Hoolapp

Publisher Information

Hoolapp is a brand of the Sambreel/Yontoo group, a web advertising company located in Carlsbad, CA. The company is a primary distributor of unwanted software. It is part of the Yontoo/Sambreel group and distributes web browser add-ons, typically potentially unwanted and adware in nature, that are designed to modify a user's typical search beahvior as well as display context and popup advertising.
Remove Hoolapp Malware - Powered by Reason Core Security
Authority:
COMODO CA Limited

Valid from:
11/20/2012 1:00:00 AM

Valid to:
11/21/2015 12:59:59 AM

Subject:
CN=Hoolapp, O=Hoolapp, STREET=63 Rothschild Blvd., L=Tel-Aviv, S=NA, PostalCode=65785, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
1205b27293082834e7a5d38ae9d121b7

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.UpdateProc.Task.K, PUP.Task.Hoolapp.H, PUP.Hoolapp.J, PUP.Startup.Hoolapp.H, PUP.Hoolapp.H, PUP.Yontoo, PUP.Yontoo.Hoolapp (M)
100.00%

ESET NOD32
Win32/DealPly (variant), Win32/InstallCore.BI (variant), Win32/InstallCore.AZ (variant), Win32/InstallCore.BY (variant)
41.67%

Qihoo 360 Security
HEUR/Malware.QVM05.Gen, HEUR/Malware.QVM20.Gen, Win32/Virus.Adware.94c
41.67%

Malwarebytes
PUP.Optional.InstallCore.A
33.33%

Rising Antivirus
PE:Malware.XPACK-LNR/Heur!1.5594, PE:Malware.InstallCore!6.4
33.33%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud)
25.00%

Boost by Reason
Optional.Task.Hoolapp.K
25.00%

F-Prot
W32/InstallCore.G4.gen, W32/InstallCore.R.gen, W32/InstallCore.W.gen
25.00%

Dr.Web
Adware.InstallCore.118, Adware.InstallCore.122, Adware.InstallCore.69
25.00%

ESET NOD32
Win32/DealPly.H potentially unwanted application, Win32/InstallCore.BD potentially unwanted application, Win32/InstallCore.K potentially unwanted application
25.00%

1 / 68      (Adware)
hoolapp.exe  (d20727f6e8b45e01b1a980beae46eae3)

11 / 68    (Adware)
hoolapp.exe  (f1287ec4b18c9deecdad8ab8323ffad2)

9 / 68      (Adware)
hoolapp.exe  (a9f3ea40e0afca312fda71281b02efac)

3 / 68      (Adware)
updaterex.exe  (897a24a8ea4e8f5d79dc8ccb21a363fc)

5 / 68      (Adware)
hoolapp.exe  (2e7a956409f8bf399cc3965936a9c619)

4 / 68      (Adware)
hoolapp.exe  (27f1248215fba029ae302790e54ccd0f)

3 / 68      (Adware)
updatetask.exe  (289855f5bb31f678df472ba0a790c947)

2 / 68      (Adware)
hoolapp.exe  (2954aca20faf2022fad311dac4a973ef)

1 / 68      (Adware)
updaterex.exe  (7f8caab43177a9ea3fc2d6372354f061)

5 / 68      (Adware)
updatetask.exe  (b794e10f1d1d55cf685ab5567e662baa)

7 / 68      (Adware)
hoolapp.exe  (0fa15b1adaaa642ffbfe0ae9e959af51)

4 / 68      (Adware)
updatetask.exe  (58fc609888aab15b5dca23e5e521a5e1)

Downloads URLs for files signed by Hoolapp.

4 / 68      (Adware)
http://www.hoolapp.com/.../hoolapp.exe  (27f1248215fba029ae302790e54ccd0f)

The following websites host and distribute files published by Hoolapp.

Remove Hoolapp Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Hoolapp by COMODO CA Limited on November 20, 2012 with the serial number '1205b27293082834e7a5d38ae9d121b7'.