App Squad

Publisher Information

App Squad is a software developer located in Philadelphia, Pennsylvania in the United States*. The company is a primary distributor of unwanted software. App Squad (Red Online Marketing Group LP) is a advertising software producer of web browser add-ons designed to display ads and affiliate offers within the web pages of a web browser. The company re-distributes a few dozen of the same adware type programs through monetized bundled installations primarily using the Crossrider toolbar platform.
Remove App Squad Malware - Powered by Reason Core Security
Authority:
Thawte, Inc.

Valid from:
3/18/2014 1:00:00 AM

Valid to:
3/26/2015 12:59:59 AM

Subject:
CN=App Squad, O=App Squad, L=Philadelphia, S=Pennsylvania, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
49f47d57212b012c506e1cb5ce9af0f8

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
Adware.GamePlayLabs.50OnRed (M), PUP.50OnRed.AppSquad.Installer (M)
100.00%

AVG
Generic
90.00%

Antiy Labs AVL
Trojan/Win32.SGeneric, Trojan/Win32.TSGeneric
90.00%

ESET NOD32
Win64/Adware.SmartApps (variant), Win32/AdWare.SmartApps (variant)
72.00%

VIPRE Antivirus
Win64.Adware.SmartApps, GamePlayLabs
72.00%

IKARUS anti.virus
AdWare.AdPlugin, AdWare.Smartapps
72.00%

Comodo Security
ApplicUnwnt
52.00%

avast!
Win32:Malware-gen
38.00%

G Data
Win32.Adware.Smartapps
20.00%

8 / 68      (Adware)
frameworkengine.exe (Framework)  (f3d821483ffe00ca7036853d231f3f29)

7 / 68      (Adware)
frameworkbho64.dll (Framework)  (1fad0b6913c78efb432de290fd9407e8)

7 / 68      (Adware)
frameworkbho64.dll (Framework)  (41df22c6efddc1bd30c6215b4c3b806a)

7 / 68      (Adware)
frameworkbho64.dll (Framework)  (7272e23abf5aad1d5614e7e6e7a05c6c)

1 / 68      (Adware)
trzc863.tmp  (2f13be8bbf07eb596222c476a6667bca)

7 / 68      (Adware)
frameworkbho64.dll (Framework)  (b032f04fbe3f2bc0b64f933acdd5c52a)

4 / 68      (Adware)
frameworkbho.dll (Framework)  (9965872e3a8f60358dbcf97882a7fb39)

8 / 68      (Adware)
frameworkengine.exe (Framework)  (686265cc5f24bb0460f545816927224f)

7 / 68      (Adware)
frameworkbho64.dll (Framework)  (23ee3a42169802bff8ecdf69efa94c7a)

7 / 68      (Adware)
frameworkbho64.dll (Framework)  (dd2c650b21e02e1a88c1b3accca90dde)

8 / 68      (Adware)
frameworkengine.exe (Framework)  (b31446a194e33a4796c1b410e6da36bc)

7 / 68      (Adware)
frameworkbho64.dll (Framework)  (65398b441ccaff9d5da4c976978b9030)

4 / 68      (Adware)
frameworkbho.dll (Framework)  (13c0751e2d6467fe60f0b2f3e51bafe0)

7 / 68      (Adware)
frameworkbho64.dll (Framework)  (88cae214a684f211a2e02c4988a658d1)

8 / 68      (Adware)
frameworkengine.exe (Framework)  (3bbc6d89589f35f98c9055c43f15bb0b)

7 / 68      (Adware)
frameworkbho64.dll (Framework)  (bb4bb79b318cd141b7c1d2ecf51f1218)

7 / 68      (Adware)
frameworkbho64.dll (Framework)  (90e977907b062b75249b828e1b5b5f42)

4 / 68      (Adware)
frameworkbho.dll (Framework)  (e244c9120d702417a6f5dd59e1fb0b7f)

8 / 68      (Adware)
frameworkengine.exe (Framework)  (527880c7e4f4440ab0c27be9357f7463)

7 / 68      (Adware)
frameworkbho64.dll (Framework)  (78e320b60f31e84309e4fea0b669184c)

4 / 68      (Adware)
frameworkbho.dll (Framework)  (ead148662035618baad4e4a31900c1a1)

8 / 68      (Adware)
frameworkengine.exe (Framework)  (19ed77a7828832d3d0f48f26a2948996)

7 / 68      (Adware)
frameworkbho64.dll (Framework)  (8b9fbfaf8cbc2e65d3440b3ae2f49067)

7 / 68      (Adware)
frameworkbho64.dll (Framework)  (1f58a587ec5028f4ebe8e6b6ca46e29e)

7 / 68      (Adware)
frameworkbho64.dll (Framework)  (fde71e5508936f26d73b710e4ce4cece)

7 / 68      (Adware)
frameworkbho64.dll (Framework)  (e2f6967dfdcca1965278a899f47232e6)

4 / 68      (Adware)
frameworkbho.dll (Framework)  (10cf4c0a1bb96ee45b4ede7ff3512cf5)

1 / 68      (Adware)
coupon server.exe  (6b78f0b7cb83aeffae3525ce3ea61ffb)

7 / 68      (Adware)
frameworkbho64.dll (Framework)  (137da94eaeedf8ad31d09e0da50d0c8e)

7 / 68      (Adware)
frameworkbho64.dll (Framework)  (05f5d2ca8a45d1e379d54f5eba391443)

 
Latest 30 of 104 files

Remove App Squad Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to App Squad by Thawte, Inc. on March 18, 2014 with the serial number '49f47d57212b012c506e1cb5ce9af0f8'.