Download Admin

Publisher Information

Download Admin is a software publisher located in San Francisco, California in the United States*. The company is a primary distributor of unwanted software. DownloadAdmin is an ad network and installer/bundler (downloadable product monetization tool) of potentially unwanted software and distributes adware from various publishers including PriceGong, IAC/Ask.com, ComScore, ALOT and many others. The company is run by Tightrope Interactive. Brands include Playfin, UberDownloads, DownloadAdmin and Search.us.com. It distributes its offers via freedownloads.us.com. Thre are 2 additional code signing certificates issued to this publisher.
Remove Download Admin Malware - Powered by Reason Core Security
Authority:
VeriSign, Inc.

Valid from:
6/21/2009 7:00:00 PM

Valid to:
5/30/2010 6:59:59 PM

Subject:
CN=Download Admin, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Download Admin, L=San Francisco, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0b3c4c63ab2e7d3d56ccc830179f66f0

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.DownloadAdmin.I, PUP.DownloadAdmin.EE, PUP.DownloadAdmin.J, PUP.DownloadAdmin.d, PUP.Installer.DownloadAdmin.M, PUP.Installer.DownloadAdmin.K, PUP.DownloadAdmin.FF, Threat.Tightrope.Bundler, PUP.Tightrope.DownloadAdmin.Bundler (M)
100.00%

MicroWorld eScan
Adware.DoubleD.D, MemScan:Adware.Mongoose.A
14.29%

nProtect
Adware.DoubleD.D, MemScan:Adware.Mongoose.A
14.29%

McAfee
Generic PUP.x!ek, Artemis!27ACA32C84AF
14.29%

K7 AntiVirus
Riskware, Riskware
14.29%

F-Prot
W32/MalwareF.GMOJ, W32/Relevant.B
14.29%

Bitdefender
Adware.DoubleD.D, MemScan:Adware.Mongoose.A
14.29%

Emsisoft Anti-Malware
Adware.DoubleD, MemScan:Adware.Mongoose
14.29%

VIPRE Antivirus
DownloadAdmin, Trojan.Win32.Generic
14.29%

Quick Heal
Win32.Adware.DoubleD.4
9.52%

1 / 68      (Adware)
openofficewriter-setup.exe  (73b33b2bd01c7bc140df428237418ef2)

1 / 68      (Adware)
setup.exe  (20d29c81628c17e02a49aef34cd3a3b9)

1 / 68      (Adware)
openoffice-suite.aptpgwbas01.78.exe  (ef0d52d6d3085ce3873bce235ace3eac)

1 / 68      (Adware)
openofficeimpress-setup.exe  (585f8ad927992aa2eddcad3b2f4ec89c)

1 / 68      (Adware)
puredeftb.cspgwbas03.exe  (e91d870dc16a9a65b6bfe2c799c5e497)

1 / 68      (Adware)
vlc.us01.exe  (648d362cb12d681e84f40fd8ee163983)

1 / 68      (Adware)
openofficesuite-setup.exe  (b4c55a03e08c1efe1435f28842d56d54)

24 / 68    (Adware)
bloxxi.aptcspgwbas02.77.exe  (66327dbae2d03d7f5e0fd8eb98a01f21)

1 / 68      (Adware)
vlc-setup.exe  (7179f738b9df6a4ae879222f152ae494)

1 / 68      (Adware)
eurotrucksimulator-setup.exe  (f756ff241557f8262fadcb99d3b22c2a)

1 / 68      (Adware)
openoffice-writer.apgwba01.78.exe  (77c3abbc055afad4a54e2d3fb81cae45)

1 / 68      (Adware)
pdfcreator.aptupgxwbas01.78.exe  (46e31e583c345f8780475b1ad6c6eabf)

1 / 68      (Adware)
open office.exe  (d712fff83c854ccd77f88af3480e5179)

13 / 68    (Adware)
7zip.uk02.exe  (d6475a5648a6e52e30f952a9404e2a0d)

1 / 68      (Adware)
openoffice-writer.aptupgwbas01.78.exe  (4b197ea026afb2ab2c3246aba302ba5f)

1 / 68      (Adware)
zuma-setup.exe  (6c394a05d3e12259b6c089ff21772d49)

1 / 68      (Adware)
bloxxi-setup.exe  (c97140f5ef331921918efa22ce135a2e)

1 / 68      (Adware)
openoffice-calc.aptupgwbas01.78 excel.exe  (2a047b3814fcaecc4cea5110b1badf75)

1 / 68      (Adware)
infra.uk02.exe  (a06d2e7f7499bb417fdca0b2d951c4d7)

7 / 68      (Adware)
openoffice-suite.aptupgwbas01.78.exe  (27aca32c84afbf352d5c897440890d45)

23 / 68    (Adware)
7zip.us02.exe  (6c96a474a1d5cc194f65e7bb32468de8)

Downloads URLs for files signed by Download Admin.

23 / 68    (Adware)
http://cdn.cloudfiles.mosso.com/.../7zip.us02.exe  (6c96a474a1d5cc194f65e7bb32468de8)

Top-level domains owned by Download Admin.

The following websites host and distribute files published by Download Admin.

The certificates below are also signed by Download Admin.

2EEB247A8F9D63D74CE7EF9551E3D401  (Mar 19, 2013 to May 29, 2016)

29529B0D185F8525A92A866D4A38DA3A  (Apr 03, 2010 to May 30, 2013)

The following publishers (by Authenticode signature organization name) are related.

Remove Download Admin Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Download Admin by VeriSign, Inc. on June 21, 2009 with the serial number '0b3c4c63ab2e7d3d56ccc830179f66f0'.