Philipp B. Winterberg

Publisher Information

Philipp B. Winterberg is a software developer located in Münster, Nrw in Germany*. The company is a primary distributor of unwanted software.
Authority:
COMODO CA Limited

Valid from:
3/30/2012 2:00:00 AM

Valid to:
3/31/2015 1:59:59 AM

Subject:
CN=Philipp B. Winterberg, O=Philipp B. Winterberg, STREET=Mecklenburger Str. 21, L=Münster, S=NRW, PostalCode=48147, C=DE

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
0ca313e6b88e9f097241db43e8c7d876

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.PhilippBWinterberg.Installer (M), PUP.PhilippBWinterberg (M), PUP.PhilippB.Installer (M), PUP.PhilippB (M), PUP (M)
100.00%

Malwarebytes
PUP.Optional.OpenCandy
16.00%

Trend Micro House Call
Suspicious_GEN.F47V1201, TROJ_GEN.F47V1210
16.00%

G Data
NSIS.Adware.SoftBundled, NSIS.Application.OpenCandy
16.00%

Rising Antivirus
PE:PUF.OpenCandy!1.9DE5
16.00%

ESET NOD32
Win32/OpenCandy potentially unsafe application
12.00%

Dr.Web
Threat.Undefined, Adware.OpenCandy.7
12.00%

Agnitum Outpost
Riskware.OpenCandy
12.00%

Fortinet FortiGate
Riskware/OpenCandy
12.00%

Sophos
PUA.OpenCandy
12.00%

1 / 68      (Adware)
rarfileopenknife.exe  (f516b56633f85a7bda8fd3485b371159)

1 / 68      (Adware)

1 / 68      (Adware)
rarfileopenknife.exe  (b6fa0ef54fc2931f436cfec5943082a1)

1 / 68      (Adware)
freerarextractfrog.exe  (ee7eccb46b8e6b33ce544bca1dd09826)

1 / 68      (Adware)

1 / 68      (Adware)
freerarextractfrog.exe  (6a98022dc21f1b28c6d422e8a572d51e)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
rarzillafreeunrar.exe  (9676c03ec1dbd3e25dd6384105a76a9c)

1 / 68      (Adware)
rarfileopenknife.exe  (dc5b6b2c5bd974f9950a835d0283b56f)

1 / 68      (Adware)
rarfileopenknife.exe  (1e2c4d2b9e46a1bfeee5407bb6fc0325)

1 / 68      (Adware)

1 / 68      (Adware)
freerarextractfrog.exe  (392df07e7519d2619ae9a1e6d641d23d)

1 / 68      (Adware)
rarfileopenknife.exe  (4b5aa49eff1b68f4c9d2e5acb8f06815)

1 / 68      (Adware)
installfreerarextractfrog.exe  (641ef94f73dc04cb61f4a29daa390bb9)

1 / 68      (Adware)

1 / 68      (Adware)
rarzillafreeunrar.exe  (1e3b9a5a3696573055f03972ea192ad9)

1 / 68      (Adware)
rarfileopenknife.exe  (3226bfcfb5d6b56054aa8c8108306be8)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
rarfileopenknife.exe  (84b806def627dfac59e57cf0f8b62d0d)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
freerarextractfrog.exe  (ee7eccb46b8e6b33ce544bca1dd09826)

1 / 68      (Adware)
rarzillafreeunrar.exe  (c0f1bdeb864cb5ce234be8287c84c9c8)

1 / 68      (Adware)
freerarextractfrog.exe  (18a4900566a1fd32e5d3e61e889b328f)

 
Latest 30 of 94 files

Downloads URLs for files signed by Philipp B. Winterberg.

7 / 68      (Adware)

7 / 68      (Adware)
http://indir.gezginler.net/i/33951/.../  (installfreerarextractfrog.exe)

7 / 68      (Adware)
temp:InstallFreeRARExtractFrog.exe  (248d7a8c13d8e1e0fdec6cf4814cef55)

7 / 68      (Adware)
http://www.techtudo.com.br/_/software/.../download  (installfreerarextractfrog.exe)

10 / 68    (Adware)
temp:InstallRARFileOpenKnife.exe  (baf0369543b3c28302e65601581d7245)

7 / 68      (Adware)
http://indir.gezginler.net/i/33951/.../  (installfreerarextractfrog.exe)

10 / 68    (Adware)

7 / 68      (Adware)

7 / 68      (Adware)
http://indir.gezginler.net/i/33951/.../  (installfreerarextractfrog.exe)

7 / 68      (Adware)

 
Latest 30 of 93 download URLs

The following websites host and distribute files published by Philipp B. Winterberg.

The following publishers (by Authenticode signature organization name) are related.

30 of 144 publishers

* Note, the details and description above are based on the code signing digital signature issued to Philipp B. Winterberg by COMODO CA Limited on March 30, 2012 with the serial number '0ca313e6b88e9f097241db43e8c7d876'.