Ideakee Inc

Publisher Information

Ideakee Inc is a software developer located in Guilin, Guangxi in China*. The company is a primary distributor of unwanted software. Thre are 2 additional code signing certificates issued to this publisher.
Remove Ideakee Inc Malware - Powered by Reason Core Security
Authority:
COMODO CA Limited

Valid from:
9/18/2012 6:00:00 PM

Valid to:
9/19/2013 5:59:59 PM

Subject:
CN=Ideakee Inc, O=Ideakee Inc, STREET="1104# Asphodel Pavilion,Hengxiang Garden 18 LIjiangRoad", L=Guilin, S=Guangxi, PostalCode=541004, C=CN

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00bcb072086df6a3229c9893ee4873cdfa

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Optional.Installer.I, PUP.Optional.Ideakee.G, PUP.Optional.Ideakee.C, PUP.Optional.Installer.AA, PUP.Optional.Installer.T, PUP.Installer.Ideakee.I, PUP.Ideakee.M, PUP.Ideakee.I, PUP.Installer.Ideakee.Y, PUP.Ideakee (M), PUP.Ideakee.Installer (M)
100.00%

Dr.Web
riskware program Program.Unwanted.157
14.00%

Trend Micro House Call
TROJ_GEN.F47V0528, TROJ_GEN.F47V0725
4.00%

ESET NOD32
Win32/RegistryNuke (variant), Win32/AdvancedFileFixer.A potentially unwanted (variant)
4.00%

Bkav FE
W32.HfsAdware
2.00%

1 / 68      (Adware)

1 / 68      (Adware)
unins000.exe  (9409957d01aa5ec72b011e1ed27b66b6)

1 / 68      (Adware)
registrynuke.exe  (622d5840ee4cbfd18bb7488a097dc0b4)

1 / 68      (Adware)

1 / 68      (Adware)
unins000.exe  (62aba32252c611150c25845c1161ab85)

1 / 68      (Adware)
advancedfilefixer.exe  (a177ceef08e61624fd195e67164b532b)

1 / 68      (Adware)
unins000.exe  (f014f48647f5455df6e0bc6a8870d913)

1 / 68      (Adware)
advancedfilefixer.exe  (83f70ad3a55b1a03887fa3f904f8f5e6)

2 / 68      (Adware)
unins000.exe  (769211b957ac858820b223b07c876d9f)

2 / 68      (Adware)
unins000.exe  (4ac8200e16aa866ef3126a1e9df4455b)

1 / 68      (Adware)
duplicatecure.exe  (928b171dec8c93d0d5a43c4d1b71b97a)

1 / 68      (Adware)
unins000.exe  (4097fca2d0fbab3b1b2a011202eda898)

1 / 68      (Adware)
ds.exe  (a1f7a27c460db63c54c42424729f5fe2)

1 / 68      (Adware)
dllsmith.exe  (0907df8c432638aa8357bac3d367c0fc)

1 / 68      (Adware)
unins000.exe  (cefe06852960659e93b40e77bc8b02c8)

3 / 68      (Adware)
advancedfilefixer.exe  (8977888295a6d1dbe6e49f2f27bc9862)

1 / 68      (Adware)
a2511129.exe  (d582b5c8a92202b1c31c7d9d241f3352)

1 / 68      (Adware)
a2511128.exe  (e3f947e6247ff05941ce1e6acad69c1f)

1 / 68      (Adware)
taskschedule.dll (TaskSche Dynamic Link Library)  (59500f16956a520b3326ee7f612c5458)

1 / 68      (Adware)
regdefrag.dll (RegDefra Dynamic Link Library)  (9a44deda18fb5ee98e3026742d3ee8c8)

1 / 68      (Adware)
regcleandll.dll (RegClean DLL)  (3a5e99c68dadd3a28b7f11bf48064a49)

1 / 68      (Adware)
regbackup.dll  (50bc0e423e2305726114b5b3b9ef9892)

2 / 68      (Adware)
ntregdfrg64.exe  (20d7df5c2c5bb2d474c63dd6b786d01c)

1 / 68      (Adware)
ntregdfrg32.exe  (c3ea33efb79c1de81fb2e2bc62684afe)

1 / 68      (Adware)
databasedll.dll (DataBase Dynamic Link Library)  (56588587568fdcca2bc562c8987840f8)

1 / 68      (Adware)
Common.dll (Common Dynamic Link Library)  (4321967658280bb0f4aec697a0831822)

1 / 68      (Adware)
rc.dll (RegClean DLL)  (5a18910bde08b6245d26def5937c3869)

1 / 68      (Adware)
pp.dll (Evidence Dynamic Link Library)  (a54dba814bbb85356e0039cd9f30b987)

1 / 68      (Adware)
jf.dll (JunkFile Dynamic Link Library)  (f2de0189a678615f45dbe3fb3395f001)

1 / 68      (Adware)

 
Latest 30 of 123 files

Downloads URLs for files signed by Ideakee Inc.

1 / 68      (Adware)
http://www.specialuninstaller.com/DuplicateCure_Setup.exe  (f0e4dc4fe789c819ccdc6c9eb78566b7)

2 / 68      (Adware)
http://maxuninstaller.com/MaxUninstaller_Setup.exe  (00a6a53f39b8533f5e0514f27544e3ef)

1 / 68      (Adware)

1 / 68      (Adware)
http://maxuninstaller.com/DuplicateCure_Setup.exe  (f0e4dc4fe789c819ccdc6c9eb78566b7)

1 / 68      (Adware)
http://duplicatecure.com/DuplicateCure_Setup.exe  (f0e4dc4fe789c819ccdc6c9eb78566b7)

The following websites host and distribute files published by Ideakee Inc.

The certificates below are also signed by Ideakee Inc.

00BFB37ABE3F235073942F877A67382940  (Oct 11, 2013 to Oct 11, 2016)

00F236A9C30C8BD77E404E7062DC938D47  (Sep 26, 2011 to Sep 26, 2012)

The following publishers (by Authenticode signature organization name) are related.

Remove Ideakee Inc Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Ideakee Inc by COMODO CA Limited on September 18, 2012 with the serial number '00bcb072086df6a3229c9893ee4873cdfa'.