M/s Children Code

Publisher Information

M/s Children Code is a software developer located in Mohali, Punjab in India*. The company is a primary distributor of unwanted software.
Remove M/s Children Code Malware - Powered by Reason Core Security
Authority:
COMODO CA Limited

Valid from:
2/10/2014 2:00:00 AM

Valid to:
2/11/2015 1:59:59 AM

Subject:
CN=M/s Children Code, O=M/s Children Code, STREET="Plot No. F-125,", STREET="Sector 74,", STREET="Industrial Area, Phase 8B", L=Mohali, S=Punjab, PostalCode=160071, C=IN

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
355cdfd525f643928f3a5700d87f0799

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.MsChildrenCode.N, PUP.Installer.MsChildrenCode.I, PUP.Startup.MsChildrenCode.F, PUP.Installer.MsChildrenCode.F, PUP.Startup.MsChildrenCode.K, PUP.MsChildrenCode.J, PUP.Installer.MsChildrenCode.J, PUP.MsChildrenCode.M, PUP.MsChildrenCode.L, PUP.MsChildrenCode.H, PUP.MsChildrenCode.G, PUP.MsChildrenCode.Installer (M), PUP.MsChildrenCode (M)
100.00%

VIPRE Antivirus
Backdoor.Win32.Ircbot.gen, Trojan.Win32.Generic, MyWebSearch.J
53.57%

ESET NOD32
Win32/Packed.Themida (variant), Win32/MediaMine (variant), Win64/BitCoinMiner (variant), Generik.KCTTFBX (variant), Win32/Injector.BFYA (variant)
53.57%

Qihoo 360 Security
Win32/Trojan.3a9, Win32/Trojan.c2b, Win32/Trojan.96d, Win32/Virus.Downloader.da4, Win32/Trojan.8b6, HEUR/Malware.QVM19.Gen
42.86%

McAfee
Artemis!ABE97C48A963, Artemis!2BD7EB2B1464, Artemis!D722CD14F932, Artemis!FFCF0BC8B030, Artemis!60211C4E209A, Artemis!94549BB50885
32.14%

McAfee Web Gateway
Artemis!ABE97C48A963, Artemis!2BD7EB2B1464, Artemis!D722CD14F932, Artemis!FFCF0BC8B030, Artemis!60211C4E209A, Artemis!94549BB50885
32.14%

MicroWorld eScan
Gen:Variant.Symmi.39392, Gen:Variant.Graftor.127164, Trojan.GenericKD.1752894, Gen:Variant.Graftor.152596
32.14%

Bitdefender
Gen:Variant.Symmi.39392, Gen:Variant.Graftor.127164, Trojan.GenericKD.1752894, Gen:Variant.Graftor.152596
32.14%

Lavasoft Ad-Aware
Gen:Variant.Symmi.39392, Gen:Variant.Graftor.127164, Trojan.GenericKD.1752894, Gen:Variant.Graftor.152596
32.14%

Emsisoft Anti-Malware
Gen:Variant.Symmi.39392, Gen:Variant.Graftor.127164, Trojan.GenericKD.1752894, Gen:Variant.Graftor.152596
32.14%

1 / 68      (Adware)
videousage.exe  (e2c2d4fbb014ba4d11e30f8dfc669c5a)

7 / 68      (Adware)
uninstall.exe (Setup Factory Runtime by Indigo Rose)  (5167573e703bd0aff229ebc853710c55)

1 / 68      (Adware)
installer.exe  (9650d467f0a7d0d062d3a836287ce9f8)

29 / 68    (Adware)
install_update.exe (Software Update by Double Opt Media)  (55a01c1f809747d188408f62c2b6cf72)

16 / 68    (Adware)
install_update.exe (Software Update by Double Opt Media)  (07618cab1264fccd7c13583f28d858a9)

1 / 68      (Adware)
prerun.exe (RndBtnDemo Application)  (58c99a3e3a51424dd464c764a6cdc669)

3 / 68      (Adware)
postrun.exe (Transparent Button Demo by Carboni Software)  (c427148ef12a2964d73daae8c9cc773e)

1 / 68      (Adware)
diagnostics.exe (RndBtnDemo Application)  (aa54f121483645e09ca89e22af6cd139)

5 / 68      (Adware)
prefetch.exe (Software Update by Double Opt Media)  (bb671377ddca2b72918c08824c46701b)

7 / 68      (Adware)
uninstall.exe (Setup Factory Runtime by Indigo Rose)  (68a1d5a3388ef305df9e054ace300f28)

3 / 68      (Adware)
silent_v2.exe (RndBtnDemo Application)  (a17059e8af0c8cb426de73b0d91dcd23)

12 / 68    (Adware)
taskswatch.exe  (773a4d636d80245d5b7e4e2e3658ecfd)

1 / 68      (Adware)
uninstall.exe (Setup Factory Runtime by Indigo Rose)  (46fd151daded2271dcd4d044d78321ed)

20 / 68    (Adware)
processusage.exe  (d1c016423e3f5c14a1c6ce39f29403e8)

1 / 68      (Adware)
uninstall.exe (Setup Factory Runtime by Indigo Rose)  (036f859f89bc9ed0f5cbd459e33dc9f2)

10 / 68    (Adware)
prefetch.exe (DoubleOptMedia)  (bbf7203de079469c4962fcf6491a35c4)

10 / 68    (Adware)
compatibility.exe  (94549bb50885ff8709b1793c59c5b515)

11 / 68    (Adware)
processusage.exe  (60211c4e209ad3ae6f3c87b3928b7ef3)

1 / 68      (Adware)
uninstall.exe (Setup Factory Runtime by Indigo Rose)  (89471880c30abe2e67c629071077ba39)

5 / 68      (Adware)
installer.exe  (86f398bc0134841e823fea3fe1b118ce)

5 / 68      (Adware)
deinstaller.exe  (24560b6b9b453e46d2530af782816c3d)

4 / 68      (Adware)
processusage.exe  (31a99414911591fa310cc7a5ce4e4b7e)

17 / 68    (Adware)
setup6.exe  (ffcf0bc8b030f6807847554ac652d239)

16 / 68    (Adware)
videousage.exe  (d722cd14f93275a5a831a7ed42a3d6fb)

8 / 68      (Adware)
g8v2c.exe (DoubleOptMedia)  (17c9f84b20b61deecbaf3057e59bf67e)

22 / 68    (Adware)
wg8v2.exe  (2bd7eb2b1464c59d0628de3ab0279f11)

8 / 68      (Adware)
prefetch.exe (DoubleOptMedia)  (471869398f0a392fd008eb159934d15f)

9 / 68      (Adware)
compatibility.exe  (abe97c48a963af4bb4526d8010d22e88)

Downloads URLs for files signed by M/s Children Code.

10 / 68    (Adware)
http://113.171.224.210/.../dg8v2.exe  (94549bb50885ff8709b1793c59c5b515)

22 / 68    (Adware)
http://downloads.doubleoptmedia.com/wg8v2.exe  (2bd7eb2b1464c59d0628de3ab0279f11)

10 / 68    (Adware)
http://113.171.224.210/.../g8v2j.exe  (bbf7203de079469c4962fcf6491a35c4)

The following websites host and distribute files published by M/s Children Code.

Remove M/s Children Code Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to M/s Children Code by COMODO CA Limited on February 10, 2014 with the serial number '355cdfd525f643928f3a5700d87f0799'.