Bandoo Media, Inc

Publisher Information

Bandoo Media, Inc is a software developer located in Panama City, Panama*. Software developed by Bandoo Media, Inc has been typically classified as potentially unwanted software. Thre are 3 additional code signing certificates issued to this publisher.
Remove Bandoo Media, Inc Malware - Powered by Reason Core Security
Authority:
Thawte, Inc.

Valid from:
9/19/2012 8:00:00 AM

Valid to:
11/3/2014 7:59:59 AM

Subject:
CN="Bandoo Media, Inc", O="Bandoo Media, Inc", L=Panama City, S=Panama, C=PA

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
7a5189d163723107defa157662a4bae4

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
Win32.Generic, PUP.Optional.Bandoo.Installer, PUP.APN.Bandoo.Installer (M), PUP.BandooToolbar.BandooMedia (M), PUP.APN.Bandoo (M)
100.00%

IKARUS anti.virus
PUA.Bandoo, PUA.Toolbar.SearchSuite, AdWare.Visicom, Email-Worm.Win32.Runouce, not-a-virus:Downloader.Win32.Agent
68.00%

G Data
Win32.Application.Searchsuite, Trojan.Generic.12432503, Win32.Adware.Bandoo, Win32.Virtob.Gen.12, Win64.Application.Searchsuite
66.00%

Trend Micro House Call
TROJ_GEN.F47V1117, TROJ_GEN.R03EC0OLG14, Suspicious_GEN.F47V047, TROJ_GEN.F47V1207, TROJ_GEN.F47V1116, TROJ_GEN.F47V0813
66.00%

Malwarebytes
PUP.Optional.Bandoo.A, PUP.Optional.MoviesToolBar.A, PUP.Optional.Ilivid
64.00%

Baidu Antivirus
PUA.Win32.SearchSuite, Adware.Win32.SearchSuite, PUA.Win32.AskToolbar, Adware.Win64.SearchSuite
64.00%

McAfee
SearchSuite, Program.SearchSuite, Artemis!D18A393F4DAC, W32/Chir.gen!remnants, Artemis!00EFA55A6717, Artemis!F586A2AD85B0
62.00%

McAfee Web Gateway
SearchSuite, BehavesLike.Win32.Rootkit.th, Artemis!D18A393F4DAC, Heuristic.LooksLike.Win32.SuspiciousPE.J, Artemis!00EFA55A6717
62.00%

Kingsoft AntiVirus
Win32.Troj.DownAgent.aw.(kcloud), VIRUS_UNKNOWN, Win32.Troj.Generic.a.(kcloud)
62.00%

K7 AntiVirus
Unwanted-Program , Virus , Trojan
60.00%

6 / 68      (Adware)
setupdatamngr_lphant.exe (Lphant by Bandoo Media)  (3d278ee14ffef9e1aa53c4445c6cb6ae)

24 / 68    (PUP)
uninstall.exe (iLivid by Bandoo Media Inc)  (f309e04447ceeabf6994323ca320cfdb)

24 / 68    (PUP)
uninstall.exe (iLivid by Bandoo Media Inc)  (1ca06205546f8de4d513ac1c76812392)

24 / 68    (PUP)
uninstall.exe (iLivid by Bandoo Media Inc)  (0d33a55b2dbb4884ac13c024a0380247)

32 / 68    (PUP)
setupdatamngr_ilivid.exe (iLivid by Bandoo Media)  (5f362cd9f3072090ce5d64f89d04b7fa)

1 / 68      (Adware)
tmp0000006c3dac58056513742d  (254bbeab9b4a0183e5e85d72afc28a0f)

1 / 68      (Adware)
helper.dll  (965baf7b6e5a18d3bb5d104f94320ae6)

1 / 68      (Adware)
del_dm_ll_nscb21.dll  (49e3d1d6ce11c5cd83e9081e7930dae2)

1 / 68      (Adware)
del_mg_nsje996.dll  (f454ee2d1611a1ef5e30d412a2df5f28)

31 / 68    (PUP)
pack.exe (7-Zip by Igor Pavlov)  (e1b60d7e721151c1651b1df266db2d21)

22 / 68    (PUP)
mediabar.exe (7-Zip by Igor Pavlov)  (1ce02b04d31b567a5fb47e702d5225be)

17 / 68    (PUP)
ffextension.exe (7-Zip by Igor Pavlov)  (8a94d54629bf86684c39ec3f77f47331)

1 / 68      (PUP)
helper.dll  (1f9544f6e1277c1281fbf396ec66127f)

17 / 68    (PUP)
ffextension.exe (7-Zip by Igor Pavlov)  (c13d0514e7a303822b9fdf2e91e53351)

31 / 68    (PUP)
pack.exe (7-Zip by Igor Pavlov)  (1b4e1fcb8eb42c1de78c29b081952440)

1 / 68      (Adware)
del_dm_exe_nsy71df.exe (Data Manager by Bandoo Media)  (f4938525565b6afd0f547934f20754e4)

1 / 68      (PUP)
del_dm_exe_7.dll  (4877e5eccda6345b7079750b96e0b61d)

5 / 68      (PUP)
iLivid.exe (iLivid Download Manager by Bandoo Media)  (0dfdd88c8da5fae3664d0b63469621cf)

1 / 68      (PUP)
datamngr.dll  (cd90cafc56314f98aac590d91f9e8a1e)

21 / 68    (Adware)
IEBHO.dll (IEHelper Module by Bandoo Media)  (76d7076d18399c8cfee4e6ac0348b362)

21 / 68    (Adware)
Datamngr.dll (Data Manager by Bandoo Media)  (259e93d37ca3ed0612781c671d29d3c2)

1 / 68      (PUP)
vlcpack.exe (7-Zip by Igor Pavlov)  (3a32be919c68391e27d85ede27699aa1)

1 / 68      (Adware)
datamngr.dll  (4a579dcf5f20914644335b3238605680)

1 / 68      (Adware)
mgrldr.dll  (b6a0f0e523816e1db59df8994a53c483)

1 / 68      (Adware)
internet explorer settings.exe  (4ff572edfc1890dbcd3dfb371ece3d35)

21 / 68    (Adware)
IEBHO.dll (IEHelper Module by Bandoo Media)  (8957c30a7b79cf5a8f8fff148e7fd246)

21 / 68    (Adware)
Datamngr.dll (Data Manager by Bandoo Media)  (f9a7a80a20a97499c5357816d85d29f2)

1 / 68      (Adware)
internet explorer settings.exe  (283056645395cdaab246a877125def3b)

1 / 68      (Adware)
del_dm_dll_nsjb985.dll (Data Manager by Bandoo Media)  (58659662752180fef18c572394fbd270)

32 / 68    (Adware)
setupdatamngr_ilivid.exe (iLivid by Bandoo Media)  (68a269035fee1443e191b08f1c0435eb)

 
Latest 30 of 2,681 files

The certificates below are also signed by Bandoo Media, Inc.

3EC6C9E514B11456E597E96AB367E572  (Aug 05, 2014 to Nov 02, 2016)

74B45E4BF603EDCA78C252159948CF7A  (Feb 09, 2014 to Nov 02, 2014)

7AD02DB75E76EA8D8CF4A4D1C2591229  (Nov 02, 2010 to Nov 02, 2012)

The following publishers (by Authenticode signature organization name) are related.

Remove Bandoo Media, Inc Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Bandoo Media, Inc by Thawte, Inc. on September 19, 2012 with the serial number '7a5189d163723107defa157662a4bae4'.