Extended Setup

Publisher Information

Extended Setup is a software publisher located in Tel Aviv, Israel*. The company is a primary distributor of unwanted software. Extended Setup distibutes adware bundles for the purpose of software monetization utilizing the 'installCore' download manager which bundles various toolbars, web browser extensions as well as other potentially unwanted software.
Authority:
COMODO CA Limited

Valid from:
10/21/2013 10:00:00 PM

Valid to:
10/22/2014 9:59:59 PM

Subject:
CN=Extended Setup, O=Extended Setup, STREET=Lilienblum 28, L=Tel Aviv, S=Israel, PostalCode=6513307, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00dc2a1d7b17450e779685baa191188498

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.installCore (M)
100.00%

1 / 68      (Adware)
flvplayer.exe  (d352d969f33f5798f8ca36678ff23c59)

1 / 68      (Adware)
20140108142524.692.exe  (7346a17c84dd68c162e8bdad850e0caa)

1 / 68      (Adware)
coreldraw.exe  (e31276ca5f6b4be9670fc6c866bc112b)

1 / 68      (Adware)
icreinstall_installer_instagram__english.exe  (00034b752b276771319bab560b18085a)

1 / 68      (Adware)
sony-ericsson-pc-suite.exe  (83f39af80e5822f6b848131076ffd79e)

1 / 68      (Adware)
gadu-gadu-10.exe  (df40df154360429fd425af170f9be534)

1 / 68      (Adware)
curriculum-vitae-europass.exe  (cf280a468fefaea46c714311b9f0eb61)

1 / 68      (Adware)
avg-anti-virus-free.exe  (1a246dd6d58321b0b68b733044fe7762)

1 / 68      (Adware)
xl-plot-447-gerenciador-32-bits.ussafe.exe  (00e5d62d760514402f26ffc045b70601)

1 / 68      (Adware)
flv-player-2011_setup.exe  (dc722b8676bf5d566d26c7398392a4f2)

1 / 68      (Adware)

1 / 68      (Adware)
20140126203359.412.exe  (0297a9c311bb58fd0dc08a1e19848224)

1 / 68      (Adware)
icreinstall_pokemon pearl (u).exe  (5e6426992a9fd5534897ab4ccb31bc3e)

1 / 68      (Adware)
microke-karaoke-player-platinum-gerenciador-32-bits.exe  (7768aaa4122e156f6dfa8be2192d5715)

1 / 68      (Adware)
installer_java_portuguese.exe  (a751f6664a9246e207487d28d731bf3f)

1 / 68      (Adware)
skype.exe  (c90c74e929dfe8d5592339a9342e9c58)

1 / 68      (Adware)
photo-editor.exe  (6692b6f28a7871c2e5808add7b7491fd)

1 / 68      (Adware)

1 / 68      (Adware)
icreinstall_microsoft-word-2010.exe  (e9afa2bb7ac5f8db6c0bc139319a3981)

1 / 68      (Adware)
icreinstall_cr_downloader_for_pokemon-black.exe  (272b74059b4e9aebbd0656eacf5c299b)

1 / 68      (Adware)
icreinstall_hamachi.exe  (61ad5dacd1f4160c94916045e2d3c3df)

1 / 68      (Adware)
mouse-recorder-pro-2074-32-bits.exe  (f43d9351147b4296a1980bc6e7ee62c6)

1 / 68      (Adware)
cr_downloader_para_visual-boy-advance.exe  (78c987ed8b91c77f91f256f9ee2a1a4a)

1 / 68      (Adware)
flashplayer.exe  (8468b74b97dee6590c62d4131122b599)

1 / 68      (Adware)
flashplayer.exe  (fe79246165410b8413d5cfcaae8a88fb)

1 / 68      (Adware)
20140122174759.810.exe  (f08f9c87a4f70bb789845f416c349cdf)

1 / 68      (Adware)
java-runtime-environment-64-bits.exe  (d4dc04a48295442d9be05ad563f6f30e)

1 / 68      (Adware)
darmowegry.exe  (0afaa5a947c537e1b6b4952806f70e40)

1 / 68      (Adware)
cr_downloader_para_skitchin.exe  (c860f5b5c67e2f8c93fe38d372d97bf8)

1 / 68      (Adware)
cr_downloader_para_california-games.exe  (efcf6a87767f76b405cb3a0dd5a24f00)

 
Latest 30 of 8,916 files

Downloads URLs for files signed by Extended Setup.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://coolrom.com/downloader.php?id=14&emu=nm  (cr_downloader_para_visual-boy-advance.exe)

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to Extended Setup by COMODO CA Limited on October 21, 2013 with the serial number '00dc2a1d7b17450e779685baa191188498'.