Duck Play, LLC.

Publisher Information

Duck Play, LLC. is a software developer located in Plantation, Florida in the United States*. The company is a primary distributor of unwanted software. There is one additional code signing certificate issued to this publisher.
Remove Duck Play, LLC. Malware - Powered by Reason Core Security
Authority:
VeriSign, Inc.

Valid from:
12/14/2011 7:00:00 PM

Valid to:
12/14/2012 6:59:59 PM

Subject:
CN="Duck Play, LLC.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Duck Play, LLC.", L=Plantation, S=Florida, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
4367f454aabeb75c26bc4c25b8d263ba

Scanner detections:
Detections  (94% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.DuckPlay.U, PUP.DuckPlay.P, PUP.DuckPlay.L, PUP.installCore.DuckPlay (M)
93.33%

AVG
DuckPla, Adware MultiBundle.Y, Adware InstallCore.MQ
33.33%

ESET NOD32
Win32/InstallCore.AL potentially unwanted application, Win32/InstallCore.AT potentially unwanted application, Win32/InstallCore.Q potentially unwanted application
26.67%

Dr.Web
Adware.InstallCore.40, Adware.InstallCore.72, Adware.InstallCore.22
26.67%

VIPRE Antivirus
Threat.4150696, Threat.4835495
26.67%

avast!
Win32:PUP-gen [PUP], Win32:Adware-gen [Adw], Win32:Evo-gen [Susp]
20.00%

Vba32 AntiVirus
Signed-Adware.InstallCore, BScope.Malware-Cryptor.InstallCore.2691
20.00%

F-Prot
W32/InstallCore.P.gen, W32/InstallCore.C.gen, W32/InstallCore.B.gen
20.00%

Sophos
PUA 'Install Core Installer'
13.33%

Avira AntiVirus
ADWARE/InstallCore.Gen
13.33%

1 / 68      (Adware)
halo.exe  (882297c5d4dded1b8403ee854461fb9f)

1 / 68      (Adware)
icreinstall_transformers.exe  (a610a674af9d59a761b8901cfc0d68c4)

1 / 68      (Adware)
super-mario.exe  (24b1d62c04483f4a4ce27219c1ca87d6)

9 / 68      (Adware)
brain-game.exe  (d3e86ce42105bcb42e8942b42b889d2c)

1 / 68      (Adware)
super-mario.exe  (ed173625f887235d7d908f31c3072272)

0 / 68
love-cab.exe  (78aedb978faee456fef32b2bcc852e90)

1 / 68      (Adware)
super-mario.exe  (b1e5a8998f75b3b5d977ea2a2d5cb62f)

10 / 68    (Adware)
super-mario.exe  (9003c95cd6a70fd392dd58c2207c5a8f)

1 / 68      (Adware)
spiderman.exe  (691e0ae24f62d0cfb0efebe02765c1f1)

1 / 68      (Adware)
super-mario.exe  (66427208e484c0ae88e948872bba2451)

1 / 68      (Adware)
devilish-pet-salon.exe  (a0ad9e3e1e845a725f0f78390d1b00c1)

1 / 68      (Adware)
super-mario.exe  (795700c348ac75625670b278f8945723)

1 / 68      (Adware)
spongebob-pizza-toss.exe  (5c768b8bfbae8cdfad8680a0bdfe861a)

5 / 68      (Adware)
mightymagoo.exe  (7b61b4c89bf8a2f849b645310d9b6f89)

11 / 68    (Adware)
deal-or-no-deal.exe  (ef388a3718d26f2725df7d9a24f8203a)

15 / 68    (Adware)
spongebob-pizza-toss.exe  (83122f09ab34290cb44277d70a9e4421)

Downloads URLs for files signed by Duck Play, LLC..

The following websites host and distribute files published by Duck Play, LLC..

The following certificate is also signed by Duck Play, LLC..

61BB10A02680B1BE9CBF105FD54BEAAA  (Dec 07, 2012 to Jan 06, 2015)

Remove Duck Play, LLC. Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Duck Play, LLC. by VeriSign, Inc. on December 14, 2011 with the serial number '4367f454aabeb75c26bc4c25b8d263ba'.