Bandoo Media, Inc.

Publisher Information

Bandoo Media, Inc. is a software publisher located in Panama City, Panama*. Thre are 5 additional code signing certificates issued to this publisher.
Remove Bandoo Media, Inc. Malware - Powered by Reason Core Security
Authority:
Thawte, Inc.

Valid from:
12/17/2012 1:00:00 AM

Valid to:
2/24/2015 12:59:59 AM

Subject:
CN="Bandoo Media, Inc.", O="Bandoo Media, Inc.", L=Panama City, S=Panama, C=PA

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
38941d2084cccd17e2052ada11ec2ecd

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.BandooMedia.R, PUP.BHO.BandooMedia.R, PUP.BandooMedia.G, PUP.BandooMedia.F, PUP.BandooMedia.K, PUP.BandooMedia.M, PUP.BandooToolbar.BandooMedia.G, PUP.BandooToolbar.BandooMedia (M)
100.00%

Dr.Web
Adware.Searcher.2358, Adware.BGuard.14
88.89%

ESET NOD32
Win64/Toolbar.SearchSuite.A potentially unwanted application
33.33%

herdProtect (fuzzy)
a variant of b79d4928d42a3d8fd7b49464caccd067e879eb61, a variant of f42e5767e260904a338784280341714e8772fac3, a variant of 5b7c6ce016dfd05f6dd3c7ac0366db24b39e94e0
33.33%

Boost by Reason
Optional.BandooMedia.R, Optional.BHO.BandooMedia.R
22.22%

ESET NOD32
Win32/Toolbar.SearchSuite (variant)
22.22%

Trend Micro House Call
TROJ_GEN.F47V0413, Suspicious_GEN.F47V1104
22.22%

Baidu Antivirus
Trojan.Win32.Win64
22.22%

F-Prot
W64/SearchSuite.A.gen
22.22%

Fortinet FortiGate
Adware/SearchSuite
11.11%

1 / 68      (PUP)
datamngr.dll  (5742bc0283db0b4c2d636186628ee208)

8 / 68      (PUP)
datamngr.dll  (0cc9ed9f6b74425e86ea63bdac289e28)

2 / 68      (PUP)
dnsbho.dll  (94bd3c235c8627881a21df9cced33311)

4 / 68      (PUP)
del_iebho_16.dll  (bea4d336601a646ffd70d84a4f92f22b)

6 / 68      (PUP)
del_dm_dll_86.dll  (234783b846127ac595476a241d8dd86a)

4 / 68      (PUP)
iebho.dll  (d177bdafed8599fd8c7c0b157dafbb8e)

3 / 68      (PUP)
dnsbho.dll  (54fd584d9cf7278d84c4f9fa8c701730)

3 / 68      (PUP)
browserconnection.dll  (06c7c70cb943a9493577e957da065229)

3 / 68      (PUP)
BrowserConnection.dll  (c0449bad941b4fc49a7710d9c56be0c4)

The certificates below are also signed by Bandoo Media, Inc..

3DECB3F6069817010107782EABF518FB  (Nov 27, 2014 to Feb 24, 2016)

0AEA776A90BF58BA2DEB5770F39F9A26  (Sep 17, 2015 to Feb 24, 2016)

6339DB399F0BC52F3B85B4FA3D4AACF7  (Nov 25, 2014 to Feb 24, 2015)

0254DA8BDA7284120701E659BC8B7D92  (Feb 08, 2014 to Feb 23, 2015)

2C1E0DFD5207FCBA6225F6AE61587068  (Feb 23, 2011 to Feb 23, 2013)

The following publishers (by Authenticode signature organization name) are related.

Remove Bandoo Media, Inc. Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Bandoo Media, Inc. by Thawte, Inc. on December 17, 2012 with the serial number '38941d2084cccd17e2052ada11ec2ecd'.