffc)

1 / 68      (Adware)
{d812c0ff-54f8-4c9d-8138-b258c8954364}gw.sys (StdLib)  (dc7b7d6d24c6812657e5d2a4f1840a17)

1 / 68      (Adware)
{ca7d2030-c650-4ea2-bac6-57191b115544}gw.sys (StdLib)  (d7a60c94d512164e945ae302efff359c)

1 / 68      (Adware)
{b8757f83-ba4c-411c-ba16-c8f2bd07a610}gw.sys (StdLib)  (8e16e5edd16e7162baee11b2173817bd)

1 / 68      (Adware)
{aa3beca2-cea9-4556-b02d-ad4419c93639}gw.sys (StdLib)  (e3daed8336f7c10144dd2204d939dc63)

1 / 68      (Adware)
{80fc9cbb-e7f9-4de2-b8fa-d6d9bd2c2dc2}gw.sys (StdLib)  (8b96531f195c526d37630c521775733f)

1 / 68      (Adware)
{403b76b9-4f9f-49ee-964f-cc3da637db12}gw.sys (StdLib)  (843da36ca19e0467aba814ed70619688)

1 / 68      (Adware)
{01c4ea3f-c105-4a5f-a962-37006ffd57fc}gw.sys (StdLib)  (f70785f938d54bb9234370d7865bd231)

1 / 68      (Adware)
{0d7fbf15-d944-4821-8a60-dc8be50ea249}t.sys (StdLib)  (3bd7a2c3c31f259cc4e29c30ee2416f5)

1 / 68      (Adware)
{ef13e1f4-b828-4ec3-b1ff-46c12bae16a9}w64.sys (StdLib)  (65ae1c4686447e5cd9ca61651de53e3e)

1 / 68      (Adware)
plugin.exe  (690ae76b694dbce8e785ee189b673e8a)

1 / 68      (Adware)
bdcca9ddea64.dll  (3c6f2dc36ec8d5f4db951185f3465b80)

1 / 68      (Adware)
bdcca9ddea.dll  (9a40882fe27461a73401c18bbda23c29)

1 / 68      (Adware)
bdcc64.dll (by TODO: <Company name>)  (84d40b7e7845b3e4d647eac87700d41c)

1 / 68      (Adware)
bdcc.dll (by TODO: <Company name>)  (76794aefff431647daf85b133088507f)

1 / 68      (Adware)
26fb88451c64.dll  (973d610ff2ff8e1d8cff8a0536f78e09)

1 / 68      (Adware)
26fb88451c.dll  (18cb908817acb586a01e7242238dc142)

1 / 68      (Adware)
26fb64.dll (by TODO: <Company name>)  (729020de3f8e2b2e7efb1e7a57dbab0c)

1 / 68      (Adware)
26fb.dll (by TODO: <Company name>)  (132d964b87f3ae3eb872f1951c381783)

1 / 68      (Adware)
{be993e6e-a96d-441e-89d2-e958323ccf11}w64.sys (StdLib)  (f2824ca441e8c653d93e34822dbef895)

1 / 68      (Adware)
{b8757f83-ba4c-411c-ba16-c8f2bd07a610}w64.sys (StdLib)  (6e1561100e9330ee4311862983e9f406)

1 / 68      (Adware)
{11dbf781-fbf2-48d7-a56d-df0c4d6b5dd9}w64.sys (StdLib)  (4feb02d1fd04b6c6617593a6351a011e)

 
Latest 30 of 6,893 files

The following publishers (by Authenticode signature organization name) are related.

30 of 115 publishers

* Note, the details and description above are based on the code signing digital signature issued to Triple Pose by VeriSign, Inc. on January 14, 2015 with the serial number '79187915743161a667527d4f9a20bc7a'.