OOO Lega Media

Publisher Information

OOO Lega Media is a software publisher located in Saint-Petersburg, Russia*. The company is a primary distributor of unwanted software. There is one additional code signing certificate issued to this publisher.
Remove OOO Lega Media Malware - Powered by Reason Core Security
Authority:
VeriSign, Inc.

Valid from:
5/1/2013 3:00:00 AM

Valid to:
5/2/2014 2:59:59 AM

Subject:
CN=OOO Lega Media, OU=IT, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=OOO Lega Media, L=Saint-Petersburg, S=Saint-Petersburg, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
207a06bd655445095b358b2c5124046e

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.OOOLegaMedia.Installer (M), PUP.OOOLegaMedia (M)
100.00%

Dr.Web
Tool.DownLoader.61
6.00%

SUPERAntiSpyware
Trojan.Agent/Gen-bmMedia
2.00%

ESET NOD32
Win32/bmMedia
2.00%

Trend Micro House Call
Suspicious_GEN.F47V1109
2.00%

AhnLab V3 Security
PUP/Win32.Downloader
2.00%

1 / 68      (Adware)
awhda56.tmp  (2477a2a6df023cac6e1417a1f5048b83)

1 / 68      (Adware)
gregory_porter_liquid_spirit_2013__s.exe  (ccedd8b9b32e79d144120d614369997a)

1 / 68      (Adware)
bitmaster_s.exe  (41865cf04bec60646a50baaab8143330)

1 / 68      (Adware)
tolko_luchshee_best_2_2013_pop_sbornik_mp3_s.exe  (189425abb91a2f94cfbc8fc00af44aa1)

1 / 68      (Adware)
moy_malenkiy_poni_my_little_pony_doroga_k_raduge_s.exe  (3f54cd698b1b235f7716b621c8c41e6f)

1 / 68      (Adware)
bitmaster.bin  (b05223fcbb5ebe6ebef838616d89d6e9)

1 / 68      (Adware)
bmasetup.exe  (0767703b09c1bdc9d02af8f471ec9c37)

1 / 68      (Adware)
jfvvvrkv.exe  (b657a62b041a80bc33da21e873694df6)

1 / 68      (Adware)
gta_grand_theft_auto_vice_city_mega_mod__s.exe  (e12fbc3681c9ce537e6b818073eda4a0)

1 / 68      (Adware)

1 / 68      (Adware)
download.setup_s.exe  (c92d6cc6d220317b25a05888085747b7)

1 / 68      (Adware)
bmasetup.exe  (890b119cc84c7afe9d5805206441cf22)

1 / 68      (Adware)
downloadsetup_s.exe  (ca114b93f294373e0692c075a0375199)

1 / 68      (Adware)
dumper.exe  (78d2693d88a9aa52eb7112bb91aeeb02)

1 / 68      (Adware)
bitmaster.bin  (3a8e5f55cba571ea1ceaab2c16f4e7a0)

1 / 68      (Adware)
bmasetup.exe  (604223d18f035535aedf4fafef3de3af)

1 / 68      (Adware)
bitmaster_s.exe  (e5f383ed0acde7550e06ef18d8694d52)

1 / 68      (Adware)
bitmaster_s.exe  (69b250edd31cf90e64a1149925c0e35a)

1 / 68      (Adware)
downloadsetup_s.exe  (8c62d5d812fc9884c4530fa3cd2ed772)

1 / 68      (Adware)
downloadsetup_s.exe  (66040bbb16ab7dc3969e3c8ced18b719)

1 / 68      (Adware)
downloadsetup_s.exe  (737e8a6a401a7285e85010fb806d820c)

1 / 68      (Adware)
downloadsetup_s.exe  (e4a64818b3725cc75e90efbb9b968a19)

1 / 68      (Adware)
downloadsetup_s.exe  (651250bb36efb45e303e1b927afa680b)

1 / 68      (Adware)
downloadsetup_s.exe  (3b99e34feea860f73a474d57205d5338)

1 / 68      (Adware)
bitmaster_s.exe  (c7b666eed44d80402077f00451b63f6e)

1 / 68      (Adware)
bmasetup.exe  (449adf96512d43d9471779e4fd8eebf1)

1 / 68      (Adware)
dnevniki_vampira_1_sezon_2009_2010_dvdrip__s.exe  (6e7a01f3c6255f3f30a4da3d5e7d2518)

1 / 68      (Adware)
bmasetup.exe  (67788ab490738cf0ad5071ae30c926e5)

1 / 68      (Adware)
downloadsetup_s.exe  (5737e586350afc7b6e0a7ebc07732d06)

 
Latest 30 of 135 files

Downloads URLs for files signed by OOO Lega Media.

1 / 68      (Adware)

1 / 68      (Adware)

2 / 68      (Adware)
http://update.bmmedia.net/.../bmsetup_ybru.exe  (1401ffe83c88029c055039038b0a4fb0)

The following certificate is also signed by OOO Lega Media.

50BBBBFD1DC0231CA78AE1E5F30E0E41  (Apr 17, 2014 to Jun 16, 2017)

The following publishers (by Authenticode signature organization name) are related.

Remove OOO Lega Media Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to OOO Lega Media by VeriSign, Inc. on May 01, 2013 with the serial number '207a06bd655445095b358b2c5124046e'.