MoCo Media

Publisher Information

MoCo Media is a software publisher located in Ekaterinburg, Russia*. There is one additional code signing certificate issued to this publisher.
Authority:
Thawte, Inc.

Valid from:
6/28/2012 6:00:00 AM

Valid to:
8/28/2014 5:59:59 AM

Subject:
CN=MoCo Media, OU=IT, O=MoCo Media, L=Ekaterinburg, S=Ekaterinburg, C=RU

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
372f28a7fa989110d91f051a51f463af

Status:
Inconclusive detections from multiple engines

Scan engine
Details
Detections

Trend Micro House Call
TROJ_GEN.F47V1223, TROJ_GEN.F47V0527, Suspicious_GEN.F47V0725, TROJ_GEN.R047H09L914, TROJ_GEN.R047H09LK14
33.33%

Rising Antivirus
PE:Malware.XPACK/RDM!5.1
20.00%

IKARUS anti.virus
Win32.SuspectCrc
20.00%

ESET NOD32
Detection.Undefined
6.67%

Norman
Gen:Variant.Strictor.70821
6.67%

0 / 68
dgvee77.exe  (936e0b17387cf4892f5cc1ed66d04193)

0 / 68
dgvc553.exe  (c94a5362559988d56da4d236c6b21f04)

0 / 68
drugvokrug_win.exe (drugvokrug_win by MoCo Media)  (c44be7f371f61e09e0d4134b0f8a00d1)

0 / 68
dgv20.exe  (3b0cc27804c4d803ee6bf24dcdd8ddd4)

0 / 68
drugvokrug_win.exe (drugvokrug_win by MoCo Media)  (e16ef47180fe2acf9fc188ea3d5c81df)

0 / 68
dgv1c8.exe  (4e4352ed45fb4d13df530c18882166e1)

0 / 68
updater.exe  (2b73410bd15dc33337f9079d137bd2fb)

0 / 68
drugvokrug.exe  (23c852772a76184b5fc9e8192ed7d404)

0 / 68
dgv66.exe  (f53055f867c811772653327733063647)

0 / 68
drugvokrug_adm.exe (drugvokrug_adm by MoCo Media)  (f1722a130b74c41e9b7e826aac7e702b)

2 / 68
drugvokrug.exe  (e0ac653b5340d18143cd287f606087cc)

0 / 68
dgv8f8e.exe  (226c7a2591857218d827eb761841ffe7)

0 / 68
drugvokrug_win.exe (drugvokrug_win by MoCo Media)  (7de0e4e75d19ba746ccb6bfd26c8c4a8)

0 / 68
dgvf2ad.exe  (c85757d89669b2f3ae7dd6b17527f5e1)

1 / 68
drugvokrug.exe  (10f4aba491a2359a6ac14d1ce082faa1)

0 / 68
dgv785e.exe  (5dc300657b5c5d4925372d905f75be44)

0 / 68
drugvokrug_win.exe (drugvokrug_win by MoCo Media)  (30a9ef200c145980e822a4d7c0ff0173)

0 / 68
drugvokrug_win.exe (drugvokrug_win by MoCo Media)  (5ce76b950523d1a06054300d3f332b8c)

0 / 68
drugvokrug_win.exe (drugvokrug_win by MoCo Media)  (ddeb4f0ab04631e9d0c35f834bf43ba5)

0 / 68
drugvokrug_win.exe (drugvokrug_win by MoCo Media)  (0ae409463c3e24651a3f440703936463)

0 / 68
drugvokrug_nu.exe (drugvokrug_nu by MoCo Media)  (ce4c136086241f2d7cac3344366fea51)

0 / 68
drugvokrug_nu.exe (drugvokrug_nu by MoCo Media)  (a15ba8d1d813b33dd540f5658beea897)

0 / 68
drugvokrug_adm.exe (drugvokrug_adm by MoCo Media)  (247a064c9072645e356b7d16f7640b9f)

3 / 68
drugvokrug.exe  (678f4e7c6f2559fb070e48bc84274fda)

1 / 68
frim_win_int.exe (frim_win by MoCo Media)  (2988f79e05d8eea28d34cf3bffe77e0c)

0 / 68
frim_win_int.exe (frim_win by MoCo Media)  (3817c4d7831ee7a4ea33472c18ac8878)

0 / 68
drugvokrug_bm.exe  (d3dc2b9d3244bcc9d3b52ef3b9f7de45)

0 / 68
dgv3255.exe  (24dad68fafd19778962ac4a8afde520f)

0 / 68
frim_nu.exe (frim_nu by MoCo Media)  (45e099bc115409a3520512afd9ddc6db)

0 / 68
frim_adm.exe (frim_adm by MoCo Media)  (ddcd71f3919861b1542febbfde054be2)

 
Latest 30 of 50 files

Downloads URLs for files signed by MoCo Media.

0 / 68
http://www.myfreesoft.ru/.../drugvokrug_win.exe  (ddeb4f0ab04631e9d0c35f834bf43ba5)

0 / 68
http://drugvokrug.ru/bt/.../drugvokrug_setup.exe  (1ba962763ab3ce8086f80a0db03b3c0d)

0 / 68
http://drugvokrug.ru/.../drugvokrug_win.exe  (501ff61e64f3174403273c0352ddb0a8)

0 / 68
http://drugvokrug.ru/.../drugvokrug_win.exe  (0710b98e775d181e8f8e8c42bd406de6)

The following websites host and distribute files published by MoCo Media.

The following certificate is also signed by MoCo Media.

464FC88C5B6B4C3637DAC475F42EF4BA  (Jul 20, 2011 to Jul 20, 2012)

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to MoCo Media by Thawte, Inc. on June 28, 2012 with the serial number '372f28a7fa989110d91f051a51f463af'.