JAMIcommunication

Publisher Information

JAMIcommunication is a software developer located in Seoul, Korea*. The publisher primarily developes software that can be classified as adware. There is one additional code signing certificate issued to this publisher.
Remove JAMIcommunication Malware - Powered by Reason Core Security
Authority:
Thawte, Inc.

Valid from:
11/29/2012 9:00:00 AM

Valid to:
12/30/2013 8:59:59 AM

Subject:
CN=JAMIcommunication, OU=Dev Team, O=JAMIcommunication, L=Seoul, S=Seoul, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
6526c78972b32cb7fabdef824a16b2ed

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.JAMIcommunication.K, PUP.Startup.JAMIcommunication.H, PUP.JAMIcommunication.J, PUP.JAMIcommunication.H, PUP.JAMIcommunication.E, PUP.JAMIcommunication (M)
100.00%

Avira AntiVirus
Adware/Adware.BCF.34, Adware/Graftor.121971.5, TR/Strictor.21324.2, Adware/Graftor.121971.6, TR/Graftor.109906.20, Adware/Kraddare.HH.15
86.36%

ESET NOD32
Win32/Adware.Kraddare.HH (variant), Win32/AdWare.Kraddare.JF (variant)
86.36%

McAfee
Artemis!B32F48469EF0, Artemis!FAFCF858EE0A, Artemis!F65551CEA3A9, Artemis!F7890AB44582, Artemis!64A9B172594F, Artemis!FDB8F291412B, Artemis!D7FFC80A188D, Artemis!E59F00359BDF
81.82%

avast!
Win32:Adware-BCF [Adw]
81.82%

McAfee Web Gateway
Artemis!B32F48469EF0, Artemis!FAFCF858EE0A, Artemis!F65551CEA3A9, Artemis!F7890AB44582, Artemis!64A9B172594F, Heuristic.BehavesLike.Win32.Suspicious-PKR.G
81.82%

IKARUS anti.virus
Trojan-Spy.Win32.Banker.JU, AdWare.Win32.Dpoint, Win32.SuspectCrc, PUA.Kraddare, Trojan.Agent4, Trojan.Win32.Spy
81.82%

Comodo Security
ApplicUnwnt, UnclassifiedMalware
77.27%

Jiangmin
Trojan/Generic.bnuvy, Trojan/Generic.bolyp, Trojan/Agentb.fos
77.27%

AhnLab V3 Security
PUP/Win32.SignKey, PUP/Win32.SearchKeys
77.27%

1 / 68      (PUP)
signkey.exe  (1f4b8c0f520412a6b2004437795cfaaf)

1 / 68      (PUP)
signkey.exe  (c4abc9763f8bd95eba24fb5369c28624)

1 / 68      (PUP)
e_signkey.exe  (eeaec87565089e9823797826ea8dc333)

36 / 68    (PUP)
signkey.exe  (c14c09863590f001aa5e66b4701e82cd)

16 / 68    (PUP)
e_signkey.exe  (e59f00359bdf32dff8079f85b712e801)

38 / 68    (PUP)
e_signkey.exe  (d863a46c38965867b1b32dcc1a83ecd0)

37 / 68    (PUP)
r.exe  (3a51fca2a5d5015add682572f96931c9)

29 / 68    (PUP)
88089.malware  (c074b6bd8c4b35ec0a4a90736716c7e1)

11 / 68    (PUP)
64146.malware  (c8821de4a42084a6edf936c935bc7b74)

19 / 68    (PUP)
54299.malware  (d7ffc80a188d87053b7bfb3589559419)

31 / 68    (PUP)
1570.malware  (a4bf9c02b60268210ed33050cffd1c04)

34 / 68    (PUP)
ie_signkey.exe  (1ad061b4de619f66f6d2a34663583614)

20 / 68    (PUP)
skun.exe  (15fac776740583f04439100dbd2ce1e3)

39 / 68    (PUP)
signkey.exe  (cd5df960232884a8df786e1d33e989f5)

23 / 68    (PUP)
iesignkey.exe  (6733d1de26efcadfc1216bce3f5029ea)

33 / 68    (PUP)
e_signkey.exe  (8f86eab30cf642f2d6e5277f53716d65)

36 / 68    (PUP)
e_signkey.exe  (fdb8f291412b1496130e93505f96617d)

19 / 68    (PUP)
skun.exe  (64a9b172594f2cc9837ba0d83e839c17)

34 / 68    (PUP)
signkey.exe  (f7890ab445828f1b13cd3dd1f9f319d8)

29 / 68    (PUP)
iesignkey.exe  (f65551cea3a9b35e107575139d754d10)

34 / 68    (PUP)
signkey.exe  (fafcf858ee0ad9ddbcc100f75a2a93cf)

21 / 68    (PUP)
signkeyiex.exe  (b32f48469ef0564877e4c1fea32a1201)

The following certificate is also signed by JAMIcommunication.

560752FB0B1336D4A3AFB0DCCD1EE440  (Nov 29, 2011 to Nov 29, 2012)

Remove JAMIcommunication Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to JAMIcommunication by Thawte, Inc. on November 29, 2012 with the serial number '6526c78972b32cb7fabdef824a16b2ed'.