Escolade Solutions LTD.

Publisher Information

Escolade Solutions LTD. is a software developer located in Kiev, Ukraine*. The company is a primary distributor of unwanted software. Part of the Brightcircle group of adware web browser extensions that utilize the Crossrider framework. These extensions are also known as Freven and are designed to utilize the framework in order to inject advertising banners in the underlying web browsers white space or by overlaying new ads over existing ones. Brightcircle distributes its software through malvertising practices such as displaying web pages taht tell the user that various core Windows software is out-dated and needs updating as well as drive-by downloads.
Remove Escolade Solutions LTD. Malware - Powered by Reason Core Security
Authority:
COMODO CA Limited

Valid from:
9/25/2012 2:00:00 AM

Valid to:
9/26/2013 1:59:59 AM

Subject:
CN=Escolade Solutions LTD., O=Escolade Solutions LTD., STREET=Akademica Vernadskogo blvd. 36-507, L=Kiev, S=Kiev, PostalCode=03451, C=UA

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
0fb283cb6eea8d0204bfa51c4bce925c

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Brightcircle.EscoladeSolutions (M), PUP.Brightcircle.EscoladeSolutions.Installer (M)
100.00%

avast!
Win32:Downloader-QIY [PUP], Win32:Adware-BEK [PUP], Win32:PUP-gen [PUP]
22.00%

Dr.Web
Adware.Downware.889, Adware.Downware.1434, Adware.Downware.11155, Adware.Downware.1434
22.00%

VIPRE Antivirus
iPumper, Threat.4787725
22.00%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud)
22.00%

IKARUS anti.virus
AdWare.Win32.BundleInstaller
22.00%

AVG
AdInstaller.U, Adware AdInstaller.U
22.00%

F-Prot
W32/A-e5e99832, W32/AdInstall.E.gen
22.00%

Comodo Security
ApplicUnwnt
22.00%

Avira AntiVirus
Adware/iPumper.AR.1, ADWARE/Adware.Gen
22.00%

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
connecting_people_logo_quiz_downloader.exe  (18d21b3b41791678d3f731920fc81020)

1 / 68      (Adware)
api_downloader.exe  (6aa39fd2180c9b2f796685c7d84e54fe)

1 / 68      (Adware)

21 / 68    (Adware)
drive_downloader.exe (FastFileDownloader)  (23b062139bd5d1e4e543322fa16a9a25)

1 / 68      (Adware)

1 / 68      (Adware)
filerammer.exe (TinyInstaller Module)  (6ebabe27cfb4f993917610d01c281b32)

1 / 68      (Adware)
image_downloader.exe (iPumper)  (79f6b4171bc14da3d5a817b89e82ff50)

1 / 68      (Adware)

16 / 68    (Adware)
image_downloader.exe (iPumper)  (72832f3f270af695941c119cb46f5ac0)

1 / 68      (Adware)
api_downloader.exe  (cb4ff0f48557c65f0929ad5378b6376c)

1 / 68      (Adware)

1 / 68      (Adware)
viva_pinata_pc_free_full_downloader.exe  (5385453a86e4be392eace9890ac58a7d)

1 / 68      (Adware)

30 / 68    (Adware)
ipumperinst.exe (iPumper)  (033a5c19024402c4b98cc416fb3afa26)

1 / 68      (Adware)

1 / 68      (Adware)
riverpoint_writer_university_of_phoenix_downloader.exe  (ee4a247ef7136e39eaec850865fbabcd)

16 / 68    (Adware)
image_downloader.exe (iPumper)  (b6acd915c3e0b14018b2edaf5a17d92f)

16 / 68    (Adware)
image_downloader.exe (iPumper)  (ee6faae39fa58595a4f2954c5242530c)

1 / 68      (Adware)
gcompris_12.11_downloader.exe (iPumper)  (7baf6dbe427e6a5c41792fff5f1caceb)

1 / 68      (Adware)
stata_12_mac_free_downloader.exe  (21f1fe04f0f3856cddfa3def08b9238a)

1 / 68      (Adware)
snoop+dogg+-+that+tree+ft+kid+cudi.exe (Downloader)  (f88130184f5ea98deb8665ec361d0aaa)

1 / 68      (Adware)

1 / 68      (Adware)
oxyinst.exe  (4c835842ee890a7207333b4f4211a326)

1 / 68      (Adware)
file_downloader.exe (FastFileDownloader)  (bc0d657c24c4e3385ae3b164f6be4090)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

 
Latest 30 of 293 files

Downloads URLs for files signed by Escolade Solutions LTD..

21 / 68    (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

33 / 68    (Adware)

21 / 68    (Adware)

1 / 68      (Adware)

The following websites host and distribute files published by Escolade Solutions LTD..

The following publishers (by Authenticode signature organization name) are related.

Remove Escolade Solutions LTD. Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Escolade Solutions LTD. by COMODO CA Limited on September 25, 2012 with the serial number '0fb283cb6eea8d0204bfa51c4bce925c'.