Kuzma Safonov

Publisher Information

Kuzma Safonov is a software developer located in UZ*. The publisher primarily developes software that can be classified as adware. There is one additional code signing certificate issued to this publisher.
Remove Kuzma Safonov Malware - Powered by Reason Core Security
Authority:
COMODO CA Limited

Valid from:
2/14/2012 7:00:00 PM

Valid to:
2/14/2013 6:59:59 PM

Subject:
CN=Kuzma Safonov, O=Kuzma Safonov, C=UZ

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00d5508d7420aef0f616caa5346e80b7e0

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.KuzmaSafonov.N, PUP.KuzmaSafonov.V, PUP.KuzmaSafonov.S, PUP.KuzmaSafonov.b, PUP.KuzmaSafonov.U, PUP.KuzmaSafonov.P, PUP.KuzmaSafonov.O, PUP.KuzmaSafonov.I, PUP.Installer.KuzmaSafonov, PUP.KuzmaSafonov.Installer (M), PUP.KuzmaSafonov (M)
100.00%

Dr.Web
Adware.InstallCore.72, Adware.InstallCore.53, Adware.Funmoods.1, Adware.InstallCore.45, Adware.Shopper.807, Adware.Funmoods.2, Adware.InstallCore.75
30.00%

ESET NOD32
Win32/InstallCore.AY (variant), Win32/InstallCore (variant), Win32/InstallCore.AU (variant), Win32/Toolbar.Escort, Win32/Toolbar.Escort (variant), Win32/InstallCore.BA (variant)
22.00%

Avira AntiVirus
ADWARE/InstallCore.Gen, Adware/Shopper.15065344
14.00%

Vba32 AntiVirus
Malware-Cryptor.InstallCore.9, Adware.InstallCore.gen, BScope.Malware-Cryptor.InstallCore.2692, BScope.Malware-Cryptor.InstallCore.2691
14.00%

F-Prot
W32/InstallCore.C.gen, W32/InstallCore.P.gen
8.00%

ByteHero BDV
Trojan-Downloader.win32.Delf.xoq
6.00%

Trend Micro House Call
TROJ_GEN.RCBH1K7, TROJ_GEN.RCBH1B5
4.00%

AhnLab V3 Security
PUP/Win32.InstallCore, Adware/Win32.InstallCore
4.00%

avast!
Win32:InstallCore-FL [PUP], Win32:Dropper-gen [Drp]
4.00%

1 / 68      (PUP)
fvdsuite_installer.exe  (2d6716aa24c1c777dc6bd8dcbeda624a)

1 / 68      (PUP)

1 / 68      (PUP)
fvdsuite_installer.exe  (614f86b34b652e7c2656a9324e159bf9)

1 / 68      (PUP)
~hotfix-downloader.exe (FVD Downloader)  (41feb02c05c9c6df01ff71982f6acf04)

1 / 68      (PUP)
fvdsuite_installer.exe.exe  (43f5f6351d939b73462e54c0a2d5ddba)

1 / 68      (PUP)
player.exe  (ab8986fe14306cb30ffd17dc754b3a5c)

1 / 68      (PUP)
ffmpeg.exe  (42325257058c8551bd9bc0f83ab23795)

1 / 68      (PUP)
ffmpeg-capture.exe  (70dc67390e6fd5646c54c11d0e256ea8)

1 / 68      (PUP)
fvdsuite.exe  (b0f0c4cbafdb90b91d3550adcb082a4c)

1 / 68      (PUP)
a0027648.exe  (c14109f00e7f6359d79e4ee05f70cc5f)

1 / 68      (PUP)
~hotfix-downloader.exe (FVD Downloader)  (458f76f13c690964d41dfacb2c8a3890)

1 / 68      (PUP)

1 / 68      (PUP)
fvd recorder.exe  (1db47ba48fa9f4c7c7b390a0f4689449)

1 / 68      (PUP)

1 / 68      (PUP)
hwatch.exe  (91fde72563108d40e5cbcfbfe7d9c52e)

2 / 68      (PUP)
fvdbin.exe (FVDSuite by flashvideodownloader.org)  (f623404f32052e2df542bef4c35ca4b4)

1 / 68      (PUP)

1 / 68      (PUP)
fvd-suite.exe (FVD Suite by flashvideodownloader.org)  (68e4b15d501974c521e40359b9d5bc42)

10 / 68    (PUP)
fvd-converter-release.exe  (f172d8f70250d18736501caa0d40164e)

5 / 68      (PUP)

2 / 68      (PUP)
fvd-converter-release.exe  (5c8d3661d24e0e34da36f748468c03e1)

3 / 68      (PUP)
fvdsuite_installer.exe  (983ff773c9fa6164390208acb3dc9d02)

5 / 68      (PUP)

3 / 68      (PUP)

1 / 68      (PUP)
~update.exe (FVD Player)  (ff6357c0fbfe957a1ce17f13e00fe98b)

2 / 68      (PUP)
fvdplayer.exe (FVD Player by flashvideodownloader.org)  (2c3e42d2239f572cd006e4846ce0d1cf)

7 / 68      (PUP)
fvdsuite_installer.exe  (49dc3315b8bbf3f767720847e11882fc)

1 / 68      (PUP)
fvd downloader.exe  (74127afbae6b344da43701373819ce29)

1 / 68      (PUP)
fvdsuite.exe  (0a5c12f56611cf1c57de63852bd86741)

2 / 68      (PUP)

 
Latest 30 of 72 files

Downloads URLs for files signed by Kuzma Safonov.

2 / 68      (PUP)
http://fvd-converter.com/fvdconverter15.exe  (b55684233ae81ae44897ae4d9a8ae4fa)

2 / 68      (PUP)
http://fvd-converter.com/download  (fvdconverter15.exe)

The following websites host and distribute files published by Kuzma Safonov.

The following certificate is also signed by Kuzma Safonov.

3D3E9E49F69694F758C95CA1A2192AF2  (Mar 06, 2013 to Mar 06, 2014)

The following publishers (by Authenticode signature organization name) are related.

Remove Kuzma Safonov Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Kuzma Safonov by COMODO CA Limited on February 14, 2012 with the serial number '00d5508d7420aef0f616caa5346e80b7e0'.