Coffee and Comfort Apps, LLC

Publisher Information

Coffee and Comfort Apps, LLC is a software publisher located in Grandville, Michigan in the United States*. The company is a primary distributor of unwanted software. Coffee and Comfort Apps is an adware distributor of ad-supported bundled software including Spy Guard, Secure Web and InfoSeeker run by Injekt LLC (and others) located at 640 Grand Ave Carlsbad, CA 92008. The company is/patners with various other adware publishers under the same team including Parallel Lines Development, Western Web Applications, Big Water, Mesa Roha Solutions, and Creative Island Media. The primary application that publisher distributes is web browser extesnsions that are bundled by 3rd-part download managers. There is one additional code signing certificate issued to this publisher.
Authority:
VeriSign, Inc.

Valid from:
3/23/2014 1:00:00 AM

Valid to:
6/23/2015 1:59:59 AM

Subject:
CN="Coffee and Comfort Apps, LLC", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Coffee and Comfort Apps, LLC", L=Grandville, S=Michigan, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5e98b9455bce81019ffcaf7fb2161d8b

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.CoffeeandComfortApps.L, PUP.CoffeeandComfortApps.Z, PUP.Installer.CoffeeandComfortApps.R, PUP.CoffeeandComfortApps.G, PUP.CoffeeandComfortApps.J, PUP.CoffeeandComfortApps.K, PUP.CoffeeandComfortApps.H, PUP.CoffeeandComfortApps.I, PUP.Injekt.CoffeeandComfortApps (M), PUP.Injekt.CoffeeandComfortApps.Installer (M), PUP.Injekt.Coffeean.Installer (M), PUP.Injekt.Coffeean (M), PUP.Injekt (M)
100.00%

ESET NOD32
MSIL/Adware.PullUpdate (variant)
36.00%

Dr.Web
Adware.Plugin.181, Adware.Plugin.175
16.00%

IKARUS anti.virus
AdWare.Agent, AdWare.MSIL.Adware, PUA.Downloader, Trojan.MSIL3
14.00%

AVG
Downloader, CreativeIsland
12.00%

Fortinet FortiGate
Adware/PullUpdate
12.00%

Trend Micro House Call
TROJ_GEN.F47V0426, Suspicious_GEN.F47V0708, TROJ_GEN.F47V0523, TROJ_GEN.F47V0602
10.00%

VIPRE Antivirus
MSIL.Adware.PullUpdate, Threat.4784449
10.00%

Avira AntiVirus
TR/Kazy.380518.1, ADWARE/Adware.Gen, TR/Graftor.143453.37
10.00%

Malwarebytes
PUP.Optional.LightsOff.A, PUP.Optional.MovieMode.A
10.00%

1 / 68      (Adware)
setup_es_20140425.exe  (e6e87ba0bd7e999985db48d107cd4cbc)

1 / 68      (Adware)
setup.exe  (6154fce960e33e286118621cf54a9203)

1 / 68      (Adware)
uninstall.exe  (27218c7ab2d5e5beed3b0a8e727ad845)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
oprcclme.dll  (d4b9b187ed47ef6f30b836c9d184e914)

1 / 68      (Adware)
oelzcvktdah.dll  (9c67d35a66e20eddd182ea4deb5bca1c)

1 / 68      (Adware)
setup_br_20140425.exe  (5b0f12a9b66a1a43facdd981d2c758e2)

1 / 68      (Adware)
helper.dll  (2c901414dfa656ab8d3d6214d1cba16a)

1 / 68      (Adware)
lnzgwhikhv.dll  (52ca5151ef0099c10581cc9c1962e374)

1 / 68      (Adware)
ghxyivbn.dll  (3b0cfe1585c70528378c5ff10c3fb9fa)

1 / 68      (Adware)
uninstall.exe  (f1535953c1d96af199b64c882d8e3c70)

1 / 68      (Adware)
helper.dll  (5a9b8d4a52510857a64f5dab32d31dad)

1 / 68      (Adware)
setup_fr_20140425.exe  (c6cc82867b072c367b0faea0f8c90f1d)

1 / 68      (Adware)

1 / 68      (Adware)
uninstall.exe  (43075d8eae03ef0cc9881b33066352c4)

3 / 68      (Adware)
LightsOff.exe (Lights Off by Coffee and Comfort Apps)  (31628db539a3812d10d6b7a14151655e)

1 / 68      (Adware)
uninstall.exe  (2e44c9cbf3f788328917391e04b41590)

3 / 68      (Adware)
LightsOff.exe (Lights Off by Coffee and Comfort Apps)  (fd854ed9ad476314e490d1efb4650549)

1 / 68      (Adware)
lqbgmgf.exe (Lights Off by Coffee and Comfort Apps)  (d317470a7476274ac712206f82c056a6)

1 / 68      (Adware)
lkzbniptcf.exe (Lights Off by Coffee and Comfort Apps)  (67e10da7cb93fff06c56276c1d0dba75)

1 / 68      (Adware)
update.exe (Lights Off by Coffee and Comfort Apps)  (61291e5179167c026d6ffb24a7d37b1e)

1 / 68      (Adware)
iwdvdxga.dll  (d3d03727b5011e25c8014992e9037fa8)

1 / 68      (Adware)
dfxpxerp.exe (Lights Off by Coffee and Comfort Apps)  (f765896e96612489d306e4a91d4e2061)

1 / 68      (Adware)
lightsoff.cd920490367f.dll  (72d4a5a5d31430756007c99aed13d78d)

2 / 68      (Adware)
lightsoff.cd920490367f.dll  (a905b35945b26aa9497514e0186980f4)

3 / 68      (Adware)
LightsOff.exe (Lights Off by Coffee and Comfort Apps)  (128a4d48561e325e035865a1b6e80468)

2 / 68      (Adware)
lightsoff.cd920490367f.dll  (3af888abd9e71f7ccadf954a423792cc)

2 / 68      (Adware)
lightsoff.cd920490367f.dll  (b1d9c95a32d4aca1eaf40561fe6cc451)

3 / 68      (Adware)
ttmcaplt.dll  (8b83428144fc62f453eb3a08b8bb5f70)

 
Latest 30 of 57 files

The following certificate is also signed by Coffee and Comfort Apps, LLC.

3457DE0E78F5E3AFE35393625F451DC0  (May 14, 2013 to May 15, 2014)

* Note, the details and description above are based on the code signing digital signature issued to Coffee and Comfort Apps, LLC by VeriSign, Inc. on March 23, 2014 with the serial number '5e98b9455bce81019ffcaf7fb2161d8b'.