PurpleTech Software Inc

Publisher Information

PurpleTech Software Inc is a software developer located in Beaverton, Oregon in the United States*. The company is a primary distributor of unwanted software. PurpleTech is an adware distributor that distributes bundled software such as toolbars and other potentially unwanted programs using third-party installers such as InstallBrain. The company is associated with the Performersoft/iBario group that manages InstallBrain. iBario is the asset holding company that runs PurpleTech There is one additional code signing certificate issued to this publisher.
Remove PurpleTech Software Inc Malware - Powered by Reason Core Security
Authority:
GoDaddy.com, Inc.

Valid from:
9/12/2012 4:45:58 AM

Valid to:
9/12/2015 4:45:58 AM

Subject:
CN=PurpleTech Software Inc, O=PurpleTech Software Inc, L=Beaverton, S=OR, C=US

Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
00c5c4c135a4bc

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Besttoolbars.Performersoft (M), PUP.Performersoft.PurpleTechSoftware (M), PUP.Performersoft.PurpleTechSoftware.Installer (M), PUP.Performersoft.PurpleTechSoftware.Bundler (M), PUP.Besttoolbars.Performersoft.Bundler (M)
100.00%

Bkav FE
HW32.Laneul, W32.HfsAdware, W32.Clod828.Trojan, W64.HfsAdware
76.00%

VIPRE Antivirus
Besttoolbars, Threat.4759033, Trojan.Win32.Generic, InstallBrain
76.00%

Dr.Web
Adware.BGuard.32, Adware.Downware.1761, Adware.Downware.1988, Adware.Downware.1737, Program.Unwanted.504, Adware.BGuard.37
74.00%

NANO AntiVirus
Trojan.Win32.Toolbar.dfzyth, Riskware.Win32.Downware.cxfqzu, Riskware.Win32.Downware.cstqny, Riskware.Win32.Downware.cvmfkw
72.00%

Agnitum Outpost
PUA.Toolbar.Besttoolbars, PUA.InstallBrain, PUA.Toolbar.Agent
72.00%

K7 AntiVirus
Adware , Unwanted-Program
70.00%

K7 Gateway Antivirus
Adware , Unwanted-Program
70.00%

McAfee Web Gateway
Artemis!DD63717721EB, Artemis!1EB235449464, BehavesLike.Win32.Dropper.th, BehavesLike.Win32.PileFile.vh, Artemis!A3F339B068E5
70.00%

Antiy Labs AVL
RiskWare[WebToolbar]/Win32.Agent.bsp, Trojan/Win32.SGeneric, RiskWare[WebToolbar]/Win64.Agent.hvw, Trojan/Win32.TSGeneric
70.00%

37 / 68    (Adware)
videoperformersetup.exe (Video Performer)  (a31eaf28b23bbe8007811108627e8fff)

35 / 68    (Adware)
codecperformersetup.exe (Codec Pack)  (a4408eafab69ad405a52b875bf87adbd)

35 / 68    (Adware)
codecperformersetup.exe (Codec Pack)  (7cce0143a3484a8880152cbb58c1695a)

34 / 68    (Adware)
freecodecpacksetup.exe (FreeCodecPack)  (39c35975b7e8f0ac5de1a48859f103cb)

1 / 68      (Adware)
component_619  (76bc449af5c2698b687ba868a5de4336)

36 / 68    (Adware)
сodec performer803975.exe (Codec Pack)  (84660d2e884a36a2e556cfd59b5a94a2)

37 / 68    (Adware)
videoperformersetup.exe (Video Performer)  (cafc22efbc033ac218b0574650623221)

37 / 68    (Adware)
videoperformersetup.exe (Video Performer)  (09216083e3b45d01f1ed6bffac8fbc9f)

7 / 68      (Adware)
component_613  (692bb1c9758b45b870eb81786143b89e)

37 / 68    (Adware)
videoperformersetup.exe (Video Performer)  (9225176d1b6877e840b56d35ca148caa)

34 / 68    (Adware)
freecodecpacksetup.exe (FreeCodecPack)  (b7a5c6bae88ab7491992f3872be31ac9)

34 / 68    (Adware)
freecodecpacksetup.exe (FreeCodecPack)  (c8c1397d675c3cd15f1f197070630f00)

34 / 68    (Adware)
freecodecpacksetup.exe (FreeCodecPack)  (ab45304c6acaad8f3a721a4714ee103c)

38 / 68    (Adware)
pcperformersetup.exe (PC Performer)  (29914e4d1845edfd235175e4de65ff42)

35 / 68    (Adware)
codecperformersetup.exe (Codec Pack)  (a9d94626a3d487ea4fe03b213d42e7d8)

28 / 68    (Adware)
rocketpdfsetup.exe (RocketPDF)  (ec0c54f5f9b0c13d692cdb5516197cbe)

35 / 68    (Adware)
codecperformersetup.exe (Codec Pack)  (f5ee3c252ea5507ee0982b585f419724)

1 / 68      (Adware)
component_342  (c9f160010b6745835b9c60e1ddb60d16)

1 / 68      (Adware)
scripthost64.dll (Add-ons Framework by Zula Games)  (994bf7dddd2ffc6bdf1599fe9def3ce0)

20 / 68    (Adware)
buttonsite64.dll (Add-ons Framework)  (56cfee8186aa9da1d5fcde02858d0022)

1 / 68      (Adware)

1 / 68      (Adware)

37 / 68    (Adware)
videoperformersetup.exe (Video Performer)  (499fcd877e1cbb4cbe209ac82d19d958)

39 / 68    (Adware)
77zipsetup.exe (77Zip)  (49e26570d778b22dc6edc5df0cf6e1ac)

55 / 68    (Adware)
videoperformersetup.exe (Video Performer)  (f8fe4877d6a8d676e59e18e5029b6591)

37 / 68    (Adware)
videoperformersetup.exe (Video Performer)  (75bc1cabcf2468db9621f4f1162fd39e)

39 / 68    (Adware)
77zipsetup.exe (77Zip)  (fbc499c58400bc804ef0f774bf5df5ad)

20 / 68    (Adware)
buttonsite64.dll (Add-ons Framework)  (25db812664e3fe64a1a4ad53c2056f87)

8 / 68      (Adware)
ButtonSite.dll (Add-ons Framework)  (6cc4772d2c237e4b8511d533f0492484)

1 / 68      (Adware)

 
Latest 30 of 688 files

Top-level domains owned by PurpleTech Software Inc.

The following certificate is also signed by PurpleTech Software Inc.

043990240F90A4  (Dec 15, 2013 to Sep 11, 2015)

The following publishers (by Authenticode signature organization name) are related.

Remove PurpleTech Software Inc Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to PurpleTech Software Inc by GoDaddy.com, Inc. on September 12, 2012 with the serial number '00c5c4c135a4bc'.