FIRSERIA, S.L.

Publisher Information

FIRSERIA, S.L. is a software publisher located in Badalona, Barcelona in Spain*. The company is a primary distributor of adware type software. Firseria (Solimba Aplicaciones S.L.) based on Spain is a company that runs various download portals including winportal.com and descargargratis.com which are designed as download sites that distribute legitimate 'Free Downloads', however they use a custom download manager (DownloadMR) to package bundled offers with each installation "Additionally, the download manager offers the optional installation of a toolbar.". These offeres include adware, toolbars and various other potential unwanted software.
Authority:
Thawte, Inc.

Valid from:
7/24/2013 2:00:00 AM

Valid to:
7/25/2014 1:59:59 AM

Subject:
CN="FIRSERIA, S.L.", OU=IT, O="FIRSERIA, S.L.", L=Badalona, S=Barcelona, C=ES

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
73c4780fac0cd497b0778732fb8af673

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.FIRSERIASL.N, PUP.FIRSERIASL.T, PUP.FIRSERIASL.R, PUP.FIRSERIASL.V, PUP.FIRSERIASL.M, PUP.FIRSERIASL.P, PUP.Installer.FIRSERIASL.V, PUP.Installer.FIRSERIASL.F, PUP.FIRSERIASL.F, PUP.Installer.FIRSERIASL.T, PUP.FIRSERIASL.c, PUP.FIRSERIASL.J, PUP.Installer.FIRSERIASL.I, PUP.FIRSERIASL.Y, PUP.FIRSERIASL.U, PUP.Installer.FIRSERIASL.P, PUP.FIRSERIASL.I, PUP.FIRSERIASL.Q, PUP.Installer.FIRSERIASL.L, PUP.Installer.FIRSERIASL.H, PUP.Installer.FIRSERIASL.U, PUP.FIRSERIASL.W, PUP.FIRSERIASL.i, PUP.Installer.FIRSERIASL.Q
100.00%

Malwarebytes
PUP.Optional.Firseria, PUP.Optional.FirSeriaInstaller, PUP.Optional.Firser.A, PUP.Optional.BundleInstaller.A, PUP.Optional.Solimba.mr
86.00%

Comodo Security
TrojWare.Win32.Trojan.Obfuscated.~EN, Application.Win32.Solimba.J
86.00%

Dr.Web
Adware.Downware.1433, Trojan.DownLoader10.14117, Trojan.DownLoader10.62400, Trojan.DownLoader10.51613, Trojan.MulDrop5.4401
86.00%

VIPRE Antivirus
Trojan.Win32.Generic, DownloadMR
86.00%

Avira AntiVir
APPL/Firseria.Gen, TR/Crypt.ULPM.Gen, TR/Dropper.Gen, APPL/Firseria.E, Adware/Fiseria.A, APPL/Firseria.B, TR/Rogue.10404664
86.00%

ESET NOD32
Win32/FirseriaInstaller (variant), MSIL/Solimba.AB
86.00%

Sophos
Solimba Installer
84.00%

AVG
AdInstaller.Firseria
82.00%

Rising Antivirus
PE:PUF.FirseriaInstaller@CV!1.9C54, PE:PUF.FirseriaInstaller@CV!1.5C42
80.00%

1 / 68      (Adware)
setup.exe (by Firser)  (c8659184cef2f760c980e473017a319a)

16 / 68    (Adware)
evernote.exe (by Firseria)  (cc430414c51fc72d76b99b5ac2141511)

1 / 68      (Adware)
garmin mapsource.exe (by F¡rser¡a s·l·)  (b76bce214d26ca1b1d635b2042c0a8b9)

20 / 68    (Adware)
garena plus.exe (by Firseria)  (b3695670951de022a4da1bef459a00ca)

21 / 68    (Adware)
theme manager.exe (by Firseria s·l·)  (71be371b5d980cc768a58e20d440bdd4)

20 / 68    (Adware)
adobe photoshop.exe (by Firseria·s·l·)  (9280d252de9d75b04c6d5d6823612f75)

22 / 68    (Adware)
adobe flash player 11.exe (by Frsera·sl)  (8fd689f33430f2b27ebeb8b8087a3d58)

18 / 68    (Adware)
cyberlink youcam.exe (by Firser)  (96f7c0e87cd53cbde69bd759808bffef)

24 / 68    (Adware)
gfi backup - home edition 2009.exe (by Firseria·s·l·)  (93e193449b6fd8bc35647984e05068f6)

21 / 68    (Adware)
inssider.exe (by Firseria)  (a56aaaf4c9ac9b43817855fb05305c1d)

26 / 68    (Adware)
openoffice.org.exe (by Firseria·s·l·)  (41aefeaf81e257a719ed655c8d27d8a9)

23 / 68    (Adware)
spore creature creator.exe (by Rapiddown)  (1a5496330b6542a0e0f4c217519588ac)

27 / 68    (Adware)
manycam.exe (by Firseria·s·l·)  (32f110a3a37a5cb08d7d8cb7a145d2e5)

17 / 68    (Adware)
app.exe (by Firseria s·l·)  (0f6b8bea18bef4c765de9ec84c2f18cb)

1 / 68      (Adware)
windows 7 codecs.exe (by Firser)  (2264148917ec4a8b318a9295428b4cdb)

26 / 68    (Adware)
whatsapp pour pc.exe (by Firseria·s·l·)  (971587e675431aefe56477a8de0f7bd2)

26 / 68    (Adware)
flv_media_player.exe (by Firseria·s·l·)  (8c893d25c35384541f7145aee3cd08fe)

1 / 68      (Adware)
chuzzle.exe (by ·Firseria·)  (71cf4f71f776d39aa95df105d4370e83)

1 / 68      (Adware)
bejeweled 3.exe (by ·Firseria·)  (7bb8097e624da1c59294eb2a316d6b5a)

1 / 68      (Adware)
flv_media_player.exe (by Firseria·s·l·)  (632edd1122e144a5b8a45b4aa04846c3)

27 / 68    (Adware)
opera.exe (by Firseria·s·l·)  (40e784b3b2f0b5b831fc3e740e0aa678)

24 / 68    (Adware)
microsoft office 2010.exe (by Firseria·s·l·)  (c322cd40621f99a6f27c1e44a99f2b54)

30 / 68    (Adware)
paint.net.exe (by Frserira s·l·)  (879f382097b20ffdb09cf33a20d5c579)

24 / 68    (Adware)
irfanview.exe (by Rapiddown)  (0d7af695097928274ac67eb16ae47429)

20 / 68    (Adware)
file_downloader.exe (by Firseria)  (ef2cc37e39873fdcb9167574c58d6eaf)

20 / 68    (Adware)
samsung pc studio.exe (by Firseria s·l·)  (7d721d245dcf39c50081ebb9c8e55e29)

26 / 68    (Adware)
opera.exe (by Firseria·s·l·)  (d5c464c4a3658958dd77f1c4ee26bb15)

25 / 68    (Adware)
tiger woods pga tour.exe (by Firseria·s·l·)  (2c5c4a6209809352bade63398ec1b8b8)

18 / 68    (Adware)
logitech webcam software.exe (by Firseria)  (008b229934fea92087d8a073725d2fc5)

21 / 68    (Adware)
inssider.exe (by ·Firseria·)  (ec63f9b7e51b0ea2171f1fe23d42d3b3)

 
Latest 30 of 533 files

Downloads URLs for files signed by FIRSERIA, S.L..

1 / 68      (Adware)

20 / 68    (Adware)

23 / 68    (Adware)

1 / 68      (Adware)

30 / 68    (Adware)

25 / 68    (Adware)

20 / 68    (Adware)

26 / 68    (Adware)
http://dl01.facdmr.com/n/.../Wii2788.part5.rar.exe  (4c02e09569bdc08d50dcb76b961077ad)

Top-level domains owned by FIRSERIA, S.L..

The following websites host and distribute files published by FIRSERIA, S.L..

The following publishers (by Authenticode signature organization name) are related.

Detection Incidence by Country
* Note, the details and description above are based on the code signing digital signature issued to FIRSERIA, S.L. by Thawte, Inc. on July 24, 2013 with the serial number '73c4780fac0cd497b0778732fb8af673'.