Alactro LLC

Publisher Information

Alactro LLC is a brand of the Sambreel/Yontoo group, a web advertising company located in Carlsbad, CA. The company is a primary distributor of unwanted software. It is part of the Yontoo/Sambreel group and distributes web browser add-ons, typically potentially unwanted and adware in nature, that are designed to modify a user's typical search beahvior as well as display context and popup advertising. Thre are 2 additional code signing certificates issued to this publisher.
Authority:
GoDaddy.com, Inc.

Valid from:
5/15/2012 10:01:43 PM

Valid to:
5/26/2013 11:13:23 PM

Subject:
CN=Alactro LLC, O=Alactro LLC, L=Carlsbad, S=CA, C=US

Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
046caa7e02c7fb

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.Alactro.L, PUP.Installer.Alactro.J, PUP.Installer.Alactro.EE, PUP.Installer.Alactro.c, PUP.Installer.Alactro.G, PUP.Yontoo.Alactro (M), PUP.Yontoo.Alactro.Installer (M), PUP.Yontoo (M)
100.00%

VIPRE Antivirus
Yontoo
55.32%

Comodo Security
UnclassifiedMalware, Heur.Suspicious, ApplicUnwnt
53.19%

Dr.Web
Adware.Plugin.8, Adware.Plugin.11, Trojan.MulDrop3.57258
53.19%

ESET NOD32
Win32/Adware.Yontoo (variant), Win32/Adware.GNDEMWC (variant)
53.19%

Avira AntiVirus
ADWARE/Yontoo.Gen2
46.81%

AVG
AdInject.Alactro, MultiDropper_c
38.30%

MicroWorld eScan
Adware.Generic.400473, Yontoo, Win32/Adware.DZVACVG, ADWARE/Yontoo.Gen2, Adware.Generic.431001, Adware.Generic.386027
25.53%

Trend Micro House Call
TROJ_GEN.F47V0822, TROJ_GEN.RCBH1KE, TROJ_GEN.F47V0201, TROJ_GEN.F47V0202, TROJ_GEN.F47V1008, TROJ_SPNR.0BHH13, TROJ_FAKEAV.BMC, TROJ_GEN.RCBH1H7, TROJ_GEN.R0CBH0AJ113
23.40%

IKARUS anti.virus
AdWare.Yontoo
21.28%

1 / 68      (Adware)
yontoo-c1_new3.exe (Easy Inline by Alactro)  (7b5e35d70f254af4e01a7adb6bb6d807)

1 / 68      (Adware)
BuzzdockIEClient.dll (Buzzdock Runtime by Alactro)  (85d07516c9dc94f7e667268894f98e8b)

1 / 68      (Adware)
yontoo-c3.exe (ezLooker by Alactro)  (1475d334064a7d92973bb7b72885fe80)

1 / 68      (Adware)
setup-e2.exe (Easy Inline by Alactro)  (a049884e236d6a5fc313168589a51653)

1 / 68      (Adware)
793447.tmp (Buzzdock by Alactro)  (ed1724f7563d9911a08474d7eb52218d)

1 / 68      (Adware)
BuzzdockIEClient.dll (Buzzdock Runtime by Alactro)  (69c07c8cdce5f674ae7d99009e670d8f)

1 / 68      (Adware)
buzzdocksetup.exe (Buzzdock by Alactro)  (ba406dc3bc902683bef5ba6533a1c102)

1 / 68      (Adware)
BuzzdockIEClient.dll (Buzzdock Runtime by Alactro)  (9277d69d4786ca622ed397e8d54c35b3)

1 / 68      (Adware)
yontoo-c3.exe (ezLooker by Alactro)  (0a500cce0d559b76ce7bcb3bda0ca36a)

1 / 68      (Adware)
bvddsetup.exe (Best Video Downloader by Alactro)  (ca295781e01c3702ba66d3f7153749fe)

1 / 68      (Adware)
buzzdocksetup.exe (Buzzdock by Alactro)  (58f53b95b653ef27d2977e84b3c8a9b3)

1 / 68      (Adware)
ezldsetup.exe (ezLooker by Alactro)  (1e53b99a7350576a3ba382299c33a4dc)

1 / 68      (Adware)
yontoo-d1.exe (Easy Inline by Alactro)  (dae3a344e18629e4f8ef332240a988fb)

1 / 68      (Adware)
ezldsetup.exe (ezLooker by Alactro)  (a82410e863c4c6ab394fcb144d247ca5)

1 / 68      (Adware)
bvddsetup.exe (Best Video Downloader by Alactro)  (5f487779d398d4c4435b0f1abad2e7e8)

1 / 68      (Adware)
airf8ac.exe (FreeTwitTube by Alactro)  (ba591fe82e8a04730db4bb5721fea8df)

1 / 68      (Adware)
ezlooker-s-setup_suite1.exe (ezLooker by Alactro)  (df3ae0da7183c4369044a9de99264288)

1 / 68      (Adware)
793cce1.tmp (Buzzdock by Alactro)  (5e5c990a769097053ae71ccef319ff32)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
yontoo-c5.exe  (04c310aa2357a40210f3f7110594f9f2)

7 / 68      (Adware)
bvddsetup.exe (Best Video Downloader by Alactro)  (8ad6f7e6b5ae925c31988862debd6e2e)

18 / 68    (Adware)
bvddsetup.exe (Best Video Downloader by Alactro)  (5ad63efcd6a6e2120e3d4e5ed4a48ef2)

19 / 68    (Adware)
yontoo-1106-d3fe3414.exe (ezLooker by Alactro)  (aac1c13fe3be90c7e2d8fc7abe50996b)

8 / 68      (Adware)
buzzdock-a220130215.exe (Buzzdock by Alactro)  (5de51e2827d36a8e1429fe3f3f1ad115)

10 / 68    (Adware)
otshotcomponent0.exe (ezLooker by Alactro)  (e0ecfb0e93424dbf75ded01a49cc7333)

6 / 68      (Adware)
BuzzdockIEClient.dll (Buzzdock Runtime by Alactro)  (529d6bf8edb2694d07c5fcb81d3758af)

10 / 68    (Adware)

11 / 68    (Adware)
yontoo-c5.exe (Best Video Downloader by Alactro)  (01871302a399ac0dd81a1ebf28f7079f)

7 / 68      (Adware)
setup-c73.exe (FreeTwitTube by Alactro)  (0564eab483e4543d2b48d27863e33113)

 
Latest 30 of 47 files

Downloads URLs for files signed by Alactro LLC.

11 / 68    (Adware)
http://dl.dsmstc.com/Update/.../  (googlechromeextensionupdate_m0.exe)

8 / 68      (Adware)
http://dl-2.kbm2.com/.../buzzdocka220130220.exe  (5de51e2827d36a8e1429fe3f3f1ad115)

9 / 68      (Adware)
http://dl.dsmstc.com/Update/.../?mirror=2  (googlechromeextensionupdate_m2.exe)

11 / 68    (Adware)
http://dl.smstmv.com/Update/.../?mirror=8  (googlechromeextensionupdate_m8.exe)

11 / 68    (Adware)
http://dl.dsmstc.com/Update/.../?mirror=0  (googlechromeextensionupdate_m0.exe)

10 / 68    (Adware)
http://dl.smstmv.com/Update/.../?mirror=7  (googlechromeextensionupdate_m7.exe)

10 / 68    (Adware)
http://dl.smstmv.com/Update/.../?mirror=3  (googlechromeextensionupdate_m3.exe)

9 / 68      (Adware)
http://dl.dsmstc.com/Update/.../?mirror=1  (googlechromeextensionupdate_m1.exe)

11 / 68    (Adware)
http://dl.smstmv.com/Update/.../  (googlechromeextensionupdate_m0.exe)

9 / 68      (Adware)
http://dl.mscimg.com/Update/.../?mirror=5  (googlechromeextensionupdate_m5.exe)

10 / 68    (Adware)
http://dl.mscimg.com/Update/.../?mirror=7  (googlechromeextensionupdate_m7.exe)

10 / 68    (Adware)
http://dl.dsmstc.com/Update/.../?mirror=7  (googlechromeextensionupdate_m7.exe)

10 / 68    (Adware)
http://dl.smstmv.com/Update/.../?mirror=9  (googlechromeextensionupdate_m9.exe)

9 / 68      (Adware)
http://dl.smstmv.com/Update/.../?mirror=5  (googlechromeextensionupdate_m5.exe)

9 / 68      (Adware)
http://dl.smstmv.com/Update/.../?mirror=2  (googlechromeextensionupdate_m2.exe)

9 / 68      (Adware)
http://dl.dsmstc.com/Update/.../?mirror=5  (googlechromeextensionupdate_m5.exe)

13 / 68    (Adware)
http://dl.dsmstc.com/Update/.../?mirror=4  (googlechromeextensionupdate_m4.exe)

13 / 68    (Adware)
http://dl.mscimg.com/Update/.../?mirror=4  (googlechromeextensionupdate_m4.exe)

10 / 68    (Adware)
http://dl.mscimg.com/Update/.../?mirror=3  (googlechromeextensionupdate_m3.exe)

13 / 68    (Adware)
http://dl.smstmv.com/Update/.../?mirror=4  (googlechromeextensionupdate_m4.exe)

10 / 68    (Adware)
http://dl.dsmstc.com/Update/.../?mirror=3  (googlechromeextensionupdate_m3.exe)

9 / 68      (Adware)
http://dl.mscimg.com/Update/.../?mirror=2  (googlechromeextensionupdate_m2.exe)

11 / 68    (Adware)
http://dl.dsmstc.com/Update/.../?mirror=8  (googlechromeextensionupdate_m8.exe)

8 / 68      (Adware)
http://dl.smstmv.com/Update/.../?mirror=6  (googlechromeextensionupdate_m6.exe)

9 / 68      (Adware)
http://dl.mscimg.com/Update/.../?mirror=1  (googlechromeextensionupdate_m1.exe)

11 / 68    (Adware)
http://dl.smstmv.com/Update/.../?mirror=0  (googlechromeextensionupdate_m0.exe)

10 / 68    (Adware)
http://dl.dsmstc.com/Update/.../?mirror=9  (googlechromeextensionupdate_m9.exe)

8 / 68      (Adware)
http://dl.dsmstc.com/Update/.../?mirror=6  (googlechromeextensionupdate_m6.exe)

11 / 68    (Adware)
http://dl.mscimg.com/Update/.../?mirror=8  (googlechromeextensionupdate_m8.exe)

11 / 68    (Adware)
http://dl.mscimg.com/Update/.../?mirror=0  (googlechromeextensionupdate_m0.exe)

 
Latest 30 of 35 download URLs

The following websites host and distribute files published by Alactro LLC.

The certificates below are also signed by Alactro LLC.

018D4FCE8B07C5BF93892F3E2AB578D5  (Jun 25, 2013 to Aug 24, 2016)

27E40C73BA04BA  (May 26, 2011 to May 26, 2012)

The following publishers (by Authenticode signature organization name) are related.

30 of 97 publishers

* Note, the details and description above are based on the code signing digital signature issued to Alactro LLC by GoDaddy.com, Inc. on May 15, 2012 with the serial number '046caa7e02c7fb'.