Catalina Group Limited

Publisher Information

Catalina Group Limited is a software publisher located in Kwun Tong, Hong Kong*. The publisher primarily developes software that can be classified as adware. Thre are 2 additional code signing certificates issued to this publisher.
Remove Catalina Group Limited Malware - Powered by Reason Core Security
Authority:
GoDaddy.com, Inc.

Valid from:
9/27/2012 8:56:54 AM

Valid to:
9/27/2013 8:56:54 AM

Subject:
CN=Catalina Group Limited, O=Catalina Group Limited, L=Kwun Tong, S=Hong Kong, C=HK

Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
27b940a1704dc9

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Catalina.CatalinaGroup (M), PUP.Catalina.CatalinaGroup.Installer (M)
100.00%

Dr.Web
Trojan.StartPage.54626, Trojan.StartPage.54627, Trojan.DownLoad3.27814, Adware.Downware.2449, Trojan.StartPage.54038, Adware.Downware.11298
52.00%

McAfee Web Gateway
BehavesLike.Win32.Downloader.tc, Artemis!B7243B60CAF1, PUP-FEP
46.00%

ESET NOD32
Win32/4Shared.F potentially unwanted application, Win32/4Shared.T potentially unwanted application, Win32/Maxiget.B potentially unwanted application
46.00%

Rising Antivirus
PE:PUF.4Shared!1.9C25
44.00%

McAfee
PUP-FEP, Artemis!B7243B60CAF1, Program.PUP-FEP
40.00%

K7 AntiVirus
Unwanted-Program , Backdoor
40.00%

Bkav FE
W32.HfsAdware
38.00%

F-Prot
W32/A-6134c05d, W32/A-8792d0d4, W32/S-526cfc88, W32/4Shared.G.gen, W32/A-6475d074
36.00%

VIPRE Antivirus
Threat.4150696
34.00%

5 / 68      (PUP)
citriosetup.exe (CatalinaGroup Update by Catalina Group)  (d8111500cc953c7ebe278edce7d93bf7)

5 / 68      (PUP)
citriosetup.exe (CatalinaGroup Update by Catalina Group)  (6578cc654ed2cba38ebbd377c1f70779)

8 / 68      (PUP)
b1freearchiver_1.1.0.exe (B1 Free Archiver Installer)  (b923e198ec3eb6372fc02c9c9a8bfb86)

21 / 68    (PUP)
saveas.th.exe (Downloader Helper 2.0)  (58998d29c4ea0e0c61ca5f07149b0b26)

1 / 68      (PUP)
saveas.id.exe (Downloader Helper 2.0)  (195a3b143a40097414a3586d6201e2d6)

1 / 68      (PUP)
saveas.id.exe (Downloader Helper 2.0)  (70ab0ac172a13a4f851026fea21d747e)

1 / 68      (PUP)
saveas.id.exe (Downloader Helper 2.0)  (2afe204098db29bb56115be23bd1cf6e)

8 / 68      (PUP)
b1freearchiver_1.1.0.exe (B1 Free Archiver Installer)  (7d29f6530b5f05abfac226c73e39c7e7)

1 / 68      (PUP)

1 / 68      (PUP)
saveas.id.exe (Downloader Helper 2.0)  (9dd022d60e855d9055fdd96a3e60d598)

24 / 68    (PUP)
saveas.eg.exe (Downloader Helper 2.0)  (65f671f59e3c46b039dad200c6ecd5aa)

29 / 68    (PUP)
saveas.brazil.exe (Downloader Helper 2.0)  (5b66626cc907fbd1b91c5cc4a6b866ee)

1 / 68      (PUP)
saveas.th.exe  (1d1ebdea7285b5af03c37405898d0241)

1 / 68      (PUP)
saveas.id.exe (Downloader Helper 2.0)  (391df9707ba0256faee400e329f12715)

1 / 68      (PUP)
the-wolverine-2013-cam-xvid-tangina-t7669917.exe  (6e6def6b59cbb49f3ad70eb0f6860a12)

28 / 68    (PUP)
saveas.th.exe (Download)  (89c209638cbd729185cc8753dd8caa25)

1 / 68      (PUP)
maxiget.exe  (6fa139ccb283583eac49763ba7f067df)

29 / 68    (PUP)
saveas.brazil.exe (Downloader Helper 2.0)  (9e8aab5bb29a069446a3243290c5cea3)

29 / 68    (PUP)
saveas.brazil.exe (Downloader Helper 2.0)  (c41b9f0cf46fa43badc54c38fe9e2309)

29 / 68    (PUP)
saveas.brazil.exe (Downloader Helper 2.0)  (b7ddbbc2af901a3f2eb6d1f41d6e10cc)

15 / 68    (PUP)
installer.exe (B1 Free Archiver Installer)  (291e44175cbf8c6886358c3fd8fc3ffa)

8 / 68      (PUP)
b1freearchiver_1.1.0.exe (B1 Free Archiver Installer)  (965d921e1dd193653d350a316af2d043)

24 / 68    (PUP)
saveas.eg.exe (Downloader Helper 2.0)  (4e3eff8a8a8bf213dde9bef32439b42f)

1 / 68      (PUP)

29 / 68    (PUP)
saveas.brazil.exe (Downloader Helper 2.0)  (d1e2118f41f39b556a0055cb5dbaad3b)

21 / 68    (PUP)
saveas.th.exe (Downloader Helper 2.0)  (07d5fbf174bc37f7d725094bd4d3cf48)

52 / 68    (PUP)
saveas.brazil.exe (Downloader Helper 2.0)  (77f1477467a9d48adcf422d3370dcb18)

15 / 68    (PUP)
installer.exe (B1 Free Archiver Installer)  (305386afe1750fc07a1162c1f39f013f)

21 / 68    (PUP)
saveas.th.exe (Downloader Helper 2.0)  (b5168ca1781a136fb04fbfb8e1e91747)

1 / 68      (PUP)
saveas.id.exe (Download)  (03bf3fe9eca0b1f08b992e42acad2d53)

 
Latest 30 of 604 files

Downloads URLs for files signed by Catalina Group Limited.

1 / 68      (PUP)
http://maxiget.com/smart-download/.../MaxiGet.exe  (6fa139ccb283583eac49763ba7f067df)

8 / 68      (PUP)

The certificates below are also signed by Catalina Group Limited.

4B8F32520620F6  (Aug 16, 2013 to Sep 27, 2016)

1855136D47C1A483  (Jan 12, 2015 to Sep 26, 2016)

The following publishers (by Authenticode signature organization name) are related.

Remove Catalina Group Limited Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Catalina Group Limited by GoDaddy.com, Inc. on September 27, 2012 with the serial number '27b940a1704dc9'.