Qingdao Ruanmei Network Technology Co.,Ltd.

Publisher Information

Qingdao Ruanmei Network Technology Co.,Ltd. is a software developer located in Qingdao, Shandong in China*. The company is a primary distributor of unwanted software. Thre are 2 additional code signing certificates issued to this publisher.
Authority:
VeriSign, Inc.

Valid from:
6/16/2011 8:00:00 AM

Valid to:
6/16/2014 7:59:59 AM

Subject:
CN="Qingdao Ruanmei Network Technology Co.,Ltd.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Qingdao Ruanmei Network Technology Co.,Ltd.", L=Qingdao, S=Shandong, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6e1c43a41d4ddc805a8561c69ceda182

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.QingdaoRuanmeiNetworkTechnologyCoLtd.Q, PUP.Installer.QingdaoRuanmeiNetworkTechnologyCoLtd.X, PUP.QingdaoRuanmeiNetworkTechnologyCoLtd.O, PUP.QingdaoRuanmeiNetworkTechnologyCoLtd.H, PUP.QingdaoRuanmeiNetworkTechnologyCoLtd.P, Threat.QingdaoRuanmeiNetworkTechnology, PUP.QingdaoRuanmeiNetworkTechnology (M)
100.00%

The Hacker
Posible_Worm32
9.09%

Comodo Security
Heur.Suspicious
9.09%

McAfee
Artemis!71D3CB1A708C
9.09%

Trend Micro House Call
Suspicious_GEN.F47V0419
9.09%

Vba32 AntiVirus
BScope.Trojan.Agent
9.09%

Rising Antivirus
PE:Trojan.Win32.Generic.1293B169!311669097
9.09%

1 / 68      (Adware)
saayaa_v2.5.0.0.exe (SaaYaa Explorer by RuanMei.com)  (c3d4f8bba6785ad48475ec6648e8276a)

1 / 68      (Adware)
tweakcube.exe  (67750150ecd5c046521e6ace6ffe03f5)

5 / 68      (Adware)
tweakcubesetup_3.0.exe  (71d3cb1a708cc7b6fa3c9b61d23ae16d)

1 / 68      (Adware)
TweakCubeVD.sys  (e47b19e1a2e347f78e49fe6e9ee5a0ab)

1 / 68      (Adware)
Windows7 Master.exe (Windows7 Master by Ruanmei.com)  (65faf48daeaaa4c4af00866255ade56f)

1 / 68      (Adware)
Upgrade.exe (Windows7Master.Upgrade by loogoo)  (a6fcd85d8f4144de67331f3a8eee831d)

1 / 68      (Adware)
tweakcuberm.sys  (4fb7d50c02ade0984d62578c79c9bf42)

2 / 68      (Adware)
VirtualDriveMaster.exe  (44f1226675b9b4257c33d33046313072)

1 / 68      (Adware)
TweakCubeVD.sys  (4a40ec8aa86aaa08689210af1aee46ef)

1 / 68      (Adware)
windows7mastersetup_1.80.exe  (06bc0c45b8ab5b2f9cebf37f31129769)

2 / 68      (Adware)

Downloads URLs for files signed by Qingdao Ruanmei Network Technology Co.,Ltd..

5 / 68      (Adware)
http://down.ruanmei.com/.../tweakcubesetup_3.0.exe  (71d3cb1a708cc7b6fa3c9b61d23ae16d)

1 / 68      (Adware)
http://down.ruanmei.com/.../windows7mastersetup_1.80.exe  (06bc0c45b8ab5b2f9cebf37f31129769)

The following websites host and distribute files published by Qingdao Ruanmei Network Technology Co.,Ltd..

The certificates below are also signed by Qingdao Ruanmei Network Technology Co.,Ltd..

41E4F3478CEB8F3B8B87E0AB04A7ACCF  (Jul 25, 2014 to Aug 24, 2017)

763A3A6BF860143D8D4ECAC660601BDC  (Feb 02, 2012 to Jul 16, 2014)

* Note, the details and description above are based on the code signing digital signature issued to Qingdao Ruanmei Network Technology Co.,Ltd. by VeriSign, Inc. on June 16, 2011 with the serial number '6e1c43a41d4ddc805a8561c69ceda182'.