P e P na Internet LTDA ME

Publisher Information

P e P na Internet LTDA ME is a software developer located in Vila Velha, Espirito Santo in Brazil*. The company is a primary distributor of unwanted software.
Remove P e P na Internet LTDA ME Malware - Powered by Reason Core Security
Authority:
Symantec Corporation

Valid from:
1/26/2014 10:00:00 PM

Valid to:
1/27/2016 9:59:59 PM

Subject:
CN=P e P na Internet LTDA ME, O=P e P na Internet LTDA ME, L=Vila Velha, S=Espirito Santo, C=BR, SERIALNUMBER=12.112.810/0001-19, OID.2.5.4.15=Private Organization, OID.1.3.6.1.4.1.311.60.2.1.3=BR

Issuer:
CN=Symantec Class 3 Extended Validation Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
1f8f91ee9af97ac99eb07fffa32d1892

Scanner detections:
Detections  (84% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.BR Software, PUP.Startup.BR Software, PUP.BR Software, Common.OpenSSLPackaged.PUP.BR Software, PUP.BR Software.PePnaInternetAME.Installer (M), PUP.BR Software.PePnaInternetAME (M)
97.73%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
20.45%

Dr.Web
Threat.Undefined, hacktool program Tool.NetFilter.1, Adware.Salus.7
11.36%

Trend Micro House Call
TROJ_GEN.F47V0608, Suspicious_GEN.F47V1111
4.55%

ByteHero BDV
Trojan.Malware.Obscu.Gen.001
4.55%

VIPRE Antivirus
Trojan.Win32.Generic
4.55%

ESET NOD32
Win32/NetFilter.A potentially unsafe (variant), Win64/NetFilter.A potentially unsafe (variant)
4.55%

AVG
Generic
4.55%

Comodo Security
Application.Win32.RiskWare.NetFilter.D
2.27%

Jiangmin
TrojanDownloader.Adload.way
2.27%

1 / 68      (Adware)
badriver.sys (NetFilter SDK by NetFilterSDK.com)  (278ccc1593b83d9309928900f5d95e56)

1 / 68      (Adware)
unins000.exe  (b7fa774b547b8bdb29a0f1050b457cf9)

1 / 68      (Adware)
unins000.exe  (2c9a9a5f00f991c80ad2bc34e7a5bf53)

3 / 68      (Adware)
baixouagora.exe (Baixou Agora by Baixou)  (1fa6ea2c1beda3793cc49a5ce9686f36)

1 / 68      (Adware)

1 / 68      (Adware)
autoupdater.exe  (52d200b5ee228779263559548d5a3f91)

1 / 68      (Adware)
badriver.sys (NetFilter SDK by NetFilterSDK.com)  (e735c5e4863a253bd083fe54bb026f85)

3 / 68      (Adware)
baixouagora.exe (Baixou Agora by Baixou)  (6bdab0304511e49dca7801f2eb5c503d)

1 / 68      (Adware)
pfapinet.dll (pfapinet2)  (28405c6da62f2f2c6ab55066eda2a029)

1 / 68      (Adware)
nfregdrv.exe  (359481f33e611bfccaf9880e1b6e7e4d)

1 / 68      (Adware)
nfapinet.dll (nfapinet2)  (9cc69c9e97dd9a8beb48eb0738c42464)

1 / 68
baixouagora.exe (Baixou Agora by Baixou)  (1a678ccab696e87a50c632c4a13634f8)

8 / 68      (Adware)

1 / 68      (inconclusive)

1 / 68      (inconclusive)

1 / 68      (Adware)
protocolfilters.dll  (22473d1a534a54fff5c8aa0baf410c8c)

7 / 68      (Adware)
nfapi.dll  (323e889efba514cb57c6c04f38f2b19f)

4 / 68      (Adware)
baixouagora.exe  (0ed25b5b70903569f782fd675c1746e7)

1 / 68      (Adware)
unins000.exe  (d4ef66c129dbdc54bf96f24e4c1d5e5e)

1 / 68      (Adware)
pfapinet.dll (pfapinet2)  (bfc69aef9fe7298533c4dfce8393b399)

1 / 68      (Adware)
nfregdrv.exe  (af79bc85661e55d248a4a5d52fc681e2)

1 / 68      (Adware)
nfapinet.dll (nfapinet2)  (62be2433d7a04e6bba753a15ef972879)

1 / 68      (Adware)
_iu14d2n.tmp  (2b224c9681444fb1fcf2fc5668795b10)

2 / 68      (Adware)
baixouagora.exe (Baixou Agora by Baixou)  (28841b5f364befac0a45da678c65a466)

1 / 68      (Adware)

1 / 68      (Adware)

2 / 68      (Adware)
baixouagora.exe (Baixou Agora by Baixou)  (2214975c3862d2d83f99fcf810854e8f)

1 / 68      (inconclusive)

1 / 68      (inconclusive)

1 / 68      (Adware)
protocolfilters.dll  (2c2d53b131c4aeb605bd7ec78f0616b1)

 
Latest 30 of 44 files

Downloads URLs for files signed by P e P na Internet LTDA ME.

2 / 68      (Adware)
http://static.baixou.com.br/extension/.../baixouagora.exe  (28841b5f364befac0a45da678c65a466)

2 / 68      (Adware)
http://static.baixou.com.br/extension/.../baixouagora.exe  (2214975c3862d2d83f99fcf810854e8f)

The following websites host and distribute files published by P e P na Internet LTDA ME.

Remove P e P na Internet LTDA ME Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to P e P na Internet LTDA ME by Symantec Corporation on January 26, 2014 with the serial number '1f8f91ee9af97ac99eb07fffa32d1892'.