Appealing Apps

Publisher Information

Appealing Apps is a software publisher located in Philadelphia, Pennsylvania in the United States*. The company is a primary distributor of unwanted software. Appealing Apps (Red Online Marketing Group LP) is a advertising software producer of web browser add-ons designed to display ads and affiliate offers within the web pages of a web browser. The company re-distributes a few dozen of the same adware type programs through monetized bundled installations primarily using the Crossrider toolbar platform.
Remove Appealing Apps Malware - Powered by Reason Core Security
Authority:
Thawte, Inc.

Valid from:
6/4/2013 2:00:00 AM

Valid to:
6/5/2014 1:59:59 AM

Subject:
CN=Appealing Apps, O=Appealing Apps, L=Philadelphia, S=Pennsylvania, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
0444aa3b06f7bbdc2e37af0824fb38c7

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
Adware.GamePlayLabs.50OnRed (M), PUP.50OnRed.AppealingApps.Installer (M)
100.00%

Bkav FE
W32.HfsAdware, W64.HfsAdware
72.00%

Jiangmin
Adware/Agent.trm, Adware/Agent.zvb, Adware/Agent.trl
72.00%

Trend Micro House Call
Suspicious_GEN.F47V1108, Suspicious_GEN.F47V0814, TROJ_GEN.F47V0227
72.00%

Dr.Web
Adware.GamePlayLabs.54, Adware.GamePlayLabs.55, Trojan.Crossrider1.23717
72.00%

VIPRE Antivirus
GamePlayLabs, Trojan.Win32.Generic
70.00%

IKARUS anti.virus
AdWare.DealDropper
70.00%

AVG
Generic, AdPlugin
70.00%

Antiy Labs AVL
Trojan/Win32.SGeneric
70.00%

ESET NOD32
Win32/AdWare.SmartApps (variant), Win64/Adware.SmartApps (variant)
70.00%

1 / 68      (Adware)
majestic.exe  (fb9ba6d0a6d0d1c0c339750a97d7bf4b)

17 / 68    (Adware)
frameworkbho64.dll (Framework)  (36aa9d00de1fa31b74f1fed59fe381f7)

19 / 68    (Adware)
frameworkbho.dll (Framework)  (00215298fb70b3d7298913511a2cb1ea)

17 / 68    (Adware)
frameworkbho64.dll (Framework)  (9dab0ebfdc2048b715644f784da1003c)

19 / 68    (Adware)
frameworkbho.dll (Framework)  (3b32634b62d25ce9bfdad8cf0208868a)

19 / 68    (Adware)
frameworkbho.dll (Framework)  (fe332555a21c5b05b8911ef9b00aaee8)

1 / 68      (Adware)
setup_solid savings-1.0.20140505.exe  (3c7fe76d18aec30fd037625592eeaaf6)

17 / 68    (Adware)
frameworkbho64.dll (Framework)  (d533f7862fd506a62aa9e6065d533942)

19 / 68    (Adware)
frameworkbho.dll (Framework)  (057910fc5f20b5720283797af857ebef)

20 / 68    (Adware)
frameworkengine.exe (Framework)  (4abcc7816b9cba9500db499dceada7c4)

20 / 68    (Adware)
frameworkengine.exe (Framework)  (90c5732ab4b4e3c78a3153e70f1d935e)

17 / 68    (Adware)
frameworkbho64.dll (Framework)  (b839e0e6e1e459d9ebae2afc1a46dc8c)

1 / 68      (Adware)
deal_boat.exe  (df71442361fed402e53cd02ae917541c)

1 / 68      (Adware)
setup_deal boat-1.1.20140505.exe  (3e612cdd0ece16d0a5348ba2d885a16d)

1 / 68      (Adware)
couponserver_fm_2.exe  (2b6307525040c38b9575f4f5613722ac)

19 / 68    (Adware)
frameworkbho.dll (Framework)  (5c3a55c3a8a1376759f47bf347a3a9e6)

20 / 68    (Adware)
frameworkengine.exe (Framework)  (71a67184b20d82fe710fc20afaa6997e)

17 / 68    (Adware)
frameworkbho64.dll (Framework)  (e3a8e10bf1e3e773d5dfce48ba9b6b29)

17 / 68    (Adware)
frameworkbho64.dll (Framework)  (c5b9d9ae44b62199bf1e1a02bad5daf6)

19 / 68    (Adware)
frameworkbho.dll (Framework)  (4cd245bbcd92468fade6ff3bfaf2de87)

1 / 68      (Adware)
coupon server.exe  (0436211242ac00d54a88c6d5970a978f)

20 / 68    (Adware)
frameworkengine.exe (Framework)  (c546e5fd5f5963375e9a5035f50a6090)

23 / 68    (Adware)
frameworkbho64.dll (Framework)  (42e3d3e65c53de4d1f89a17fe3ee80d4)

19 / 68    (Adware)
frameworkbho.dll (Framework)  (dcea7196ebf914b9c20ff9861495b20a)

20 / 68    (Adware)
frameworkengine.exe (Framework)  (01efcff9020f36fbab266275059cfe5d)

17 / 68    (Adware)
frameworkbho64.dll (Framework)  (a64c778f2645a41d7cc7c57f75014e58)

19 / 68    (Adware)
frameworkbho.dll (Framework)  (aa632c70c16eeddf6bb5f1c2e0dbb960)

20 / 68    (Adware)
frameworkengine.exe (Framework)  (599af8abf677b572a1bb871d018ba397)

17 / 68    (Adware)
frameworkbho64.dll (Framework)  (1e6a50380476e5760f03127e48731162)

17 / 68    (Adware)
frameworkbho64.dll (Framework)  (c04f66aff4239fd488d1531dff0a68df)

 
Latest 30 of 338 files

The following publishers (by Authenticode signature organization name) are related.

Remove Appealing Apps Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Appealing Apps by Thawte, Inc. on June 04, 2013 with the serial number '0444aa3b06f7bbdc2e37af0824fb38c7'.