One Floor App

Publisher Information

One Floor App is a software developer located in Ramat Gan, Israel*. The company is a primary distributor of unwanted software. One Floor App (Simply Tech/Widdit) distributes and bundles potentially unwanted programs (PUPs) using its OneFloorApp install manager (SimplyInstaller). Per the EULA: 'The download and installation of this app will be managed by the OneFloorApp install manager. OneFloorApp is an independent software provider. The download and installation of your requested app may also include additional recommended software provided by 3rd parties that might be beneficial for you. Apps you choose to install will be downloaded to your computer and installed automatically. OFA's Software and/or services may be distributed by 3rd parties and/or bundled with other software'. The software uses monetization services provided by Widdit.
Remove One Floor App Malware - Powered by Reason Core Security
Authority:
COMODO CA Limited

Valid from:
4/7/2014 3:00:00 AM

Valid to:
4/7/2016 2:59:59 AM

Subject:
CN=One Floor App, O=One Floor App, STREET=2 Ben Gurion, L=Ramat Gan, S=Israel, PostalCode=52573, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00a0f147adc25abb7a212b2a70db63456f

Scanner detections:
Detections  (76% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Widdit.OneFloorApp.Bundler (M), Common.PartOf.PUP.Widdit.OneFloorApp (M)
100.00%

AVG
Onefloorap, Generic
56.00%

Bkav FE
W32.HfsAdware, W64.HfsAdware
52.00%

Baidu Antivirus
Adware.Win32.search, Adware.Win32.FirstFloor, Adware.Win32.Widditbar, Adware.Win32.HomeTab, PUA.Win32.Widdit
44.00%

Panda Antivirus
PUP/HomeTabToolbar, PUP/TSUploader
40.00%

Trend Micro House Call
Suspicious_GEN.F47V0715, Suspicious_GEN.F47V1113, Suspicious_GEN.F47V1023, Suspicious_GEN.F47V1213, Suspicious_GEN.F47V0418
38.00%

Dr.Web
Adware.Plugin.364, Trojan.Damaged.1, Adware.Redsky.3, Adware.Redsky.5, Adware.Downware.3113
30.00%

Avira AntiVirus
APPL/Downloader.Gen4, TR/Trash.Gen, ADWARE/Adware.Gen
28.00%

SUPERAntiSpyware
Trojan.Agent/Gen-Nullo[Short]
20.00%

McAfee
Artemis!C2E4CD17D514, Artemis!99238EDF0604, Artemis!042F29CC734F, Artemis!9A83E9B823DE, PUP-FNE
18.00%

28 / 68    (Adware)
vlc_media_player.exe (Installer)  (7a0587e8e789c19eefb9a1f324cb88a0)

7 / 68      (Adware)
wbrowserdirect.exe (AsyncSystemSockets)  (aec8fb4552cb14224b0ce8f91e2d9ecf)

6 / 68      (Adware)
XPProcessStart.exe (XPProcessStart)  (b921a3be1702b098198541b15434e9a2)

1 / 68      (Adware)
wbrokerdirect.exe (AsyncSystemSockets)  (bd6932367a476654fae5cd63cd2eca58)

1 / 68      (Adware)
certifiedtoolbar.dll (Simply Tech LTD by Simply Tech)  (ac2f64d9de8055195770f8cc5df71158)

1 / 68      (Adware)
unins000.exe  (590973da1d5ae859a77ea499a08f0505)

6 / 68      (Adware)
ToolbarUninstall.exe (ToolbarUninstall)  (e0742c51893e62bcc51a9f669a719c10)

13 / 68    (Adware)
TBUpdater.dll (Widdit by One Floor App)  (008c28d4ebca50409e5d20aede4663af)

10 / 68    (Adware)

4 / 68      (Adware)

1 / 68      (inconclusive)

1 / 68      (inconclusive)

4 / 68      (Adware)
Launcher.exe (Toolbar_Exe_Launcher_Form)  (30684a912924682d78a561ff1cda4d9e)

1 / 68      (Adware)
certifiedtoolbar.dll (Simply Tech LTD by Simply Tech)  (aefafc21bc04884815c81b06e079703c)

1 / 68      (inconclusive)

1 / 68      (inconclusive)

9 / 68      (Adware)
cinshlpr.dll (Widdit by One Floor App)  (25cba4d0750b6700ffd5cdbb0d3c087a)

11 / 68    (Adware)
InstallHelper.dll (ToolbarInnoSetupHelper)  (91928fe4047de0aad981454e2edbbf6b)

1 / 68      (Adware)
wbrowserdefender.exe  (d6b9b83d7bcb3155ab0deae1545388e9)

6 / 68      (Adware)
wconnectorproductivity.exe (AsyncSystemSockets)  (13c2e5f62a815c1c86b627a3810dc8a3)

11 / 68    (Adware)
InstallHelper.dll (ToolbarInnoSetupHelper)  (3f71fe543d02b4109d117a835973a34e)

9 / 68      (Adware)
cinshlpr.dll (Widdit by One Floor App)  (df545212f932e8dc8a0405530b85dad0)

1 / 68      (Adware)
tbu4f4.tmp  (4a54c8065035ade0bdd607b64cd0c777)

5 / 68      (Adware)
wdapimng_64.exe (Widdit by One Floor App)  (4e8b2643397ce3ffa54a2379a457ffda)

10 / 68    (Adware)
wdapimng.exe (Widdit by One Floor App)  (34886636bb7b790990a1726beb918f92)

13 / 68    (Adware)
hometab_64.dll (Simply Tech LTD by Simply Tech)  (df7ca9b2ea572c0b7c51456151125664)

1 / 68      (Adware)
unins000.exe  (24cdc88f0036037db37c34a686558083)

6 / 68      (Adware)
ToolbarUninstall.exe (ToolbarUninstall)  (104bcc1ba5f227f40e17b0e9c960abf7)

13 / 68    (Adware)
TBUpdater.dll (Widdit by One Floor App)  (5c34707714002caad3dd528463cdfeed)

10 / 68    (Adware)

 
Latest 30 of 8,724 files

The following publishers (by Authenticode signature organization name) are related.

Remove One Floor App Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to One Floor App by COMODO CA Limited on April 07, 2014 with the serial number '00a0f147adc25abb7a212b2a70db63456f'.