Web Tripp

Publisher Information

Web Tripp is a brand of the Sambreel/Yontoo group, a web advertising company located in Carlsbad, CA. The company is a primary distributor of unwanted software. It is part of the Yontoo/Sambreel group and distributes web browser add-ons, typically potentially unwanted and adware in nature, that are designed to modify a user's typical search beahvior as well as display context and popup advertising.
Authority:
VeriSign, Inc.

Valid from:
10/29/2014 1:00:00 AM

Valid to:
10/12/2015 1:59:59 AM

Subject:
CN=Web Tripp, O=Web Tripp, L=Santa Monica, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2f541276f5315f0f251c1ce5137a431b

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Yontoo (M), Adware.Yontoo (M)
100.00%

1 / 68      (Adware)
3bcf4f2c0bbb4d4cbf1f64.dll  (80e599610f65dff7710f3af9d4bd8850)

1 / 68      (Adware)
{3bcf4f2c-0bbb-4d4c-bf1f-11bbe6d501ea}gw.sys (StdLib)  (d9276a63eb9143b2426fbe7c575c9b3d)

1 / 68      (Adware)
maintainer.bak  (daaf57ddb466d1a5a600542afa1b8257)

1 / 68      (Adware)
dynamocombo.brt.helper.exe.pendingoverwrite  (9748cbef573e03a2e2c6a62ceba71154)

1 / 68      (Adware)
{3bcf4f2c-0bbb-4d4c-bf1f-11bbe6d501ea}t.sys (StdLib)  (4f8534cbf95433c2007d85703c2f16f0)

1 / 68      (Adware)
{3bcf4f2c-0bbb-4d4c-bf1f-11bbe6d501ea}w64.sys (StdLib)  (38b96b28bbf533610fff2a4e575f006e)

1 / 68      (Adware)
{3bcf4f2c-0bbb-4d4c-bf1f-11bbe6d501ea}w64.sys (StdLib)  (67492f079bb03988bfe75c114fa503fb)

1 / 68      (Adware)
{3bcf4f2c-0bbb-4d4c-bf1f-11bbe6d501ea}gw.sys (StdLib)  (24eed60b1f1e623060f5f09041e8df60)

1 / 68      (Adware)
{3bcf4f2c-0bbb-4d4c-bf1f-11bbe6d501ea}gt.sys (StdLib)  (7c24cc33c4053cb1aa438944c77423f0)

1 / 68      (Adware)
dynamocombo.purbrowse64.exe  (ce275c8094abd89efa16b75623172c9a)

1 / 68      (Adware)
dynamocombo.purbrowse.dll  (47eae3178f8378d803931c1a82521ace)

1 / 68      (Adware)
dynamocombo.expext.dll  (12b39737e9e27eae21c2c86ae4a61bfe)

1 / 68      (Adware)
dynamocombo.purbrowse.exe  (e13cadc5d4667bbc1d25627b19c69644)

1 / 68      (Adware)
dynamocombo.browseradapter64.exe  (c7d44b1655d32af40e701cd70e0934e0)

1 / 68      (Adware)
dynamocombo.browseradapter.exe  (85a93892a74847b7660fa8e3d4e18cf3)

1 / 68      (Adware)

1 / 68      (Adware)
dynamocombo.gcupdate.dll  (d99b4ae4cb1f47d8ea4cfe392a7e3c47)

1 / 68      (Adware)
dynamocombo.expext.dll  (ec6738f99086dcab11285cf4c71a3161)

1 / 68      (Adware)
dynamocombo.purbrowse64.exe  (bee450ff341a93f10edeca3c329ecb34)

1 / 68      (Adware)
{3bcf4f2c-0bbb-4d4c-bf1f-11bbe6d501ea}gw.sys (StdLib)  (73b81725a5de741b48adfaeacfc89455)

1 / 68      (Adware)
DynamoCombo2015050800.exe  (e515e97f8b5edfa611d2756b79d67867)

1 / 68      (Adware)
dynamocombo.purbrowse.dll  (efa366d789ea492424b04735271e4e88)

1 / 68      (Adware)
dynamocombo.gcupdate.dll  (d7662126f6efa138d41686d5d81075db)

1 / 68      (Adware)
dynamocombo.ffupdate.dll  (f057d5a7af4504bf66a1ad660083d9c8)

1 / 68      (Adware)
dynamocombo.expext.dll  (d56a8b2385b1ef2c38b9951d99e3ab42)

1 / 68      (Adware)
dynamocombo.browseradapter.dll  (9f185d13a5f716b259fc24c1cbabe2db)

1 / 68      (Adware)
dynamocombo.purbrowse64.exe  (537202062dded6ce4e7acc0dec13a78e)

1 / 68      (Adware)
{3bcf4f2c-0bbb-4d4c-bf1f-11bbe6d501ea}w64.sys (StdLib)  (ea745e857d2ecfabefa413f940cb3c9d)

1 / 68      (Adware)
{3bcf4f2c-0bbb-4d4c-bf1f-11bbe6d501ea}gw64.sys (StdLib)  (526e6b2bf58a80eb4e45276a3cdf8b64)

1 / 68      (Adware)
{3bcf4f2c-0bbb-4d4c-bf1f-11bbe6d501ea}t.sys (StdLib)  (275ef9d28847325bf857cf67359524db)

 
Latest 30 of 7,803 files

The following publishers (by Authenticode signature organization name) are related.

30 of 153 publishers

* Note, the details and description above are based on the code signing digital signature issued to Web Tripp by VeriSign, Inc. on October 29, 2014 with the serial number '2f541276f5315f0f251c1ce5137a431b'.