Bit Cocktail Ltd.

Publisher Information

Bit Cocktail Ltd. is a software developer located in Herzeliya, Israel*. The publisher primarily developes software that can be classified as adware. There is one additional code signing certificate issued to this publisher.
Remove Bit Cocktail Ltd. Malware - Powered by Reason Core Security
Authority:
Thawte, Inc.

Valid from:
11/12/2012 1:00:00 AM

Valid to:
1/17/2014 12:59:59 AM

Subject:
CN=Bit Cocktail Ltd., O=Bit Cocktail Ltd., L=Herzeliya, S=Herzeliya, C=IL

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
2ff74ed2afebafd72e0750e98dc63c1c

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Service.BitCocktail, PUP.BHO.BitCocktail, PUP.BitCocktail, PUP.BitCocktail.Installer (M), PUP.BitCocktail (M), PUP.BitCocktail.IncrediBar.Installer (M), PUP.BitCocktail.Bitcoktail.Installer (M), PUP.BitCocktail.Bitcoktail (M), PUP.BitCocktail.Smilebox.Installer (M)
100.00%

ESET NOD32
Win32/Toolbar.BitCocktail (variant), Win64/Toolbar.Perion (variant), Win64/Toolbar.Perion.A potentially unwanted (variant)
28.00%

Sophos
PUA 'BitCocktail'
26.00%

AVG
BitCocktail, MalSign.BitCocktail
26.00%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud), VIRUS_UNKNOWN
14.00%

Trend Micro House Call
TROJ_GEN.F47V0724, TROJ_GEN.F47V0722, Suspicious_GEN.F47V0819, Suspicious_GEN.F47V1012
10.00%

McAfee
Artemis!0D8820DB7236, Artemis!50ECE324CC12, Artemis!84ED82A9D51C, Artemis!6AAA8702DADC, Artemis!9BD46E4E5AD0
10.00%

McAfee Web Gateway
Artemis!Trojan
10.00%

Antiy Labs AVL
Trojan/Win32.Agent, Trojan/Win32.TSGeneric
8.00%

Baidu Antivirus
PUA.Win64.Perion, Adware.Win32.Perion
6.00%

1 / 68      (PUP)
installerhelper.dll  (8bf1d81f6411b616aea5717e7aca2189)

1 / 68      (PUP)
extensionupdaterservice.exe  (0c3e6cd5fab4e3758924e08b626e1650)

1 / 68      (PUP)
extension32.dll  (e53e456ff3024c5443fe21bd3f88f009)

1 / 68      (PUP)
sboxbing_717_active.exe (Updater By Smilebox by Smilebox)  (1050415be5c7b7aaad45b6e9f80c4b71)

1 / 68      (PUP)
coolpic_mg_30904853.exe (by Bitcoktail)  (33ea0805004e030bfcf4895de879fe82)

1 / 68      (PUP)
extensionupdaterservice.exe  (2d12abc534e990eef51b3d80bba47c23)

1 / 68      (PUP)
extensionupdaterservice.exe  (a9b859fe831d0f394e89c608f7b6bbb9)

1 / 68      (PUP)
installerhelper.dll  (746b9287cf39c8cfb629f4e0a3c9990b)

1 / 68      (PUP)
extensionupdaterservice.exe  (9db9cf2cd27e135f23c9fbf47804ce21)

1 / 68      (PUP)
extensionupdaterservice.exe  (8da918389261a700a1f06c10bbd2db8c)

1 / 68      (PUP)
coolpic_mg_166719.exe (by Bitcoktail)  (d2d448891eebdf1079c7a337ffd47c8a)

1 / 68      (PUP)
installerhelper.dll  (90238aea1aba7fe7b73e9e6f29a233c2)

1 / 68      (PUP)
extension64.dll  (7ec59d1357e5716f23df505195b6ad6f)

1 / 68      (PUP)
extension32.dll  (9cebb97e0baa62f0d1ecdea3784d52a9)

1 / 68      (PUP)
installerhelper.dll  (f579c279d4edd2270c2405acc399076b)

1 / 68      (PUP)
extension64.dll  (440ffd1d74e07bf880696c9895e75717)

1 / 68      (PUP)
extension32.dll  (0a6f5467b99a4724d1914694aafb9b80)

1 / 68      (PUP)
extensionupdaterservice.exe  (0d6a89eb40daa1c6429d4a054d5bde8c)

1 / 68      (PUP)
installerhelper.dll  (0e5373cac6147dc1aeba66e1d4f77398)

1 / 68      (PUP)
installerhelper.dll  (d5c0c41033842e34904e68e46756861d)

1 / 68      (PUP)
extension64.dll  (744a0980ff73064a597fee1750fe56bd)

1 / 68      (PUP)
extension32.dll  (796774d917e1f998a421690f683e41b7)

1 / 68      (PUP)
coolpic_mg_29085135.exe (by Bitcoktail)  (a655a342acd2a1aa0fcf4d33ca0dafb2)

1 / 68      (PUP)
coolpic_mg_30726232.exe (by Bitcoktail)  (55da442c856210c20927be2139c9cd3a)

8 / 68      (PUP)

1 / 68      (PUP)
installerhelper.dll  (f4895020d7fe3777861c2ed78fb7a3cc)

1 / 68      (PUP)
extensionupdaterservice.exe  (ab7a4d377a7d20bbfbe1c0fa34d13f44)

8 / 68      (PUP)
extension32.dll  (1a2fe2477e3ffd84590c107a729262cf)

9 / 68      (PUP)
installerhelper.dll  (6aaa8702dadc035369578d0f6b4b9d00)

2 / 68      (PUP)
extension64.dll  (38e2f4e05a0e47c690765812292803ff)

 
Latest 30 of 233 files

Downloads URLs for files signed by Bit Cocktail Ltd..

The following certificate is also signed by Bit Cocktail Ltd..

613E461899A05578474D1423CF9CC340  (Jan 16, 2012 to Jan 16, 2013)

Remove Bit Cocktail Ltd. Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Bit Cocktail Ltd. by Thawte, Inc. on November 12, 2012 with the serial number '2ff74ed2afebafd72e0750e98dc63c1c'.