DreamWiz Internet Co.,Ltd

Publisher Information

DreamWiz Internet Co.,Ltd is a software developer located in Guro-gu, Seoul in Korea*. A majority of the programs developed by the company can be classified as adware or other potentially unwanted programs. There is one additional code signing certificate issued to this publisher.
Authority:
Thawte, Inc.

Valid from:
12/6/2013 9:00:00 AM

Valid to:
12/7/2015 8:59:59 AM

Subject:
CN="DreamWiz Internet Co.,Ltd", OU=IT Team, O="DreamWiz Internet Co.,Ltd", L=Guro-gu, S=SEOUL, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
12db999bc9533c57564cc89cac820b20

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.DreamWizInternet (M), PUP.DreamWizInternet.Installer (M), Threat.Win.Reputation.IMP
95.65%

CMC Antivirus
Hoax.Win32.BadJoke.ScreenFlicker!O
23.91%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
21.74%

Trend Micro House Call
TROJ_GEN.F47V1228, TROJ_GEN.F47V0503, Suspicious_GEN.F47V1023, Suspicious_GEN.F47V0115, Suspicious_GEN.F47V0413, Suspicious_GEN.F47V0308
17.39%

Dr.Web
Trojan.Adkor.140, Trojan.Adkor.93
15.22%

IKARUS anti.virus
Win32.SuspectCrc, Trojan.SuspectCRC, Worm.Win32.AutoRun, Trojan.ATRAPS
13.04%

McAfee
Artemis!C031BDE848B3, Artemis!C49099FF72AE, Artemis!BF0E98C51744, Artemis!CF6A118CDF19
8.70%

Qihoo 360 Security
Win32/Trojan.621, HEUR/Malware.QVM33.Gen, HEUR/Malware.QVM13.Gen
8.70%

Bitdefender
Gen:Variant.Strictor.38275, Gen:Variant.Graftor.140483, Trojan.Generic.12043866
6.52%

Lavasoft Ad-Aware
Gen:Variant.Strictor.38275, Gen:Variant.Graftor.140483, Trojan.Generic.12043866
6.52%

1 / 68      (PUP)
HanPainter.exe (HanPainter by Dreamwiz Internet)  (be26a77880f61cae66c1071485f03c0f)

1 / 68      (PUP)
HanGok.exe (HanGok by Dreamwiz Internet)  (056489813c9652579414ac0b203fdb7b)

1 / 68      (PUP)
HanCapture.exe (HanCapture by Dreamwiz Internet)  (2e622d6463d972fdc5170935db231dfd)

1 / 68      (PUP)
speeddown2install.exe  (c5ba443f157b0630f748dfe4f0be794f)

1 / 68      (PUP)
BomulActProj.ocx  (e73600b9bc9cafbcf0c3e577d85340c9)

1 / 68      (PUP)
hancapture.exe (HanCapture by Dreamwiz Internet)  (45457c603ccf71f37028e29b8bb2a973)

8 / 68      (PUP)
sa_setup.exe (Smart Address)  (3ca23429c6e4bc982973925bd3aad932)

1 / 68      (PUP)
smartaddress.exe  (c6033536894226652e42fa1443ad2003)

1 / 68      (PUP)
smartaddress64.exe  (8d6800ed4c17b4e6fe0016ca4d435b93)

2 / 68      (PUP)
hansee_setup.exe (HanSee by Dreamwiz Internet)  (12c00e667e67c1d22a2dd2f0f293ecef)

10 / 68    (PUP)
smartaddress.exe  (cf6a118cdf19695d597140928c6f4d20)

2 / 68      (PUP)
hancapture_setup.exe (HanCapture by Dreamwiz Internet)  (cb319d5a44c35f1e89c91569a58487ff)

4 / 68      (PUP)
downsmartaddress.exe  (50cffbf958b8e841f5c3bc9792664e69)

1 / 68      (PUP)
smartaddress64.exe  (1861ed1d11f66574093c2006602d607f)

4 / 68      (PUP)
sa_setup.exe (Smart Address)  (f2cd490de3976c07802fb66396dc4bfc)

5 / 68      (PUP)
speeddown2install.exe  (bf0e98c517444a59c39e0f2a59056216)

1 / 68      (PUP)
BomulDownAgree.exe  (3c0dd4720c1bb745ac9c00f6609aee21)

1 / 68      (PUP)
hansee_2.0.0.14.exe (HanSee by Dreamwiz Internet)  (5eba5449abc6f28e304725d862e79138)

4 / 68      (PUP)
speeddownsearchfilter.exe  (098573ae43a6cc3d8b2cff92d5bb1c4f)

1 / 68      (PUP)
speeddownuninstall.exe  (d2a3f85ecb360037fef81dda597999f8)

1 / 68      (PUP)
speeddownsvc.exe  (b5df070de7480f5136e2d05d4bbd1274)

1 / 68      (PUP)
speeddownch.exe  (465a9d13b94e2f338a3686f6de6b5d27)

1 / 68      (PUP)
sddownload.dll  (9a6138cfb689cd2c2b4f3d6fa428e52c)

2 / 68      (PUP)
speeddownup.exe  (ac6a739c0995055bed8da065674860fa)

5 / 68      (PUP)
spupdate.exe  (f2f7127d68970acd9055875af692eb64)

4 / 68      (PUP)
SpeedDown.exe  (2524438871b59ce91708f3d6745abdf9)

2 / 68      (PUP)
hansee.exe (HanSee by {cm:VersionInfoCompany})  (b6f3bd9939f97a102808d585b860d9b7)

1 / 68      (PUP)
hangok.exe (HanGok by Dreamwiz Internet)  (a85d2276c9000db59b45a3166201df14)

1 / 68      (PUP)
SPUpSvc.exe  (5582a6aabda70e0bdd57d567278a1e92)

1 / 68      (PUP)
downfiledown.exe  (48de9c11440444fb13b5f9c76d4ed4ff)

 
Latest 30 of 46 files

Downloads URLs for files signed by DreamWiz Internet Co.,Ltd.

4 / 68      (PUP)

The following certificate is also signed by DreamWiz Internet Co.,Ltd.

2C28441B5E4D45C0B4A25EBFE0B40940  (Dec 04, 2015 to Jan 03, 2017)

* Note, the details and description above are based on the code signing digital signature issued to DreamWiz Internet Co.,Ltd by Thawte, Inc. on December 06, 2013 with the serial number '12db999bc9533c57564cc89cac820b20'.