Nanjing Aodimu Tech Co.,Ltd

Publisher Information

Nanjing Aodimu Tech Co.,Ltd is a software developer located in Nanjing, Jiangsu in China*. The publisher primarily developes software that can be classified as adware. There is one additional code signing certificate issued to this publisher.
Remove Nanjing Aodimu Tech Co.,Ltd Malware - Powered by Reason Core Security
Authority:
GlobalSign nv-sa

Valid from:
11/12/2013 7:24:44 AM

Valid to:
11/13/2014 7:24:44 AM

Subject:
CN="Nanjing Aodimu Tech Co.,Ltd", O="Nanjing Aodimu Tech Co.,Ltd", L=Nanjing, S=Jiangsu, C=CN

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
112112965dda85b75119b4e6652039f33a95

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.JiangsuCN, PUP.Installer.JiangsuCN, PUP.Service.JiangsuCN, PUP.JiangsuCN.NanjingAodimuTech, PUP.JiangsuCN.Installer, PUP.JiangsuCN.NanjingAodimuTech.Installer (M), PUP.JiangsuCN.NanjingAodimuTech (M)
100.00%

ESET NOD32
Win32/Agent.WMC (variant), Win32/DownWare, Win32/InstallMonetizer.AU
38.00%

VIPRE Antivirus
Threat.5066600, Nanjing Aodimu Tech Co.,Ltd
20.00%

Microsoft Security Essentials
Threat.Undefined
12.00%

ESET NOD32
Win32/Agent.WMC trojan
10.00%

F-Prot
W32/Threat-SysVenFak-based!Maxi
8.00%

Commtouch SDK
W32/Threat-SysVenFak-based!Maxi
8.00%

Baidu Antivirus
Trojan.Win32.Agent
8.00%

Trend Micro House Call
Suspicious_GEN.F47V0730, Suspicious_GEN.F47V1103, Suspicious_GEN.F47V0916
6.00%

Qihoo 360 Security
Malware.QVM05.Gen
6.00%

1 / 68      (PUP)

1 / 68      (PUP)
vmnet.exe  (317e97238755a9d2e0dc66522f648a0f)

1 / 68      (PUP)
avasts.exe (by MicroTools)  (ec44161eb845e88ab2539a73250ec6dc)

5 / 68      (PUP)
optimizer.exe (Windows Optimizer by MicroTools)  (a10cccb60a0185f7ef5d6c96d10b64d9)

1 / 68      (PUP)

1 / 68      (PUP)
system_shell.exe (by MicroTools)  (8ce26e0c6f708072c649fc5f9afeaa06)

1 / 68      (PUP)
system_shell.exe (by MicroTools)  (4121452f4e9ac4e8f67b2589f5efc8a9)

1 / 68      (PUP)
vmnet.exe  (8546062076bb6efeae6f302e31db86be)

4 / 68      (PUP)
powermgr.exe (Windows power management by MicroTools)  (0d3c82459d700d132e9606105fbf1357)

1 / 68      (PUP)
avasts.exe (by MicroTools)  (7039a7dfe73ab2a9cc9295351081bdfa)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)
vmnet.exe  (c68b9e50fbdfd9dd807397ae19231ddb)

1 / 68      (PUP)
system_shell.exe (Windows shell program by MicroTools)  (173fc8a5c8400218078b1b81546299ac)

5 / 68      (PUP)
optimizer.exe (Windows Optimizer by MicroTools)  (b10c80e3e407b2cfafb4f908a0548c56)

1 / 68      (PUP)
avasts.exe (by MicroTools)  (5c86770616c623a38a424b614539cfd0)

2 / 68      (PUP)

1 / 68      (PUP)
new_ver_1.5.2.0.exe (Windows Optimizer by MicroTools)  (55d246f27a7a435b90459eead054d54f)

6 / 68      (PUP)
optimizer-setup.exe (Windows Optimizer by MicroTools)  (631f80652fa25ba6d5cfb48b66367b71)

6 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)
optimizer-setup.exe (Windows Optimizer by MicroTools)  (355cb10f5b78efb48ec26a0566897f7e)

1 / 68      (PUP)
system_shell.exe (by MicroTools)  (723057cc9151016449f9bf47c814514b)

1 / 68      (PUP)
optimizer.exe (by MicroTools)  (04d2aa292f67d6ee6cc47cce35ed83ef)

1 / 68      (PUP)
iehelper.exe  (af0b83b078b3b0960f161b9ee24bfd20)

1 / 68      (PUP)

1 / 68      (PUP)
optimizer.exe (by MicroTools)  (c23a5d576b82a11f4038f2cec4248550)

1 / 68      (PUP)
optimizer.exe (by MicroTools)  (62f87ff6f540d219b9f459ad2350f944)

4 / 68      (PUP)

3 / 68      (PUP)
vmnet.exe  (056f75e42a83539db68b64a3eb225761)

 
Latest 30 of 238 files

Downloads URLs for files signed by Nanjing Aodimu Tech Co.,Ltd.

2 / 68      (PUP)

The following certificate is also signed by Nanjing Aodimu Tech Co.,Ltd.

1121E136B5D663F4BB8678C1EB6FFCC47B11  (Oct 17, 2014 to Oct 17, 2016)

Remove Nanjing Aodimu Tech Co.,Ltd Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Nanjing Aodimu Tech Co.,Ltd by GlobalSign nv-sa on November 12, 2013 with the serial number '112112965dda85b75119b4e6652039f33a95'.