LLC

Publisher Information

LLC is a software publisher located in Kiev, Ukraine*. The company is a primary distributor of unwanted software. Thre are 210 additional code signing certificates issued to this publisher.
Authority:
COMODO CA Limited

Valid from:
6/27/2015 2:00:00 AM

Valid to:
6/27/2016 1:59:59 AM

Subject:
CN="LLC ""SOFT-GLOBAL""", O="LLC ""SOFT-GLOBAL""", STREET="str. Zhelyabova, 8/4", L=Kiev, S=Kiev, PostalCode=03680, C=UA

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00b36870bf55993a07d317a20f776b7615

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Amonitize (M), PUP.Amonitize.OpenSource.Installer (M), PUP.Amonitize.OpenSource (M), PUP.Amonitize.OpenSour (M), PUP.Amonitize.Installer, PUP.Amonitize.Startup
100.00%

ESET NOD32
Win64/BitCoinMiner.AT potentially unsafe (variant), Win32/BitCoinMiner.BY potentially unsafe (variant), BAT/CoinMiner.B potentially unsafe
38.00%

Dr.Web
Trojan.BtcMine.711, Trojan.BtcMine.739
36.00%

avast!
Multi:BitCoinMiner-B [PUP], Win64:Malware-gen, Win32:Malware-gen
30.00%

IKARUS anti.virus
Trojan.BitCoinMiner, not-a-virus:RiskTool.BitCoinMiner, PUA.BitCoinMiner
30.00%

VIPRE Antivirus
Trojan.Win32.Generic
24.00%

Avira AntiVirus
TR/BitCoinMiner.2535704, TR/BitCoinMiner.1565096, TR/BitCoinMiner.4628256, TR/BitCoinMiner.2753832
24.00%

Baidu Antivirus
Hacktool.Win64.BitCoinMiner, Hacktool.Win32.BitCoinMiner
20.00%

Fortinet FortiGate
Riskware/BitCoinMiner, Adware/BitCoinMiner
20.00%

K7 AntiVirus
Unwanted-Program
20.00%

1 / 68      (Adware)
cpm.exe  (f8e8dd1349725ab0f74c3cbb8bebf2a9)

1 / 68      (Adware)
gpuminer-setup.exe (SGM - Setup by Open Source)  (663e1bf91635503f4c3daa07d401c7cd)

1 / 68      (Adware)
sgminer.exe (SG Miner by Open Source)  (f69e95532b636628cc065ee4c95d50cb)

1 / 68      (Adware)
cpuminer-gw64.exe  (ed3a77b734b9cc05b812959350b11498)

1 / 68      (Adware)
cpm.exe  (466cdaaa3d0209a69d27b9ab1f4cec7c)

1 / 68      (Adware)
gpuminer-setup.exe (SG Miner - Setup by Open Source)  (36e160c462433cc38e843147765609a2)

1 / 68      (Adware)
cpuminer-x86.exe (cpuminer)  (7b79d466713693ba2da60b951c493412)

1 / 68      (Adware)
cpm.exe  (3073c1e78a3356e25a90a6d05ae125c5)

8 / 68      (Adware)
gpuminer-setup.exe (SG Miner - Setup by Open Source)  (6a137c8438fdbbe17a6d31d1d6fdf32b)

1 / 68      (Adware)
gpuminer-setup.exe (SG Miner - Setup by Open Source)  (21ef8eaacea0e2f23e732b15540e5d22)

1 / 68      (Adware)
cpuminer-x86.exe (cpuminer)  (b3a3cc8213a056b342d5eeb7f15efacd)

1 / 68      (Adware)
cpuminer-x86.exe (cpuminer)  (658d8a26923763645f853dfdf25e54d8)

13 / 68    (Adware)
gpuminer-setup.exe (SGM - Setup by Open Source)  (65b34c7a433cee3d9bd78f544bbd3b58)

9 / 68      (Adware)
cpm.exe  (023edb98f6481cfd29beb947d2718cc3)

9 / 68      (Adware)
cpm.exe  (407bdf7825ce3c1924a60c5c1b831c32)

12 / 68    (Adware)
gpuminer-setup.exe (SGM - Setup by Open Source)  (d67b16053bad5b69e7cdd9c84bc278d0)

14 / 68    (Adware)
awhc4d6.tmp (Setup by Open Source)  (da6f91512b47e4db1eb6e89e665dd086)

12 / 68    (Adware)
gpuminer-setup.exe (SGM - Setup by Open Source)  (e12be3a5b3cd0206e4fd8ae2f0b5c601)

1 / 68      (Adware)
cpm.exe  (c7bc5940d131b0a3791eedb58c03097d)

14 / 68    (Adware)
setup.exe (Setup by Open Source)  (89b209c135918798113c4180d1387e25)

1 / 68      (Adware)
cpm.exe  (580ee6ba05d35d7d1f84a016c61b9e9b)

14 / 68    (Adware)
gpuminer-setup.exe (SGM - Setup by Open Source)  (222cb8d83ce818c6872a535b1d087826)

3 / 68      (Adware)
cpm.exe  (684e0ad6a6e56ff6cc674682d7f29720)

10 / 68    (Adware)
cpm.exe  (90885ab0783197cda02178a8438a2d73)

1 / 68      (Adware)
awh9b19.tmp (Setup by Open Source)  (3951c7867ace643babd9cfb927301e30)

3 / 68      (Adware)
cpm.exe  (fef3262f9bb4acf6ddf104a9da5160d6)

1 / 68      (Adware)
gpuminer-setup.exe (SGM - Setup by Open Source)  (a0ee5e880102d5a77bddc25cb1b389b9)

1 / 68      (Adware)
cpuminer-x11-11.exe (Setup by Open Source)  (56c1c20fc886714fd237ebdfaea2deb4)

1 / 68      (Adware)
cpm.exe  (df103b317b84584134d9ae1cc988e462)

3 / 68      (Adware)
cpm.exe  (2d686d8e1f85fb737453d2764a177320)

 
Latest 30 of 52 files

Downloads URLs for files signed by LLC .

1 / 68      (Adware)
http://113.171.224.244/.../cdn.exe  (2da584f8ff6be118df095e45aaab17e0)

1 / 68      (Adware)
http://setup-14b7.kxcdn.com/setup.exe  (e5e04fde861d5b97f6811fd8f1a97950)

1 / 68      (Adware)
http://cdn-14b7.kxcdn.com/cdn.exe  (2da584f8ff6be118df095e45aaab17e0)

15 / 68    (Adware)
http://cdn-14b7.kxcdn.com/cdn.exe  (7f0823fecb91a7d3498e436deda3baab)

1 / 68      (Adware)
http://setup-14b7.kxcdn.com/setup.exe  (720b53b6e05c822b6e4e4a97759bf6ae)

14 / 68    (Adware)
http://cdn-14b7.kxcdn.com/cdn.exe  (cade1732073db673069510862b6d76f2)

14 / 68    (Adware)
http://setup-14b7.kxcdn.com/setup.exe  (da6f91512b47e4db1eb6e89e665dd086)

1 / 68      (Adware)
http://setup-14b7.kxcdn.com/setup.exe  (3951c7867ace643babd9cfb927301e30)

21 / 68    (Adware)
http://cdn-14b7.kxcdn.com/cdn.exe  (c70bf606bbde794b8a71502a628fe04c)

1 / 68      (Adware)
http://setup-14b7.kxcdn.com/setup.exe  (56c1c20fc886714fd237ebdfaea2deb4)

The following websites host and distribute files published by LLC .

The certificates below are also signed by LLC .

00FE7B351079FD02F4C109D42C37F5C27A  (Jun 29, 2015 to Jun 29, 2018)

2A7DD7BCCEB648F185DD5A9432FE186D  (Oct 20, 2016 to Sep 04, 2017)

00F5EC479E1B7B3F9CEC13CFC8EDCC113C  (Sep 08, 2016 to Sep 03, 2017)

1A810FEC80052E26B932F3A315075709  (Aug 29, 2016 to Aug 30, 2017)

00F7244EEE637B20E588B65F59A244BFE1  (Aug 22, 2014 to Aug 22, 2017)

0CD9A2B4BA92EEB65DD3227ED6D3AF1E  (Jul 19, 2016 to Aug 22, 2017)

5A0289F4CB40DCA36F3E58617454A7C8  (Aug 01, 2016 to Aug 02, 2017)

20D09F2559BFDF0848AD8BC883379F18  (Oct 26, 2016 to Jul 23, 2017)

00CB1CD5925F9E2F5B0B456369E2C54C8B  (Jul 08, 2016 to Jul 09, 2017)

27DBE55E53BFEEB479C49E640598529F  (Aug 17, 2016 to Jul 09, 2017)

10 of 210 code signing certificates issued

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to LLC by COMODO CA Limited on June 27, 2015 with the serial number '00b36870bf55993a07d317a20f776b7615'.