Insinooritoimisto J. Rimppi Oy

Publisher Information

Insinooritoimisto J. Rimppi Oy is a software publisher located in Ojakkala, Vihti in Finland*. The company is a primary distributor of unwanted software. Thre are 2 additional code signing certificates issued to this publisher.
Authority:
GlobalSign nv-sa

Valid from:
5/11/2012 7:20:44 PM

Valid to:
6/11/2013 7:20:44 PM

Subject:
CN=Insinooritoimisto J. Rimppi Oy, O=Insinooritoimisto J. Rimppi Oy, L=Ojakkala, S=Vihti, C=FI

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
112175d878fc1fceb2c4d7e68081f7158b8f

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.InsinooritoimistoJRimppiOy, PUP.InsinooritoimistoJRimppiOy (M)
100.00%

Kaspersky
not-a-virus:HEUR:Downloader.Win32.Walta
53.85%

ESET NOD32
Win32/Adware.Toolbar.Webalta.CL (variant), Win32/Adware.Toolbar.Webalta.CN (variant), Win32/Adware.Toolbar.Webalta.CM (variant)
53.85%

Dr.Web
Adware.Downware.1014, BackDoor.Evit.45, Adware.Downware.1040, Adware.Downware.1172, Adware.Downware.origin
46.15%

MicroWorld eScan
Trojan.Generic.8785891, Trojan.Generic.8790155, Adware.Generic.396331, Trojan.Generic.9307100, Adware.Generic.511287
38.46%

NANO AntiVirus
Trojan.Win32.Toolbar.bjsizg, Trojan.Win32.Evit.bjckiy, Trojan.Win32.Walta.cqlqwp, Trojan.Win32.Toolbar.bkcuey, Trojan.Win32.Toolbar.bidzxw
38.46%

Bitdefender
Trojan.Generic.8785891, Trojan.Generic.8790155, Adware.Generic.396331, Trojan.Generic.9307100, Adware.Generic.511287
38.46%

Emsisoft Anti-Malware
Trojan.Generic.8785891, Trojan.Generic.8790155, Adware.Generic.396331, Trojan.Generic.9307100, Adware.Win32.Toolbar.Webalta.AMN
38.46%

Comodo Security
ApplicUnwnt
38.46%

VIPRE Antivirus
Trojan.Win32.Generic
38.46%

1 / 68      (Adware)
mp3file-click-for-extract_17629700_85nfnfhrf.exe  (572e6ed5d87b244ece6344744b66d03d)

1 / 68      (Adware)
download mp3 file_15676734_451.exe  (acfb06aa6c2acdd72c898d4ee636c14b)

1 / 68      (Adware)
metro__2013_bdrip__19199415_291.exe  (4458c226a91938a23f5184c6a7800f29)

1 / 68      (Adware)
office2010rus_15928167_206.exe  (3121cc2c02eb05be26007b183e568a88)

1 / 68      (Adware)
blitskrig_2__2005_pc_russkiy__18298787_291.exe  (04e4ea906645841c02a363d24ab14111)

1 / 68      (Adware)
office2010rus_16185460_206.exe  (40f35ac2095c88f4f63d190e059328ec)

7 / 68      (Adware)
mp3file-click-for-extract_16746499_85.exe  (662ce66e9efcc829546eb6cea663f7f4)

17 / 68    (Adware)
29.0.1521.3_chrome_installer_20713737_206.exe  (ddf322f254346b98acc2797f6d3ed65f)

27 / 68    (Adware)
28.0_chrome_installer_20215052_206.exe  (e067fd06c9e4452e38bb9b31ee151315)

6 / 68      (Adware)
download-game-62688_17524709_276.exe  (39f4a9d59070c88e9e501fca301fd2e4)

22 / 68    (Adware)
winrar_17873154_0162.exe  (25bfa099cc369fc5e2599e011147b023)

21 / 68    (Adware)
w1_17223935_162.exe  (9159a27cc6c2ca8cd81bb4140d4b4858)

26 / 68    (Adware)
w1_17223935_0162.exe  (182b4dfd47a5259189e66319d1f45c4e)

The certificates below are also signed by Insinooritoimisto J. Rimppi Oy.

0100000000012F2A32B2B3  (Apr 06, 2011 to May 06, 2012)

010000000001277774CAF1  (Mar 19, 2010 to Mar 20, 2011)

* Note, the details and description above are based on the code signing digital signature issued to Insinooritoimisto J. Rimppi Oy by GlobalSign nv-sa on May 11, 2012 with the serial number '112175d878fc1fceb2c4d7e68081f7158b8f'.