Ask.com

Publisher Information

Ask.com is a software developer located in Oakland, California in the United States*. The company is a primary distributor of potentially unwanted software. Ask.com is a toolbar distribution and monetization platform that provides publishers the ability to create white-label toolbars using the APN (Ask Partner Network) platform. Ask in turn provides web search using partners such as Google. Thre are 5 additional code signing certificates issued to this publisher.
Remove Ask.com Malware - Powered by Reason Core Security
Authority:
VeriSign, Inc.

Valid from:
1/23/2014 1:00:00 AM

Valid to:
6/19/2014 1:59:59 AM

Subject:
CN=Ask.com, OU=Distribution, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Ask.com, L=Oakland, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0e92120309e5e292cd4ffe132c48d3d8

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Startup.Ask.H, PUP.Ask.Installer, PUP.BHO.Ask.R, PUP.Installer.Ask.F, PUP.Ask.U, PUP.Installer.Ask.J, PUP.Ask.Q, PUP.Toolbar.Ask.Y, PUP.Ask.J, PUP.Ask.N, PUP.Installer.Ask.C, PUP.Installer.Ask.S, PUP.Installer.Ask.K, PUP.Installer.Ask.U, PUP.Installer.Ask.R, PUP.Installer.Ask.M, PUP.Ask.Installer (M), PUP.Ask.APN (M)
100.00%

ESET NOD32
Win32/Bundled.Toolbar.Ask (variant), Win32/Bundled.Toolbar.Ask.G potentially unsafe (variant)
42.00%

Baidu Antivirus
Adware.Win32.Agent, Hacktool.Win32.Bundled.bToolbar, PUA.Win32.AskToolbar, Hacktool.Win32.Bundled.BToolbar
40.00%

Trend Micro House Call
Suspicious_GEN.F47V0828, TROJ_GEN.F47V0824, TROJ_GEN.F47V0516, Suspicious_GEN.F47V0614
24.00%

Dr.Web
Adware.Toolbar.282, Adware.Toolbar.261
18.00%

Boost by Reason
Optional.Startup.Ask.H, Optional.Task.Ask.K, Optional.BHO.Ask.R, Optional.Ask.F
16.00%

McAfee
Artemis!A6AD6A4F76EC
14.00%

McAfee Web Gateway
Artemis
14.00%

Antiy Labs AVL
Trojan/Win32.Autoit
6.00%

XVirus List
Win.Detected
6.00%

3 / 68      (PUP)
ocdll.dll (Offercast - APN Install Manager by Ask.com)  (7fdc0ce39c266feec31603d7014fde61)

1 / 68      (PUP)

1 / 68      (PUP)
AviraBrowserSecurity.exe (AviraBrowserSecurity by APN)  (91bfaba2630263812e96280160656bc7)

1 / 68      (PUP)
taskscheduler.exe  (912b7193f13579968a48b623fc893b80)

3 / 68      (PUP)
ocdll.dll (Offercast - APN Install Manager by Ask.com)  (20284a668fc2f0dfe4b5a2ae90c83fe2)

6 / 68      (PUP)
asktoolbarinstaller-1.15.31.0.exe (Ask Toolbar by Ask)  (097753270f77913ed7bc5318f8280155)

3 / 68      (PUP)
ocdll.dll (Offercast - APN Install Manager by Ask.com)  (07078c373c7a2c72cf8905b44567f955)

3 / 68      (PUP)
ocdll.dll (Offercast - APN Install Manager by Ask.com)  (10ada1f8e52da6a519006588fa897a5d)

1 / 68      (PUP)

4 / 68      (PUP)

2 / 68      (PUP)
ocdll.dll (Offercast - APN Install Manager by Ask.com)  (6e7487c60650b199eaf2d337f62189c9)

1 / 68      (PUP)
new9d19.tmp.exe (Ask Toolbar by Ask.com)  (a0254d0f754e023ae6598fe7ed49493a)

2 / 68      (PUP)
ocdll.dll (Offercast - APN Install Manager by Ask.com)  (2619cfe770169cc1048679ac35acc976)

7 / 68      (PUP)

7 / 68      (PUP)

3 / 68      (PUP)

4 / 68      (PUP)
ochelper.dll  (78bf9f5118c0b68042282326504196c0)

7 / 68      (PUP)
ochelper.exe  (795b3078a7eac416ba8254cae2428586)

7 / 68      (PUP)

7 / 68      (PUP)

2 / 68      (PUP)
ochelper.dll  (61fe22481b99fb5369df5d54b4edd7de)

9 / 68      (PUP)
ochelper.exe  (23793dae115bbcaf9407b2b030275f3d)

1 / 68      (PUP)
new37b3.tmp.exe (Ask Toolbar by Ask.com)  (5010630db1e09a8f6fcd57bcff88598a)

7 / 68      (PUP)

1 / 68      (PUP)
ocdll.dll (Offercast - APN Install Manager by Ask.com)  (c61da866693297ca8d8e2b42b7b4f32a)

7 / 68      (PUP)

1 / 68      (PUP)
taskscheduler.exe  (689fb0b8d32690f6e88a53f684167acd)

2 / 68      (PUP)

2 / 68      (PUP)

 
Latest 30 of 50 files

Downloads URLs for files signed by Ask.com.

2 / 68      (PUP)

9 / 68      (PUP)

7 / 68      (PUP)

7 / 68      (PUP)

The following websites host and distribute files published by Ask.com.

The certificates below are also signed by Ask.com.

071C9C2CC792BCB19C804C3655D4DE1F  (Jun 02, 2014 to Aug 01, 2016)

10B9E2525844B965BFD1932E5265E605  (Sep 07, 2015 to Jul 31, 2016)

0965F2AC7236C7E1BDCA44ED139B273A  (Jun 19, 2011 to Jun 18, 2014)

286F8A30E2EAC6965B936F826A05305D  (Jun 17, 2008 to Jun 18, 2011)

00A14100010020D9D7891D7DD5115F  (Jul 13, 2006 to Jul 13, 2008)

The following publishers (by Authenticode signature organization name) are related.

Remove Ask.com Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Ask.com by VeriSign, Inc. on January 23, 2014 with the serial number '0e92120309e5e292cd4ffe132c48d3d8'.