Bundlore LTD

Publisher Information

Bundlore LTD is a software publisher located in Tel Aviv, Israel*. The company is a primary distributor of unwanted software. Thre are 2 additional code signing certificates issued to this publisher.
Remove Bundlore LTD Malware - Powered by Reason Core Security
Authority:
COMODO CA Limited

Valid from:
7/13/2011 8:00:00 PM

Valid to:
7/13/2012 7:59:59 PM

Subject:
CN=Bundlore LTD, O=Bundlore LTD, STREET=Beit Oved 9, L=Tel Aviv, S=Israel, PostalCode=67211, C=IL

Issuer:
CN=COMODO Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00c2edb982f61e28983414a8928629883d

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.BHO.Bundlore.K, PUP.Installer.Bundlore.Q, PUP.Toolbar.Bundlore.I, PUP.Installer.Bundlore.O, PUP.Bundlore.T, PUP.Bundlore.Q, PUP.Bundlore.P, PUP.Bundlore.httpwwwvgrabber.Bundler (M), PUP.Bundlore.Bundler (M), PUP.Bundlore.StartSearch.Bundler (M), PUP.Bundlore.HulkSearch.Installer (M), PUP.Bundlore.HulkSearch.Toolbar (M), PUP.Bundlore (M)
100.00%

ESET NOD32
Win32/Adware.Bundlore, Win32/TopMedia
50.00%

Dr.Web
Adware.Downware.354, Adware.Downware.336, Adware.Toolbar.240, Adware.Zugo.71, Adware.Downware.514, Adware.Zugo.106, Adware.Zugo.64
50.00%

VIPRE Antivirus
Bundlore
42.86%

AVG
MultiBundle.H, AdInstaller.Bundlor
39.29%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
35.71%

avast!
NSIS:Bundlore-B [Adw], NSIS:Adware-EH [PUP], NSIS:Adware-DR [Adw], NSIS:Adware-BV [PUP], NSIS:Bundlore-C [Adw]
35.71%

Malwarebytes
PUP.BundleInstaller.VG, PUP.Optional.SweetPacks.A
28.57%

McAfee
RDN/Generic PUP.x!bch, Artemis!25CA9FA35371, Artemis!5F981397B4A9, Artemis!B156F477E41E, GenericTRA-AR!7A1F2FE39DC2, RDN/Generic PUP.x!bgd, Artemis!076B90D6AE1B, Artemis!844D8F7330DB
28.57%

McAfee Web Gateway
RDN/Generic PUP.x!bch, Artemis!25CA9FA35371, Heuristic.BehavesLike.Win32.Suspicious-PKR.S, Artemis!B156F477E41E, GenericTRA-AR!7A1F2FE39DC2
28.57%

1 / 68      (Adware)
IEhelperActiveX.DLL (IEhelperActiveX Module)  (7627169e7005ceb809098272bd4ed859)

1 / 68      (Adware)
hulkbar.dll (HulkSearch Toolbar by HulkSearch)  (8cb6875b0a2bb1b8319517a08ea79137)

1 / 68      (Adware)
hkbarlcher.dll (HulkSearch ToolBar by HulkSearch)  (9c8b932e106c9991bf3c03efecfe7e57)

1 / 68      (Adware)
ad9f1352d01 (vGrabber by http://www.vgrabber.com)  (1aa5483f3f2457f7109c32b0d10f5c94)

1 / 68      (Adware)
startbar.dll (StartSearch Toolbar by StartSearch)  (146b1bb3f676fbb8bf9fa74fa6036aba)

1 / 68      (Adware)
ssbarlcher.dll (StartSearch ToolBar by StartSearch)  (1f9467ad79d5aa525f33e2a94da2b70a)

1 / 68      (Adware)
plugin_installer.exe  (d86b50b28082c8cf30e219f64af2cc85)

1 / 68      (Adware)

11 / 68    (Adware)
vgrabber_setup.exe (vGrabber by http://www.vgrabber.com)  (844d8f7330db4dc1b5e762a862447299)

14 / 68    (Adware)
setup.exe (vGrabber by http://www.vgrabber.com)  (3b6d33043f38f4bb07e9746576929183)

4 / 68      (Adware)
vlcplus.exe (VLC Player by vlcplayerdownload.com)  (3d6d6f99d7b286599be1dcfb57080ae9)

11 / 68    (Adware)
vgrabber_setup.exe (vGrabber by http://www.vgrabber.com)  (076b90d6ae1b8db701f35bdbca0956a6)

6 / 68      (Adware)

9 / 68      (Adware)

8 / 68      (Adware)
tb.exe  (ef42d2baed9b3d59ffce9acd859fff39)

13 / 68    (Adware)
setup.exe (Video Downloader by http://www.vgrabber.com)  (54ed6a4b6fcf75f1356be376902bf76a)

20 / 68    (Adware)

10 / 68    (Adware)
hulksearch.exe  (b156f477e41e60bb90b80301f5eaa159)

1 / 68      (Adware)
IEhelperActiveX.DLL (IEhelperActiveX Module)  (c69f4c77cb026b93bc72573fd8a4b1e3)

12 / 68    (Adware)
torrent_downloader.exe  (5f981397b4a99d645a78c278d62ea8eb)

3 / 68      (Adware)
vgrabber.exe  (bc0a811d81273c1f72bfc20adb8cc314)

11 / 68    (Adware)

2 / 68      (Adware)

20 / 68    (Adware)

14 / 68    (Adware)
vGrabber_setup.exe (vGrabber by http://www.vgrabber.com)  (339d73788d81a961710b27fc73b701a3)

1 / 68      (Adware)
startbar.dll (StartSearch Toolbar by StartSearch)  (526ea76c6bb69d367f62630b30c557e9)

10 / 68    (Adware)
video_downloader.exe (Video Codec)  (3859303fcabb0a8a7be59f3fc31ce6ce)

2 / 68      (Adware)
ssbarlcher.dll (StartSearch ToolBar by StartSearch)  (5364af70a2ea70e710482e6ecdadb7e1)

Downloads URLs for files signed by Bundlore LTD.

14 / 68    (Adware)
http://www.vgrabber.com/download/bin/.../setup.exe  (3b6d33043f38f4bb07e9746576929183)

13 / 68    (Adware)

20 / 68    (Adware)

20 / 68    (Adware)

2 / 68      (Adware)

11 / 68    (Adware)

2 / 68      (Adware)

14 / 68    (Adware)

10 / 68    (Adware)

10 / 68    (Adware)
http://d54.newplayshop.com/download/bin/.../setup.exe  (3859303fcabb0a8a7be59f3fc31ce6ce)

10 / 68    (Adware)
http://d32.vidrecordger.com/download/bin/.../setup.exe  (3859303fcabb0a8a7be59f3fc31ce6ce)

10 / 68    (Adware)
http://d22.cdnnetwork.info/download/bin/.../setup.exe  (3859303fcabb0a8a7be59f3fc31ce6ce)

Top-level domains owned by Bundlore LTD.

The following websites host and distribute files published by Bundlore LTD.

The certificates below are also signed by Bundlore LTD.

2B4EA37F3705B7372B8ACBBA6F2CB424  (Jul 07, 2014 to Jul 07, 2016)

0C7A8094C56AAFE39F3CA37C7F65AC84  (Jul 04, 2012 to Jul 05, 2014)

The following publishers (by Authenticode signature organization name) are related.

Remove Bundlore LTD Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Bundlore LTD by COMODO CA Limited on July 13, 2011 with the serial number '00c2edb982f61e28983414a8928629883d'.