Mountain Bike

Publisher Information

Mountain Bike is a brand of the Sambreel/Yontoo group, a web advertising company located in Carlsbad, CA. The company is a primary distributor of unwanted software. It is part of the Yontoo/Sambreel group and distributes web browser add-ons, typically potentially unwanted and adware in nature, that are designed to modify a user's typical search beahvior as well as display context and popup advertising.
Authority:
VeriSign, Inc.

Valid from:
1/11/2015 1:00:00 AM

Valid to:
1/12/2016 12:59:59 AM

Subject:
CN=Mountain Bike, O=Mountain Bike, L=San Diego, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
25b97080edaa57f7ad57607ceea9c13e

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Yontoo (M), Adware.Yontoo (M)
100.00%

1 / 68      (Adware)
{81221a42-ae9b-4e05-8ee0-5f627b0764b6}gt.sys (StdLib)  (d0f709d6e27b51d754dfcb139882935b)

1 / 68      (Adware)
mountainbike.expextdll.dll  (f0a17c028871d7f362b1781f17e78bdf)

1 / 68      (Adware)
mountainbike.expext.exe  (e38ec6653bc1714ff75ce0bdf162f113)

1 / 68      (Adware)
trzfeaa.tmp  (463b55409ddbb74cf2e9f812fc02391c)

1 / 68      (Adware)
trzfa24.tmp  (552e981c2fb4307251658ba60ab74bfe)

1 / 68      (Adware)
trzde78.tmp  (d9356e7425d29fe2b0ca55b8bb30cf8f)

1 / 68      (Adware)
trzd38a.tmp  (2f15555324178ab3ffd75d6dc22c283b)

1 / 68      (Adware)
trza108.tmp  (623823e39952cc3862a574ea2fd88ebc)

1 / 68      (Adware)
trz9ff2.tmp  (b23e3be319123c84599d182a71f34ff1)

1 / 68      (Adware)
trz7485.tmp  (c0ed587f774a4cb1dcae138857ad7a2b)

1 / 68      (Adware)
trz5529.tmp  (92a564e9b33efe42f2695034e9acb642)

1 / 68      (Adware)
trz3c8c.tmp  (02931d72f7144d886dc8ed6ee04edb17)

1 / 68      (Adware)
trz210c.tmp  (0ebce7b835f4c9680560c28446455d35)

1 / 68      (Adware)
MountainBike2015040204.exe  (a179d1219abe48cad41cae344e266a1f)

1 / 68      (Adware)
mountainbikeuninstall.exe  (25619f4ff08d0f8c340c8c716189e404)

1 / 68      (Adware)
mountainbikeun.exe  (79f56322a0508584e464d2d0e5b37d54)

1 / 68      (Adware)
mountainbike.expextdll.dll  (266c712792e63f7e96a1e441eeb4a04a)

1 / 68      (Adware)
mountainbike.expext.exe  (d88690ef1e14be5e6b0e17ab33c8e375)

1 / 68      (Adware)
{a4a2414c-baff-46ea-a65d-b7f41e52251f}w64.sys (StdLib)  (904aef25e15ba26c34af65952be31646)

1 / 68      (Adware)
{59cf6e77-417f-4b26-b98d-fc5404336043}w64.sys (StdLib)  (901add38ef0db990cd3db115e628b978)

1 / 68      (Adware)
mountainbikeuninstall.exe  (46ff96f677896d0004d39d6cef13f6cd)

1 / 68      (Adware)
utilmountainbike.exe  (4dd7fb488c7650c54a61f55dba6fc2b5)

1 / 68      (Adware)
{c500e215-e7b3-412a-9a22-2623391be243}w64.sys (StdLib)  (86580ca35eaaa607eb4162084401b945)

1 / 68      (Adware)
{6a14c566-98b4-4016-a916-ac91d3427864}w64.sys (StdLib)  (e26d35d0800e6c4fb06c448e8bfeca9b)

1 / 68      (Adware)
{5f976066-3cd4-4c60-a036-a189d7af5745}w64.sys (StdLib)  (42323adba18dd1681b2ac9d39253d6aa)

1 / 68      (Adware)
{0d833c4f-e63f-4159-83ff-8ae0495848ca}w64.sys (StdLib)  (7b94893d345f75336bf930145e2fb258)

1 / 68      (Adware)
{0c4a5d6c-69a5-4b9d-bc5a-ebaf79b1d1f6}w64.sys (StdLib)  (f14edddaa0cc82bf79341e9c12f2b3eb)

1 / 68      (Adware)
{b1e5a62f-4c8f-4d5f-8056-68852ee7a0e9}gw.sys (StdLib)  (86c0f7349bb58f75f0fd4934eb451f67)

1 / 68      (Adware)
mountainbikesetup.exe  (4c48016187ec7b8b982c1ce33b40ba19)

1 / 68      (Adware)
appmgr.bak  (89c144bd9bc5bb39c951c0f2e69f3903)

 
Latest 30 of 6,614 files

The following publishers (by Authenticode signature organization name) are related.

30 of 156 publishers

* Note, the details and description above are based on the code signing digital signature issued to Mountain Bike by VeriSign, Inc. on January 11, 2015 with the serial number '25b97080edaa57f7ad57607ceea9c13e'.