(주)네오유엑스

Publisher Information

(주)네오유엑스 is a software publisher located in Guro-gu, Seoul in Korea*. Thre are 3 additional code signing certificates issued to this publisher.
Authority:
Thawte, Inc.

Valid from:
11/29/2012 9:00:00 AM

Valid to:
12/30/2013 8:59:59 AM

Subject:
CN=(주)네오유엑스, OU=Dev. Team, O=(주)네오유엑스, L=Guro-gu, S=SEOUL, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
17555c6bbd7c5363d7882a57270db412

Status:
Inconclusive detections from multiple engines

Scan engine
Details
Detections

Comodo Security
UnclassifiedMalware, ApplicUnwnt
47.83%

Avira AntiVirus
Adware/PCPlus.C.18, Adware/Kraddare.CD.14, Adware/Adware.AZF.5, TR/ManBat.341120, Adware/PCPlus.C.19, TR/Agent.2681472, TR/ManBat.338048
47.83%

McAfee
Artemis!C90C9E275431, Artemis!2F731B231A39, Artemis!B55BEEE9D398, Artemis!D212362C4AF3, Artemis!8F359EB703A2, Artemis!6A52F67E889F, Artemis!6FACE784B279, Artemis!C0DC3C280A8E
43.48%

AVG
Generic5.MYS.dropper, Win32/DH{gQxBgRIuDyAkIiU}
39.13%

ESET NOD32
Win32/Adware.PCPlus (variant), Win32/Adware.Kraddare.CD (variant), Win32/Adware.Kraddare.FX (variant), probably unknown NewHeur_PE
34.78%

Trend Micro House Call
TROJ_GEN.RCBH2AA, TROJ_GEN.F47V0329, TROJ_GEN.RCBH2LC, TROJ_GEN.F47V0701, TROJ_GEN.R0CBC0OH213, TROJ_GEN.F47V0625, TROJ_GEN.F47V0623
34.78%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
34.78%

IKARUS anti.virus
Win32.SuspectCrc, Trojan.ATRAPS, Trojan.SuspectCRC, Trojan.Agent, Backdoor.Gen2
30.43%

avast!
Win32:Adware-AZF [Adw], Win32:Adware-AUW [Adw], Win32:Evo-gen [Susp], Win32:Adware-AVB [Adw], Win32:Adware-AUZ [Adw], Win32:Adware-COH [PUP]
30.43%

VIPRE Antivirus
Trojan.Win32.Generic
30.43%

0 / 68
fgupsvc.exe  (1180b5b625fbc14ad3f2d9754b3453a2)

0 / 68
FGDownloadMoniker.dll  (62a098261266d5d1f41e846d4a5940c3)

0 / 68
fgcounter.exe  (a0f6f4b752507b75c451720776b99e00)

0 / 68
GoodFileAgree.exe  (161956e402b1e6deb68869e1f96a8859)

0 / 68
MultidownloadInstall.exe (by NeoUx)  (e0e3c71075c18a3d126efdac29cf6b8e)

0 / 68
filedoumi_setup.exe (FileDoumi_Setup by NeoUX)  (12941ed4c016adb970639abc2127d3f0)

0 / 68
FileGet2.exe  (d1ffd2992b4e2901ef857e06bb2c8046)

0 / 68
FGDownloadUI.dll  (0152b42bed4defcef41cbfe48b9d1714)

0 / 68
multidownloadupdate.exe (multidownload by NeoUx)  (b1637505c30b1b683da7acf00aac69ba)

0 / 68
multidownloadupdate.exe (multidownload_SVC by NeoUx)  (9118aa5c5ab7bf82a4a4c4b9b0048e30)

8 / 68      (PUP)
MultidownloadInstall.exe (by NeoUx)  (00a3ce2f91f37112e60780704b12f206)

0 / 68
multidownloadupdate.exe (multidownload_SVC by NeoUx)  (f50bc915ca275c81470c02931eb39ae4)

3 / 68      (inconclusive)
multidownloadupdate.exe (multidownload_SVC by NeoUx)  (86713c50fbd5f6cf79c85ae075bcf922)

10 / 68    (Malware)
multidownloadiconsl.exe  (c0dc3c280a8eca224f0989878a7223e8)

12 / 68    (PUP)
MultidownloadInstall.exe (by NeoUx)  (6face784b279c24ef2bc14f04e1f3720)

0 / 68
multidownloaduphp.exe (multidownload_SVC by NeoUx)  (752a13447a8e509a99e34fd15c516666)

0 / 68
timeAdd.dll  (32513708ed19c35b0a4cd6113bf5d951)

0 / 68
FGUp.exe  (9842338fa053103bc2d435c0bd105e33)

0 / 68
multidownloadupdate.exe (multidownload_SVC by NeoUx)  (fbd8c44b027e79f1d88ced1afb17804d)

0 / 68
multidownloadiconsl.exe  (d6ee4bc19e1cd2806532fbc5bf7757a1)

0 / 68
multidown.dll  (62b251edcdcc59549cb75d76b0ea13e7)

1 / 68      (inconclusive)
timeAdd.dll  (a3d25ca5182744525e6ca0572f8fd80a)

0 / 68
multidownloadiconsl.exe  (8821279cb72cc325af0d06c8f3da3556)

11 / 68    (PUP)
MultidownloadInstall.exe (by NeoUx)  (6a52f67e889ffef95f630b1fb19462df)

0 / 68
MultiDownHelper.dll  (4ef04b542f8c5184a2f3fc6d64a0738d)

5 / 68      (Malware)
pwuninstall.exe (by redple)  (4342307fa42e8ad6d6d607072a8eeb19)

0 / 68
powerpcsetupl.exe (by neoux)  (f0b36cc4e4587ae7dd2913e27bb66886)

2 / 68      (Malware)
MultiDownHelper.dll  (bede370f38dac3f001fded8738a737c5)

17 / 68    (PUP)
multidownloadupdate.exe (multidownload by NeoUx)  (8f359eb703a24a77309346a15526c61f)

2 / 68
pwtray.exe (by redple)  (6c6f779bd828e8fb499c076fe4cc1240)

 
Latest 30 of 43 files

Downloads URLs for files signed by (주)네오유엑스.

12 / 68    (PUP)

8 / 68      (Malware)

The following websites host and distribute files published by (주)네오유엑스.

The certificates below are also signed by (주)네오유엑스.

3309B61E91B40066B60AC04004FA7EEA  (Jan 21, 2015 to Feb 21, 2016)

79B0ECA385849EA4DA5F86701216430F  (Dec 26, 2013 to Jan 26, 2015)

6896C85E82B7D9999B1E18C73F047B4E  (Dec 03, 2011 to Dec 03, 2012)

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to (주)네오유엑스 by Thawte, Inc. on November 29, 2012 with the serial number '17555c6bbd7c5363d7882a57270db412'.