DeltaBahn LLC

Publisher Information

DeltaBahn LLC is a software developer located in Houston, Texas in the United States*. The publisher primarily developes software that can be classified as adware.
Remove DeltaBahn LLC Malware - Powered by Reason Core Security
Authority:
GlobalSign nv-sa

Valid from:
2/9/2012 12:34:10 AM

Valid to:
2/9/2015 12:34:10 AM

Subject:
E=success@deltabahn.com, CN=DeltaBahn LLC, O=DeltaBahn LLC, L=Houston, S=TX, C=US

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11210ceb863babeb04a1355c1c1b0eba950c

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.DeltaBahn.CC, PUP.DeltaBahn.E, PUP.DeltaBahn.S, PUP.DeltaBahn.J, PUP.DeltaBahn.X, PUP.DeltaBahn.I, PUP.DeltaBahn.G, PUP.DeltaBahn.?, PUP.DeltaBahn.K, PUP.DeltaBahn.D, PUP.DeltaBahn (M), PUP.DeltaBahn.Installer (M)
100.00%

Sophos
WebAlta Toolbar, PUA 'WebAlta Toolbar' (of type Adware)
48.28%

Dr.Web
Adware.Shopper.321, Adware.Plugin.165, Trojan.Packed.28628, Threat.Undefined
44.83%

Avira AntiVirus
Adware/Strictor.58276.41, ADWARE/Adware.Gen
44.83%

Emsisoft Anti-Malware
Gen:Variant.Adware.Strictor.58276, Gen:Trojan.Heur2.LP.xH4@auuEDvii, Gen:Variant.Graftor.134764
31.03%

VIPRE Antivirus
Threat.4150696, Trojan.Win32.Generic
24.14%

Norman
Gen:Variant.Adware.Strictor.58276
24.14%

F-Prot
W32/A-9fd749ff
24.14%

Antiy Labs AVL
Trojan/Win32.TSGeneric, RiskWare[Downloader:not-a-virus]/Win32.LMN
20.69%

Vba32 AntiVirus
Downware.iDatix.gen, suspected of Trojan.Downloader.gen.h, Downloader.LMN
20.69%

1 / 68      (PUP)
_14141513_34__.exe  (93577465e13f825de87c2da90224bef0)

1 / 68      (PUP)
everysale_discount.exe  (a8259c83b70769b614392050af99f049)

1 / 68      (PUP)
firefox_27.0_.exe  (97f61ed3ec23da2518e6fb4157b5752e)

1 / 68      (PUP)
office2010rus_16351918_206__.exe  (bab42cc247b358f5b1fe104d10464f5e)

1 / 68      (PUP)
need for speed underground.exe  (1443c680e44321969d23f25008e8b6d1)

28 / 68    (PUP)
directx11_windows7.exe  (941cd759598297e520fae18596837761)

19 / 68    (PUP)
archive.exe  (482a8cdca0e08989107183eea2066b9d)

4 / 68      (PUP)
lfs.exe  (b8ade35d47fab98bf7815abef8552f53)

2 / 68      (PUP)
lfs.exe  (7ae64b0e1825e769671fc11f6a8f4706)

5 / 68      (PUP)
bandicamcrack_.exe  (8159ab65034cbd4a30868073045fb030)

9 / 68      (PUP)
190x190.gif (Twilight Pretty Search by Twilight Tech Co.)  (47fe04a35c605b5d4734f0aa72724a88)

8 / 68      (PUP)
instl_tmp.exe  (9ed473b0f39c6ef3b5a1fd761b489983)

6 / 68      (PUP)
vkbreaker_.exe  (8ea765846b2c8ec26e389681235b9d20)

20 / 68    (PUP)
setup.exe  (9df7effec9b4a230b947d4a31c4fb50f)

3 / 68      (PUP)
light_alloy_4.6.7.726_[tfile.ru].torrent_.exe  (e8f3825398b24cbd3aa203fbc815ddc1)

4 / 68      (PUP)

4 / 68      (PUP)
d3dx9.dll_.exe  (17409c0f78073859c0b1c2a89dda0256)

4 / 68      (PUP)
gamurad_.exe  (6d68a907102090a68a7f8e605f6472c7)

3 / 68      (PUP)
instl_tmp.exe  (8c683532651bb5483204b539016ee226)

3 / 68      (PUP)
instl_tmp.exe  (d74d30a941787b39d0b5241279f662af)

2 / 68      (PUP)
sbornik-tankionline.rar_.exe  (89ad7b084dfc414bbe920c1084bef77d)

10 / 68    (PUP)
wrar510ru.exe  (fa1f3687dda7b4c9880b3acb23e4737c)

10 / 68    (PUP)
wrar510ru.exe  (b66cf77688927fdf3367604f1ebd2d24)

10 / 68    (PUP)
wrar510ru.exe  (0f10aae5c0160ebbdc9e5c573e75bf3a)

23 / 68    (PUP)
wrar510ru.exe  (96d1b826c0e9051f84f8cb17f1cde7b8)

2 / 68      (PUP)
everysale_discount.exe  (359bd2706546582aeca762a7338e86ee)

2 / 68      (PUP)
everysale_discount.exe  (c0fce2784fc1a51cf422d76d817ca933)

1 / 68      (PUP)
wbvk.exe  (6b81e757cbb9ac7179501a6583eeada1)

2 / 68      (PUP)
dubler__2012__14786267_291__.exe  (8df3cef46778e1a0d2a1517004206b10)

Downloads URLs for files signed by DeltaBahn LLC.

23 / 68    (PUP)

The following websites host and distribute files published by DeltaBahn LLC.

Remove DeltaBahn LLC Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to DeltaBahn LLC by GlobalSign nv-sa on February 09, 2012 with the serial number '11210ceb863babeb04a1355c1c1b0eba950c'.