Cherished Technology Limited

Publisher Information

Cherished Technology Limited is a software publisher located in Hong Kong*. The company is a primary distributor of unwanted software. Thre are 6 additional code signing certificates issued to this publisher.
Remove Cherished Technology Limited Malware - Powered by Reason Core Security
Authority:
GlobalSign nv-sa

Valid from:
10/30/2013 9:56:37 AM

Valid to:
10/31/2014 9:56:37 AM

Subject:
CN=Cherished Technology Limited, O=Cherished Technology Limited, L=HongKong, S=HongKong, C=HK

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11210ca3d3c040f38e7317c765abb45e0bcb

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Service.CherishedTechnologyLimited.P, PUP.Service.CherishedTechnologyLimited.H, PUP.CherishedTechnologyLimited.Q, PUP.CherishedTechnologyLimited.T, PUP.CherishedTechnologyLimited.G, PUP.CherishedTechnologyLimited.P, PUP.Cherished.WPM, PUP.CherishedTechnology (M)
100.00%

AVG
Win32/DH{AB41DCcofl0gIiU}, Cherished, Win32/Zbot.G, Generic_r
56.00%

Dr.Web
Adware.Searcher.2630, Adware.Searcher.2635, Trojan.StartPage.63930
56.00%

avast!
Win32:Dropper-NYA [Drp], Win32:RmnDrp, Win32:Agent-ATRV [Trj]
48.00%

Malwarebytes
PUP.Optional.WpManager.A, PUP.Optional.Wsys.A, PUP.Optional.WPM.A
44.00%

Trend Micro House Call
TROJ_GEN.F47V0108, TROJ_GEN.F47V0227, TROJ_GEN.F47V0606
44.00%

Avira AntiVirus
ADWARE/Adware.Gen2, W32/Ramnit.C, Adware/Cherished.oia
44.00%

McAfee
Artemis!4076068E1653, W32/Ramnit.a, Artemis!DA430EAD3112, Artemis!61ABB5E2FA7D, Artemis!C42262E49EE6, Artemis!2DC71482E2C5
44.00%

McAfee Web Gateway
Artemis!4076068E1653, Heuristic.LooksLike.Win32.SuspiciousPE.J, Artemis!DA430EAD3112, BehavesLike.Win32.BadFile.tc, Artemis!2DC71482E2C5
44.00%

Qihoo 360 Security
Malware.QVM10.Gen, Virus.Win32.Ramnit.A, Win32/Trojan.205, Win32/Virus.Adware.202, HEUR/Malware.QVM10.Gen
44.00%

24 / 68    (Adware)

1 / 68      (Adware)
update.exe  (e2777970f7023b7723269157f9b1da62)

6 / 68      (Adware)
eupdate_new.exe  (2dc71482e2c5000d7f2780a08b440032)

9 / 68      (Adware)
update.exe  (c42262e49ee62752e053f18c25cefb92)

11 / 68    (Adware)
update.exe  (61abb5e2fa7d2d0f0c107511d398d565)

6 / 68      (Adware)

1 / 68      (Adware)
update.exe  (7c5afbaadf99b7238b43fac9d88b9d52)

9 / 68      (Adware)
update.exe  (4076068e1653754b6719c053924b5a06)

49 / 68    (Adware)

7 / 68      (Adware)
update.exe  (336e9a16396f117ae59cd01bfcc092ef)

49 / 68    (Adware)

10 / 68    (Adware)
update.exe  (08ce4fe965705c55ab3a177e59fb3e51)

6 / 68      (Adware)

49 / 68    (Adware)

6 / 68      (Adware)

1 / 68      (Adware)
update.exe  (e554c393b4ce44046c555e0262876142)

10 / 68    (Adware)
eupdate_17.8.0.3438.exe  (4f0d6c852c56e514980036af75da3fe2)

2 / 68      (Adware)

2 / 68      (Adware)

14 / 68    (Adware)
update.exe  (6a7650629d7e885c158ff3308ce1d2bc)

2 / 68      (Adware)
eupdate_17.8.0.3297_nt.exe  (9b112764f10edde44a5e3394d5861b21)

1 / 68      (Adware)
eupdate_17.8.0.3297.exe  (813fb5a836187c4deb0b2aac5054afe5)

4 / 68      (Adware)

14 / 68    (Adware)
egdpsvc.exe (Wsys Control by Wsys Co.)  (74070e9bb0e2d96259631787d63121f3)

2 / 68      (Adware)

The certificates below are also signed by Cherished Technology Limited.

1121672837E6450CEC951EE141C34F9F8DC2  (Feb 28, 2015 to Oct 21, 2015)

1121273D65852CB14B6458650549E3C3366D  (Apr 20, 2015 to Oct 21, 2015)

11212D8C9161F35DB500061D57414A78FAD2  (Aug 29, 2015 to Oct 21, 2015)

1121D3BA74E2984DC31DF6A81895380D6990  (Sep 29, 2015 to Oct 21, 2015)

112111C895265DC370EA5D6D50E46DE29C46  (Oct 20, 2014 to Oct 21, 2015)

1121DEEBE987EB606DF47A7FAB18750B2710  (Sep 08, 2015 to Oct 20, 2015)

The following publishers (by Authenticode signature organization name) are related.

Remove Cherished Technology Limited Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Cherished Technology Limited by GlobalSign nv-sa on October 30, 2013 with the serial number '11210ca3d3c040f38e7317c765abb45e0bcb'.