Clovermedia SLU

Publisher Information

Clovermedia SLU is a software developer located in Adeje, Santa Cruz De Tenerife in Spain*. The company is a primary distributor of unwanted software. There is one additional code signing certificate issued to this publisher.
Remove Clovermedia SLU Malware - Powered by Reason Core Security
Authority:
VeriSign, Inc.

Valid from:
2/14/2014 1:00:00 AM

Valid to:
2/15/2015 12:59:59 AM

Subject:
CN=Clovermedia SLU, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Clovermedia SLU, L=Adeje, S=Santa Cruz de tenerife, C=ES

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0524a867f334951775cd16fbb2ed7e9b

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.ClovermediaSLU.F, PUP.ClovermediaSLU.G, PUP.Tuguu.ClovermediaU.Bundler (M)
100.00%

Malwarebytes
PUP.Optional.DomaIQ, PUP.Optional.DomalQ
40.00%

Kaspersky
not-a-virus:AdWare.MSIL.DomaIQ
40.00%

Comodo Security
Application.Win32.DomaIQ.PUP, UnclassifiedMalware
40.00%

Avira AntiVirus
APPL/DomaIQ.Gen
40.00%

McAfee Web Gateway
Heuristic.BehavesLike.Win32.Suspicious.H, PUP-FJS!62A59F458D93
40.00%

AVG
DomaIQ, DomaIQ_r.I, DomaIQ.X, Adware DomaIQ_r.I
40.00%

MicroWorld eScan
Gen:Variant.Adware.Graftor.139070, Adware.Generic.923740, Gen:Variant.Application.Bundler.DomaIQ.3, Gen:Variant.Adware.Symmi.41510, Gen:Variant.Adware.Kazy.374465
40.00%

Agnitum Outpost
PUA.DomaIQ, PUA.Lollipop
40.00%

Lavasoft Ad-Aware
Gen:Variant.Adware.Graftor.139070, Adware.Generic.923740, Gen:Variant.Application.Bundler.DomaIQ.3, Gen:Variant.Adware.Symmi.41510
40.00%

1 / 68      (Adware)
player.exe  (6fc919b50fe6747f3b3e59a6a20a772c)

1 / 68      (Adware)
player.exe  (5ababd805089cdcd95774ff994a3efb7)

1 / 68      (Adware)
player.exe  (3d578ac3a87abe055693a26773ae2a28)

1 / 68      (Adware)
player.exe  (9987e0fbd4cded3f8bf03dc9c2c46fba)

1 / 68      (Adware)
player.exe  (ce839e2ad67c78ca4eb29cd10ee2288b)

1 / 68      (Adware)
player.exe  (74e807e163f59b82cdbbdd3baef05a27)

1 / 68      (Adware)
setup.exe  (95601d7dc2e1e10c223d9e85cde251db)

1 / 68      (Adware)
virusshare_6a9f60494d442b663f31956b9b979dc0.exe  (6a9f60494d442b663f31956b9b979dc0)

30 / 68    (Adware)
virusshare_62a59f458d936778fb46f5e236b5c020  (62a59f458d936778fb46f5e236b5c020)

33 / 68    (Adware)
setup.exe  (cbdec9fbeeaf308cd13ed338c6b0a556)

26 / 68    (Adware)
player.exe  (641fd40ab50e3ddec3eabb5a1af45db7)

25 / 68    (Adware)
setup.exe  (2883362b25e9b14fda59a212d18e68b2)

22 / 68    (Adware)
setup.exe  (5eb503aba9dd176d678c4c10b6c00aa5)

25 / 68    (Adware)
setup.exe  (0df699f246398a06a7199c2a225c5ebf)

1 / 68      (Adware)
setup.exe  (c6eda8904c8e183d948d6da37cf136ca)

Downloads URLs for files signed by Clovermedia SLU.

26 / 68    (Adware)
http://www.lpcloudbox0120.com/.../Player.exe  (641fd40ab50e3ddec3eabb5a1af45db7)

25 / 68    (Adware)
http://www.winrar.com/.../Setup.exe  (2883362b25e9b14fda59a212d18e68b2)

The following websites host and distribute files published by Clovermedia SLU.

The following certificate is also signed by Clovermedia SLU.

009737188425E0819038CFB58398A6812A  (Feb 28, 2014 to Mar 01, 2015)

The following publishers (by Authenticode signature organization name) are related.

Remove Clovermedia SLU Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Clovermedia SLU by VeriSign, Inc. on February 14, 2014 with the serial number '0524a867f334951775cd16fbb2ed7e9b'.