DreamWiz Internet Co.,Ltd

Publisher Information

DreamWiz Internet Co.,Ltd is a software developer located in Guro-gu, Seoul in Korea*. A majority of the programs developed by the company can be classified as adware or other potentially unwanted programs. There is one additional code signing certificate issued to this publisher.
Remove DreamWiz Internet Co.,Ltd Malware - Powered by Reason Core Security
Authority:
Thawte, Inc.

Valid from:
12/6/2013 9:00:00 AM

Valid to:
12/7/2015 8:59:59 AM

Subject:
CN="DreamWiz Internet Co.,Ltd", OU=IT Team, O="DreamWiz Internet Co.,Ltd", L=Guro-gu, S=SEOUL, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
12db999bc9533c57564cc89cac820b20

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.DreamWizInternet (M), PUP.DreamWizInternet.Installer (M), Threat.Win.Reputation.IMP
95.65%

CMC Antivirus
Hoax.Win32.BadJoke.ScreenFlicker!O
23.91%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
21.74%

Trend Micro House Call
TROJ_GEN.F47V1228, TROJ_GEN.F47V0503, Suspicious_GEN.F47V1023, Suspicious_GEN.F47V0115, Suspicious_GEN.F47V0413, Suspicious_GEN.F47V0308
17.39%

Dr.Web
Trojan.Adkor.140, Trojan.Adkor.93
15.22%

IKARUS anti.virus
Win32.SuspectCrc, Trojan.SuspectCRC, Worm.Win32.AutoRun, Trojan.ATRAPS
13.04%

McAfee
Artemis!C031BDE848B3, Artemis!C49099FF72AE, Artemis!BF0E98C51744, Artemis!CF6A118CDF19
8.70%

Qihoo 360 Security
Win32/Trojan.621, HEUR/Malware.QVM33.Gen, HEUR/Malware.QVM13.Gen
8.70%

Bitdefender
Gen:Variant.Strictor.38275, Gen:Variant.Graftor.140483, Trojan.Generic.12043866
6.52%

Lavasoft Ad-Aware
Gen:Variant.Strictor.38275, Gen:Variant.Graftor.140483, Trojan.Generic.12043866
6.52%

1 / 68      (PUP)
HanPainter.exe (HanPainter by Dreamwiz Internet)  (be26a77880f61cae66c1071485f03c0f)

1 / 68      (PUP)
HanGok.exe (HanGok by Dreamwiz Internet)  (056489813c9652579414ac0b203fdb7b)

1 / 68      (PUP)
HanCapture.exe (HanCapture by Dreamwiz Internet)  (2e622d6463d972fdc5170935db231dfd)

1 / 68      (PUP)
speeddown2install.exe  (c5ba443f157b0630f748dfe4f0be794f)

1 / 68      (PUP)
BomulActProj.ocx  (e73600b9bc9cafbcf0c3e577d85340c9)

1 / 68      (PUP)
hancapture.exe (HanCapture by Dreamwiz Internet)  (45457c603ccf71f37028e29b8bb2a973)

8 / 68      (PUP)
sa_setup.exe (Smart Address)  (3ca23429c6e4bc982973925bd3aad932)

1 / 68      (PUP)
smartaddress.exe  (c6033536894226652e42fa1443ad2003)

1 / 68      (PUP)
smartaddress64.exe  (8d6800ed4c17b4e6fe0016ca4d435b93)

2 / 68      (PUP)
hansee_setup.exe (HanSee by Dreamwiz Internet)  (12c00e667e67c1d22a2dd2f0f293ecef)

10 / 68    (PUP)
smartaddress.exe  (cf6a118cdf19695d597140928c6f4d20)

2 / 68      (PUP)
hancapture_setup.exe (HanCapture by Dreamwiz Internet)  (cb319d5a44c35f1e89c91569a58487ff)

4 / 68      (PUP)
downsmartaddress.exe  (50cffbf958b8e841f5c3bc9792664e69)

1 / 68      (PUP)
smartaddress64.exe  (1861ed1d11f66574093c2006602d607f)

4 / 68      (PUP)
sa_setup.exe (Smart Address)  (f2cd490de3976c07802fb66396dc4bfc)

5 / 68      (PUP)
speeddown2install.exe  (bf0e98c517444a59c39e0f2a59056216)

1 / 68      (PUP)
BomulDownAgree.exe  (3c0dd4720c1bb745ac9c00f6609aee21)

1 / 68      (PUP)
hansee_2.0.0.14.exe (HanSee by Dreamwiz Internet)  (5eba5449abc6f28e304725d862e79138)

4 / 68      (PUP)
speeddownsearchfilter.exe  (098573ae43a6cc3d8b2cff92d5bb1c4f)

1 / 68      (PUP)
speeddownuninstall.exe  (d2a3f85ecb360037fef81dda597999f8)

1 / 68      (PUP)
speeddownsvc.exe  (b5df070de7480f5136e2d05d4bbd1274)

1 / 68      (PUP)
speeddownch.exe  (465a9d13b94e2f338a3686f6de6b5d27)

1 / 68      (PUP)
sddownload.dll  (9a6138cfb689cd2c2b4f3d6fa428e52c)

2 / 68      (PUP)
speeddownup.exe  (ac6a739c0995055bed8da065674860fa)

5 / 68      (PUP)
spupdate.exe  (f2f7127d68970acd9055875af692eb64)

4 / 68      (PUP)
SpeedDown.exe  (2524438871b59ce91708f3d6745abdf9)

2 / 68      (PUP)
hansee.exe (HanSee by {cm:VersionInfoCompany})  (b6f3bd9939f97a102808d585b860d9b7)

1 / 68      (PUP)
hangok.exe (HanGok by Dreamwiz Internet)  (a85d2276c9000db59b45a3166201df14)

1 / 68      (PUP)
SPUpSvc.exe  (5582a6aabda70e0bdd57d567278a1e92)

1 / 68      (PUP)
downfiledown.exe  (48de9c11440444fb13b5f9c76d4ed4ff)

 
Latest 30 of 46 files

Downloads URLs for files signed by DreamWiz Internet Co.,Ltd.

4 / 68      (PUP)

The following certificate is also signed by DreamWiz Internet Co.,Ltd.

2C28441B5E4D45C0B4A25EBFE0B40940  (Dec 04, 2015 to Jan 03, 2017)

Remove DreamWiz Internet Co.,Ltd Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to DreamWiz Internet Co.,Ltd by Thawte, Inc. on December 06, 2013 with the serial number '12db999bc9533c57564cc89cac820b20'.