Wander Burst

Publisher Information

Wander Burst is a brand of the Sambreel/Yontoo group, a web advertising company located in Carlsbad, CA. The company is a primary distributor of unwanted software. It is part of the Yontoo/Sambreel group and distributes web browser add-ons, typically potentially unwanted and adware in nature, that are designed to modify a user's typical search beahvior as well as display context and popup advertising.
Authority:
VeriSign, Inc.

Valid from:
6/18/2015 9:00:00 PM

Valid to:
6/18/2016 8:59:59 PM

Subject:
CN=Wander Burst, O=Wander Burst, L=San Diego, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
4a9c9001f9ffb60f7f507cdfcdc1b744

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Yontoo (M), Adware.Yontoo (M)
100.00%

1 / 68      (Adware)
{040615ac-4318-4a21-94d1-588fc28caa2a}.dll  (6ad519f6e801ce26d64d4423ab3d4260)

1 / 68      (Adware)
{44510e38-40e0-41ab-af7a-6c9085d16837}.dll  (60f287b98593c7f57cdaaf9027251d44)

1 / 68      (Adware)
{735f3912-7858-4ceb-8bdd-96dd06391cfd}.dll  (9cd5fd118e32aec35bedb42ca5092bef)

1 / 68      (Adware)
{519d203e-cea3-454e-86ab-247d8c260fa6}.dll  (4d19d9ddd35f64f7ccf709bcb975797b)

1 / 68      (Adware)
{3203ad8d-ce35-4602-8d02-cc8ef4556399}.dll  (361845e8b290458f1d763d05a1a82f9c)

1 / 68      (Adware)
{64c1fc76-24a8-4ea5-b5bc-22ccbc274324}.dll  (69856c21917a2c7d236765e405466cdc)

1 / 68      (Adware)
{42bc2542-f8b0-44bd-8cfd-d59b2cad89ea}.dll  (ee5f026d874f92777ae86bf46809e59a)

1 / 68      (Adware)
{1d9a77f8-dfc2-48e3-b1e8-8a620371eb5a}.dll  (39e9acde8cb91e337b81855f3d6e89fc)

1 / 68      (Adware)
{62a06826-f585-4eeb-8c7c-27d4413898f0}.dll  (df07c7e9bd329b2d2beb49840a1ad43f)

1 / 68      (Adware)
{0c652a72-3fd7-4e9d-b9b2-4d62a5ff1914}.dll  (00a9c92ed83ff37ebf7a8a85b17e4ca7)

1 / 68      (Adware)
{0b5029df-d229-4a1e-b164-325ffefd67f4}.dll  (26b3f26962152b9d61a6b5014a0cee66)

1 / 68      (Adware)
{ffc2fd84-2dd3-4beb-813c-86d1ac649ea3}.xpi  (62b11fc6dfb414e09f05fee0a3a00f6c)

1 / 68      (Adware)
{f5d5771b-6085-41b4-b37b-82b7619ebaf3}.dll  (ce75d098bf000cef3f8fad87612d6b24)

1 / 68      (Adware)
{cffc0784-1abc-4d55-a7e4-e5a5e9d2bd01}.dll  (cb0fc04e2b3508592d27efdc5cf1262c)

1 / 68      (Adware)
{bd6a5d77-5318-49e2-934b-ade2ca1612c5}.dll  (6102bdff0e1f4ed942ad3358e980077d)

1 / 68      (Adware)
{a678e898-ac78-4fdd-b7f9-f6f8d2f1fc33}.dll  (d8a4b90e5f32df15e6c8e23f8518af82)

1 / 68      (Adware)
{988e552f-6a5e-44ab-b09f-ca243cb1148e}.dll  (b7567eae425576698523125ae45a3ea3)

1 / 68      (Adware)
{6058edc3-5168-4ad6-9749-766727061a63}.dll  (3f87d9fd6e394c1bac53aa195d872d6e)

1 / 68      (Adware)
{5ee98cb1-6a6c-4d66-af00-e74d5500ed1d}.dll  (8a14b0a6cbbe7a293fb67114df6c0924)

1 / 68      (Adware)
{29eba1bb-7c46-4d2d-8789-c94e279b72b0}.dll  (3f4db357ec102291bcc14ef27eb1664d)

1 / 68      (Adware)
{1cadc6b4-13ce-48f5-8942-568ac4fe7c1a}.dll  (27ecdf31a73feb14bae3938106c81d61)

1 / 68      (Adware)
{c67d29e6-c34b-446a-8680-4164c0dd8c81}.dll  (0fc019877fa1cf7a9d688ede35b39721)

1 / 68      (Adware)
{bce78395-3cf1-491c-ab34-eed68666b505}.dll  (9f595772305fa6486e86f63d6caf67f5)

1 / 68      (Adware)
{9ac2745f-f0f8-4664-af97-e914f3dbb0a9}.dll  (9c9671e4ae0368c801cf5b462222610b)

1 / 68      (Adware)
plugin.exe  (31f5a77ddcefcf449a6b5585acf74a1c)

1 / 68      (Adware)
plugin.exe  (a57609d8ef6e348bb34103aa9eca0629)

1 / 68      (Adware)
plugin.exe  (52da7452a87d9ff954e1d2247e96040b)

1 / 68      (Adware)
plugin.exe  (e61cbec955db07f99bb2e335c1c2f317)

1 / 68      (Adware)
plugin.exe  (ef6642f45a34603dabcfbb61b50d640f)

1 / 68      (Adware)
plugin.exe  (38bbc84154d4c47df051fcef9214e94a)

 
Latest 30 of 27,214 files

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to Wander Burst by VeriSign, Inc. on June 18, 2015 with the serial number '4a9c9001f9ffb60f7f507cdfcdc1b744'.