New IT Limited

Publisher Information

New IT Limited is a software publisher located in Nicosia, CY*. The company is a primary distributor of unwanted software. Thre are 9 additional code signing certificates issued to this publisher.
Remove New IT Limited Malware - Powered by Reason Core Security
Authority:
GoDaddy.com, Inc.

Valid from:
11/4/2013 12:10:10 PM

Valid to:
11/16/2013 1:30:34 PM

Subject:
CN=New IT Limited, O=New IT Limited, L=Nicosia, S=Nicosia, C=CY

Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
2775184265bf42

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Handler.NewITLimited.H, PUP.Startup.NewITLimited.F, PUP.NewITLimited.F, PUP.NewITLimited.J, PUP.NewITLimited.m, PUP.NewITLimited.AA, PUP.NewITLimited.E, PUP.NewITLimited.H, PUP.NewITLimited.P, PUP.NewITLimited.c, Threat.New IT Limited.NewIT, PUP.New IT Limited.NewIT, PUP.New IT Limited.Bundler, PUP.New IT Limited.NewIT (M), PUP.New IT Limited.NewIT.Bundler (M)
100.00%

Comodo Security
Heur.Packed.Unknown, Application.Win32.Graftor.KLK
34.00%

Agnitum Outpost
PUA.4Shared
32.00%

NANO AntiVirus
Trojan.Win32.GetFaster.cstcqv, Trojan.Win32.GetFaster.cuffvs, Trojan.Win32.MLW.dajnsa
32.00%

Sophos
4Share Downloader, PUA '4Share Downloader'
32.00%

avast!
Win32:FourShared-D [PUP], Win32:FourShared-T [PUP]
30.00%

Total Defense
Win32/Startpage.cVIROYB
26.00%

MicroWorld eScan
Adware.Generic.900343, Adware.Generic.900724, Adware.Generic.900939, Adware.Generic.1027179
24.00%

Bitdefender
Adware.Generic.900343, Adware.Generic.900724, Adware.Generic.900939, Adware.Generic.1027179
24.00%

Lavasoft Ad-Aware
Adware.Generic.900343, Adware.Generic.900724, Adware.Generic.900939, Adware.Generic.1027179
24.00%

1 / 68      (Adware)
onet 0811 for all.exe (Get your downloads by Company #1)  (010cf4e98d0873a2836750de34004389)

1 / 68      (Adware)

1 / 68      (Adware)

12 / 68    (Adware)
00000000 (Get your downloads by Company #1)  (4bf0110a88828f2f6afff32da22f1235)

12 / 68    (Adware)
00000000 (Get your downloads by Company #1)  (267e04543a69d5a48b6214e5d5571f24)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
wrecking ball.exe (Get your downloads by Company #1)  (d650caca0abe6d01dff8a56c8d453be9)

12 / 68    (Adware)
00000000 (Get your downloads by Company #1)  (8c592602d7a920ecaf54ac1b28031b00)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
unlock root.exe (Get your downloads by Company #1)  (e7960e0caef2f4215ea56c2359299571)

1 / 68      (Adware)
root galaxy y.exe (Get your downloads by Company #1)  (7dc418ee1363a4d70bff39a344999b96)

12 / 68    (Adware)
00000000 (Get your downloads by Company #1)  (966b88bbe0965c77e6d89654ec41011e)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
00000000 (Get your downloads by Company #1)  (4aaf81664cd0c4722fc270dc8a310ab7)

1 / 68      (Adware)
00000000 (Get your downloads by Company #1)  (9b087f19825dff959f601e6f80e11ef3)

 
Latest 30 of 55 files

Downloads URLs for files signed by New IT Limited.

1 / 68      (Adware)

1 / 68      (Adware)
http://ds312.maxiget.com/.../alarm9 - ????????.exe  (663971a7faf4bf8df5b045a20fdcf214)

1 / 68      (Adware)
http://ds322.maxiget.com/.../Wrecking Ball.exe  (d650caca0abe6d01dff8a56c8d453be9)

1 / 68      (Adware)

1 / 68      (Adware)

The following websites host and distribute files published by New IT Limited.

The certificates below are also signed by New IT Limited.

041989DB48EFF2  (Dec 11, 2014 to Dec 30, 2016)

2B90BA60B54B37  (Apr 10, 2014 to Dec 30, 2016)

049768F7F19C91  (May 14, 2014 to Dec 30, 2016)

04225A281DFF69  (Dec 30, 2013 to Dec 30, 2016)

045E846BB931D8  (Nov 10, 2014 to Dec 30, 2016)

0E65FF1CA366ECF94666819342163027  (Feb 03, 2015 to Feb 04, 2016)

2B2A165690BBAA  (Nov 16, 2012 to Nov 16, 2013)

0434DD1A1F0904  (Nov 04, 2011 to Nov 03, 2012)

27DDE55D2F337F  (Oct 28, 2010 to Oct 27, 2011)

The following publishers (by Authenticode signature organization name) are related.

Remove New IT Limited Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to New IT Limited by GoDaddy.com, Inc. on November 04, 2013 with the serial number '2775184265bf42'.