Green Fire Software

Publisher Information

Green Fire Software is a software developer located in La Jolla, California in the United States*. The company is a primary distributor of unwanted software. Green Fire Software is an adware distributor of ad-supported bundled software operated by Injekt, LLC. The installed software will inject advertising in the user's web browser including banners, in-text links and popups. In addition the distributed software will bundle additional software, typically adware during installation. There is one additional code signing certificate issued to this publisher.
Authority:
VeriSign, Inc.

Valid from:
9/19/2013 8:00:00 PM

Valid to:
9/20/2014 7:59:59 PM

Subject:
CN=Green Fire Software, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Green Fire Software, L=La Jolla, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
38e34fcc0fdd5e91fd5048a198aaabf1

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.GreenFireSoftware.H, PUP.Installer.GreenFireSoftware.S, PUP.GreenFireSoftware.G, PUP.GreenFireSoftware.I, PUP.GreenFireSoftware.L, Threat.Win.Reputation.IMP, PUP.GreenFireSoftware.K, PUP.GreenFireSoftware.J, PUP.Injekt.GreenFireSoftware (M), PUP.Injekt.GreenFireSoftware.Installer (M), PUP.Injekt.GreenFir.Installer (M), PUP.Injekt.GreenFir (M), PUP.Injekt (M)
94.00%

Malwarebytes
PUP.Optional.MovieMaster.A, PUP.Optional.MovieMode.A
36.00%

Sophos
Generic PUA NH, Pull Update, Generic PUA OF, Generic PUA IF, PUA 'Pull Update', PUA.Pull Update, Generic PUA AG
32.00%

Avira AntiVirus
ADWARE/Adware.Gen, Adware/AgentCV.A.35470
30.00%

ESET NOD32
MSIL/Adware.PullUpdate (variant)
26.00%

Antiy Labs AVL
Trojan/Win32.TSGeneric, RiskWare[RiskTool:not-a-virus]/Win32.Agent, Trojan/Win32.SGeneric
24.00%

VIPRE Antivirus
Threat.4784449, MSIL.Adware.PullUpdate, Trojan.Win32.Generic
24.00%

AVG
CreativeIsland, Potentially harmful program Downloader.BFO, Generic, Acute
20.00%

NANO AntiVirus
Riskware.Win32.Agent.dbyfjc, Riskware.Win32.SaMon.dorddh, Riskware.Win32.AgentCV.dcydok
18.00%

McAfee
Artemis!0206800B7D0B, Artemis!B0CECAFC3DE6, Artemis!83F6E4AE726B, Artemis!4A6320A8D399, Trojan.Artemis!F846F7F93DBB, Artemis!750C55C21C2F, Artemis!87F87853CAB7, Artemis!FDDCDF6181D0
18.00%

1 / 68      (Adware)
dfarxbtrz.exe (Movie Master by Green Fire Software)  (7ade89dd9aae6ba54b082d75a4fe568d)

1 / 68      (Adware)
uninstall.exe  (6e403ed97ade4d2194981aa54a52471f)

1 / 68      (Adware)

1 / 68      (Adware)
yjodnlenom.dll  (c3cae5aea7e6ad4b7afd036df094389a)

1 / 68      (Adware)
wxrjkribcgu.exe (Movie Master by Green Fire Software)  (dd6381c5b52defee5ff4a21734bacfb9)

1 / 68      (Adware)
romdrtn.dll  (6e3f4412ac44da41592bebf09f1f9937)

1 / 68      (Adware)
hcmuwok.dll  (6427b0dc8370463402fd8d88b7497bd6)

1 / 68      (Adware)
akymleockbb.exe (Movie Master by Green Fire Software)  (0c9718599c4ce983a423125d34ac9cef)

1 / 68      (Adware)
yrpmpnrq.exe (Movie Master by Green Fire Software)  (ae629da7f593c2bd2c9968a2cd7b2038)

1 / 68      (Adware)
rirvexwbvqe.exe (Movie Master by Green Fire Software)  (2f83b448885c2267c3c9a0e70c821cf6)

1 / 68      (Adware)
depirjilnpj.exe (Movie Master by Green Fire Software)  (75b4c5d62a5b4609ba6aacad3a2bb466)

1 / 68      (Adware)
qvreaap.exe (Movie Master Service by Green Fire Software)  (0089f29416fe889cbfa2ffad76d32ddc)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
uninstall.exe  (e14d2b064d1e934eedf5933ff6b05927)

1 / 68      (Adware)

1 / 68      (Adware)
uninstall.exe  (4fdb745d487447c329b9cf0a169d8f35)

16 / 68    (Adware)
helper.dll  (fddcdf6181d06637b1f33fe95986b201)

4 / 68      (Adware)
zlefjxcwbw.dll  (02aeee4041f7338916c8269ca8d43b39)

13 / 68    (Adware)
rlmshwfzyzc.dll  (87f87853cab7743be55e6ed653fa7f29)

5 / 68      (Adware)
qlxtybh.dll  (bd73c811231d2ad1e38947e9dbcdc3c4)

21 / 68    (Adware)
azhcaiisug.dll  (f5ca323fb770bba9a0ca4d66ec3642ef)

6 / 68      (Adware)

13 / 68    (Adware)
air95ed.exe  (750c55c21c2fe3858405d64e3cd100bb)

5 / 68      (Adware)
helper.dll  (5be87692efc136fb7524ce30a2e4c840)

5 / 68      (Adware)
kgeuqhj.dll  (9f528b3e354457c613568c699424cb39)

4 / 68      (Adware)
pjyfiipp.exe (Movie Master by Green Fire Software)  (e1663234315dab6fc03b9c6dfc9d5bf5)

4 / 68      (Adware)
bjlgakgm.exe (Movie Master by Green Fire Software)  (986212fea9ac1f4d2be449067cfd4b4c)

14 / 68    (Adware)
uninstall.exe  (f846f7f93dbb73513658388a467e5b54)

4 / 68      (Adware)
klbkfaushv.dll  (d1ded090670b268c6248cd53e0071532)

 
Latest 30 of 60 files

Downloads URLs for files signed by Green Fire Software.

7 / 68      (Adware)
http://cdn.airdlr10.com/downloads/offers/.../Setup.exe  (4a6320a8d399350efa0115187d22c0bb)

14 / 68    (Adware)

The following websites host and distribute files published by Green Fire Software.

The following certificate is also signed by Green Fire Software.

3DC7DF3234B2F2032E1A66D739CE9E0C  (Aug 07, 2014 to Nov 07, 2015)

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to Green Fire Software by VeriSign, Inc. on September 19, 2013 with the serial number '38e34fcc0fdd5e91fd5048a198aaabf1'.