ZAXAR LTD

Publisher Information

ZAXAR LTD is a software developer located in Limassol, CY*. The company is a primary distributor of unwanted software. Thre are 9 additional code signing certificates issued to this publisher.
Authority:
VeriSign, Inc.

Valid from:
12/30/2013 4:00:00 AM

Valid to:
11/9/2015 3:59:59 AM

Subject:
CN=ZAXAR LTD, OU=IT, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=ZAXAR LTD, L=Limassol, S=Limassol, C=CY

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
3ca8378d493d9aa1248359c44cb0eeb8

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.ZAXAR.U, PUP.Startup.ZAXAR.L, PUP.ZAXAR.L, PUP.ZAXAR.Q, PUP.Installer.ZAXAR.P, PUP.ZAXAR.K, PUP.Installer.ZAXAR.Q, PUP.ZAXAR.Installer (M), PUP.ZAXAR (M), PUP (M)
96.30%

ESET NOD32
Win32/TrojanClicker.Agent.NUM (variant), Win32/ZaxarGames (variant)
48.15%

Dr.Web
Trojan.DownLoad.64782, Trojan.DownLoader11.3876, Trojan.DownLoader11.3101, Trojan.DownLoad3.32303, Trojan.DownLoader11.17103
37.04%

McAfee
Artemis!7E920E1A6BEA, Artemis!2DBF52B8A54D, Artemis!ED1350D58A57, Artemis!75C5F115581F, Artemis!A2FFDB99ED68
18.52%

Trend Micro House Call
TROJ_GEN.F47V0113, TROJ_GEN.F47V0313, TROJ_GEN.F47V0315, TROJ_GE.CE3C46E6
14.81%

IKARUS anti.virus
Trojan.Win32.Agent, Trojan.SuspectCRC, not-a-virus:Downloader.Win32.ZxrLoader
11.11%

Fortinet FortiGate
W32/ZaxarGames.A, Riskware/ZaxarGames
11.11%

Qihoo 360 Security
Win32/Trojan.302, HEUR/Malware.QVM06.Gen, Malware.QVM20.Gen
11.11%

G Data
Win32.Trojan.Agent.I6U00F, Trojan.Generic.10454086
7.41%

Sophos
Generic PUA JL, Generic PUA GF
7.41%

1 / 68      (Adware)
zaxarsetup_noy.4.001.31.exe  (1ebb2d3520938940b3f708afaf6a0bca)

1 / 68      (Adware)
zaxarsetup_noy.4.001.31.exe  (70625d9f15c65d41058fb4c0bc7c664e)

1 / 68      (Adware)
zaxarsetup_noy.4.001.31.exe  (7dcff1e8fd6ff8b66f31b321ff695253)

1 / 68      (Adware)
zaxarloader.exe  (b445c17c2cf97bea87fe60b2e4047e10)

1 / 68      (Adware)
tmp000000093d24e93a895dd073  (81efa56a8a2d59659eee8da07881602e)

1 / 68      (Adware)
zaxarloader.exe  (aa3771fe2099833d261390af19de4cc0)

1 / 68      (Adware)
zaxarsetup_noy.4.001.31.exe  (fba9f2e105e959214380fccb45f15a9a)

1 / 68      (Adware)
zaxarsetup_noy.4.001.31.exe  (15dea33ff1aad7be17ac2dc7bdee5f42)

1 / 68      (Adware)
zaxarsetup_noy.4.001.31.exe  (e160c73152b4b349cdefc9e0f10dc42f)

11 / 68    (Adware)
zaxarloader.exe  (a2ffdb99ed682f41f63c60cbe03ccd01)

5 / 68      (Adware)
zaxarsetup.4.000.1.exe  (b8611a36300d18086e86039871bffc63)

3 / 68      (Adware)
ZaxarLoader.exe (Zaxar Games Browser by Zaxar)  (75c5f115581fb1cfb3811e080dbda500)

3 / 68      (Adware)
zaxarsetup.4.001.30.exe  (a690b40eb4dc16b7f7f1f5b31c7be6b0)

3 / 68      (Adware)
zaxarsetup.4.001.29.exe  (1ece8d01d68d936f69fdb0afd7c2a360)

5 / 68      (Adware)
zaxarsetup.4.001.5.exe  (ed1350d58a574411c48c2d1391f393ad)

1 / 68      (Adware)
zaxarsound.exe  (a860ed06f5d6f6ab390edfa39c59b164)

2 / 68      (Adware)
zaxargamebrowser.exe  (0c21eb707a28ff11a9cce496a70e7ddc)

2 / 68      (Adware)
ZaxarLoader.exe (Zaxar Games Browser by Zaxar)  (35180b1b2b19c94a84a92a83ce36a5f8)

18 / 68    (Adware)
zaxarsetup_noy.4.001.31.exe  (2dbf52b8a54da676e334a0ff9c2ebfbb)

3 / 68      (Adware)
zaxarsetup.4.001.30.exe  (da604ed2d49bd9263a8e953b25f29bef)

5 / 68      (Adware)
zaxarsetup.4.001.5.exe  (7e920e1a6bea2bc73226c4c5d08b122b)

4 / 68      (Adware)
zaxarloader.exe  (e171f3f825e7e4b32892124d6248b9f5)

1 / 68      (Adware)
zaxargamebrowser.exe  (7921db9cbc6041ff43aaf0ed5b61b701)

1 / 68      (Adware)
zaxarloader.exe  (1554933e1243dedb041fec9029ee087c)

1 / 68      (Adware)
zaxarloader.exe  (27baf74fdd746e863042323848c6ab35)

1 / 68      (Adware)
zaxarsetup_noy.4.001.31.exe  (5aee43bd61a9d1347e0e87bd02463aa0)

6 / 68      (Adware)
zaxarsetup_noy.4.001.31.exe  (4117ab633028c051572502ea3c82a036)

Downloads URLs for files signed by ZAXAR LTD.

1 / 68      (Adware)
http://zxrmedia.com/client/.../ZaxarLoader.exe  (1554933e1243dedb041fec9029ee087c)

1 / 68      (Adware)
http://zxrmedia.com/client/.../ZaxarSound.exe  (a860ed06f5d6f6ab390edfa39c59b164)

1 / 68      (Adware)
http://zxrmedia.com/client/.../ZaxarGameBrowser.exe  (7921db9cbc6041ff43aaf0ed5b61b701)

11 / 68    (Adware)
http://zxrmedia.com/client/.../ZaxarLoader.exe  (a2ffdb99ed682f41f63c60cbe03ccd01)

2 / 68      (Adware)
http://zxrmedia.com/client/.../ZaxarLoader.exe  (35180b1b2b19c94a84a92a83ce36a5f8)

5 / 68      (Adware)

5 / 68      (Adware)

5 / 68      (Adware)

The following websites host and distribute files published by ZAXAR LTD.

The certificates below are also signed by ZAXAR LTD.

225B1AB5889506D39643D736D15FE20D  (Mar 04, 2016 to Mar 05, 2018)

3D327881D2950C3C7D0A58ECAA15720D  (Mar 10, 2015 to Nov 09, 2015)

58D9AA76EAED4710E22F835C6C71159E  (Aug 18, 2014 to Nov 09, 2015)

5B3FCBE6F8071E9035B8810DD3B0F143  (Oct 09, 2013 to Nov 09, 2015)

7B2994888FDF0C08A357CC9C600C2C4D  (Jun 25, 2014 to Nov 09, 2015)

37A90A8AF1DD4C6B68CD54DDB8C6D37D  (Sep 18, 2014 to Nov 09, 2015)

144029F97E1EFC577CF73EC8D814C85C  (Jun 16, 2013 to Oct 11, 2013)

409A8C35651363AB2BA8D1D39E257D82  (Mar 21, 2013 to Oct 11, 2013)

605425D1DBADE7C978EBDC313B6312D5  (Oct 10, 2012 to Oct 11, 2013)

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to ZAXAR LTD by VeriSign, Inc. on December 30, 2013 with the serial number '3ca8378d493d9aa1248359c44cb0eeb8'.