JINHUA 9158 NETWORK SCIENCE AND TECHNOLOGY CO.,LTD.

Publisher Information

JINHUA 9158 NETWORK SCIENCE AND TECHNOLOGY CO.,LTD. is a software developer located in Jinhua, Zhejiang in China*. The publisher primarily developes software that can be classified as adware. There is one additional code signing certificate issued to this publisher.
Authority:
VeriSign, Inc.

Valid from:
8/13/2009 8:00:00 AM

Valid to:
8/13/2012 7:59:59 AM

Subject:
CN="JINHUA 9158 NETWORK SCIENCE AND TECHNOLOGY CO.,LTD.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="JINHUA 9158 NETWORK SCIENCE AND TECHNOLOGY CO.,LTD.", L=Jinhua, S=Zhejiang, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1fcd2be9a7d4488439c3df8b4dd2e8ef

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.JINHUA9158NETWORKSCIENCEANDTECHNOLOGYCOLTD.I, PUP.JINHUA9158NETWORKSCIENCEANDTECHNOLOGYCOLTD.AA, PUP.Installer.JINHUA9158NETWORKSCIENCEANDTECHNOLOGYCOLTD.P, PUP.JINHUA9158NETWORKSCIENCEANDTECHNOLOGYCOLTD.N, PUP.JINHUA9158NETWORKSCIENCEANDTECHNOLOGYCOLTD.R, PUP.JINHUA9158NETWORKSCIENCEANDTECHNOLOGYCOLTD.H, PUP.JINHUA9158NETWORKSCIENCEANDTECHNOLOGYCOLTD.K, PUP.JINHUA9158NETWORKSCIENCEANDTECHNOLOGYCOLTD.Installer (M), PUP.JINHUA9158NETWORKSCIENCEANDTECHNOLOGYCOLTD (M)
100.00%

Dr.Web
Trojan.DownLoad2.31168
11.11%

F-Prot
W32/SelfStarterInternetTrojan
5.56%

Commtouch SDK
W32/SelfStarterInternetTrojan!Maximus
5.56%

Antiy Labs AVL
Worm/Win32.WhiteIce.gen
5.56%

Vba32 AntiVirus
Signed-Adware.Hao123.BaiduBeijingCo
5.56%

VIPRE Antivirus
Trojan.Win32.Generic
5.56%

1 / 68      (PUP)
ddzwz_tg233_17973.exe  (e68e8dfe895f76affdbc17af6c258318)

1 / 68      (PUP)
9158chat_ktv9yin.exe  (f6ef52a607bb217e8648f01c5f0129eb)

1 / 68      (PUP)
getppid.exe  (52292c58d639fff19af73456ff1fdbbe)

1 / 68      (PUP)
GameSave.EXE  (4be2339aeb894c3fe29802d74b77f3c1)

1 / 68      (PUP)
DDVAssistant.EXE  (31ac9f5573524959f27e7031e01fd6b3)

2 / 68      (PUP)
c33e9904fbb8ba70f16ece6d22228949d1252188.mddata  (c59a59d8a815a2e3ed546a893011b35a)

1 / 68      (PUP)
getppid.exe  (10bf63633552a1af0a70770fcfb393f5)

1 / 68      (PUP)
99cu_a009_0.exe  (3fee5d946f4ab87bc599079f8b7cce75)

3 / 68      (PUP)
happy88_b011_---.exe  (6da81b78b9cc9f312f77b56f1d04e46d)

2 / 68      (PUP)
9158chat_392340.exe  (ac73a1200ebbf49bd53b91472ac33dca)

1 / 68      (PUP)
InstallDetect.DLL (InstallDetect Module)  (2a19fbac9db9a28f8704f47bf566f7bb)

1 / 68      (PUP)
DDVInstall.EXE  (1e5ca9c6466a18f1f12294ac8d26c670)

1 / 68      (PUP)
getppid.exe  (04794ee886c66d699920035e797633bb)

1 / 68      (PUP)
9158modulemanager.exe (MyListCtrl Application)  (404761d7ad7a8c85b5a47d7f9e648ad2)

1 / 68      (PUP)

3 / 68      (PUP)
igamel_setup_tg.exe  (0251a11e8d34ce658afe95a8a41cbcdb)

2 / 68      (PUP)
haoliao_haoliao439723_cclm.exe  (9094bb7901ab72cb00bdac73a6dd69d4)

1 / 68      (PUP)
IdleTrac.dll (IdleTracker by www.com.cn)  (574893be69579ab46ee04dee456b86a1)

Downloads URLs for files signed by JINHUA 9158 NETWORK SCIENCE AND TECHNOLOGY CO.,LTD..

1 / 68      (PUP)
http://tg.01lm.com/9158chat_ktv9yin.exe  (f6ef52a607bb217e8648f01c5f0129eb)

1 / 68      (PUP)
http://jh.01lm.com/.../99CU_A009_0.exe  (3fee5d946f4ab87bc599079f8b7cce75)

3 / 68      (PUP)
http://jh.01lm.com/.../Happy88_B011_***.exe  (6da81b78b9cc9f312f77b56f1d04e46d)

The following websites host and distribute files published by JINHUA 9158 NETWORK SCIENCE AND TECHNOLOGY CO.,LTD..

The following certificate is also signed by JINHUA 9158 NETWORK SCIENCE AND TECHNOLOGY CO.,LTD..

1AF586D664D4AD1F05524FD9B3BCE34C  (May 27, 2012 to Aug 27, 2015)

* Note, the details and description above are based on the code signing digital signature issued to JINHUA 9158 NETWORK SCIENCE AND TECHNOLOGY CO.,LTD. by VeriSign, Inc. on August 13, 2009 with the serial number '1fcd2be9a7d4488439c3df8b4dd2e8ef'.