Rafael Leviev

Publisher Information

Rafael Leviev is a brand of publishers/developers run by WebPick Internet Holdings Ltd. located in Ramat Ha'Chayal Tel Aviv, Israel. The company is a primary distributor of unwanted software. Rafael Leviev is a developer of WebPick Internet Holdings and publishes a number of adware web browser plugins designed to monitor web browser behavior and inject advertisements (banner, popups, text-links, etc.) in the browser by using the WebPick InstalleRex monetization delivery platform. These programs from Rafael Leviev are typiclaly installed on a variety of names and misspellings and are very difficult to remove. According to WebPick, they use developers to sign their adware in order to "throw off competitors".
Remove Rafael Leviev Malware - Powered by Reason Core Security
Authority:
COMODO CA Limited

Valid from:
1/30/2013 7:00:00 AM

Valid to:
1/31/2014 6:59:59 AM

Subject:
CN=Rafael Leviev, O=Rafael Leviev, STREET=Shoshan 2, L=Lod, S=Shfela, PostalCode=71456, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
008e0d8f39b2e360e15b22563ed8c6879a

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
Adware.WebPick.Installer (M), PUP.WebPick.RafaelLeviev.Installer (M)
100.00%

F-Secure
Riskware.Application.Generic.656537, Riskware.Gen:Variant.Application.Bundler
32.00%

Emsisoft Anti-Malware
Application.Generic.656537, Gen:Variant.Application.Bundler.InstallRex
32.00%

Dr.Web
Adware.Downware.1166
32.00%

VIPRE Antivirus
Threat.4150696
32.00%

ESET NOD32
Win32/InstalleRex.J potentially unwanted application
32.00%

F-Prot
W32/InstallRex.B
32.00%

avast!
Win32:InstalleRex-U [PUP]
32.00%

Lavasoft Ad-Aware
Application.Generic.656537, Gen:Variant.Application.Bundler.InstallRex.2
32.00%

Clam AntiVirus
Win.Adware.Agent-6746, Win.Adware.Agent-6586
32.00%

38 / 68    (Adware)
zoomplayer.exe (StarApp)  (c9c76d1f8c31908b0cdddb3d7ba942ce)

1 / 68      (Adware)
shiva mahimna stotra 1 of 3.exe (StarApp)  (022a92251a5723f9107d823ca497be73)

1 / 68      (Adware)
06. kmean oun bong rok tmey (kola).mp3.exe (StarApp)  (136315ecd339ae532bdd42a23b1e9a88)

1 / 68      (Adware)
01.som like 1_sopalan_rnb by dada black.mp3.exe (StarApp)  (4b0202eed39895760bdbc5163e571ef6)

1 / 68      (Adware)
01.som like 1_sopalan_rnb by dada black.mp3.exe (StarApp)  (0711916d2f2b0d50c7b5eecff7afd23b)

1 / 68      (Adware)
01.som like 1_sopalan_rnb by dada black.mp3.exe (StarApp)  (709f3a7856a874d828a280a4f32d01cf)

1 / 68      (Adware)
01.som like 1_sopalan_rnb by dada black.mp3.exe (StarApp)  (2ec8e9b4bfdfc10493e80b2265f23ee3)

1 / 68      (Adware)
thaip6.rar.exe (StarApp)  (03ffa305cde0f15c160f82fdc265c51f)

1 / 68      (Adware)
thaip6.rar.exe (StarApp)  (d61af932b70012bdbd6798eb816b28bd)

1 / 68      (Adware)
ty9gxwye.exe (StarApp)  (f04a19c6485855253045efb7e0445df8)

40 / 68    (Adware)
vaudix.exe (StarApp)  (3628d7a13a0ca05d8fb3ec2af29cc4d8)

41 / 68    (Adware)
download.exe (StarApp)  (1e3f30577dadd6696f3d4d6b7a814a66)

1 / 68      (Adware)
5fpcggf8.exe (StarApp)  (57ccb66bc39e0b4d76b31ed4b39e0195)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
ashes song u hit me back.exe (StarApp)  (9fad5dc4bd195fc34b5745005f241ebe)

1 / 68      (Adware)
download file from akafile.exe (StarApp)  (524712f060f94baf2e0f8e6aec0bba3a)

1 / 68      (Adware)
oyveoauc.exe (StarApp)  (0b5ec0dfad9ebb9df863147f30fe16d7)

1 / 68      (Adware)
serial smadav 9.3.txt_2.exe (StarApp)  (d5c37baa849902772845103ef67db74d)

1 / 68      (Adware)
serial smadav 9.3.txt.exe (StarApp)  (df0010c0cbe1832027782c13e4f3102e)

38 / 68    (Adware)
zoomplayer.exe (StarApp)  (e08b5d2b7cac718f6610a43a6e3f32c8)

1 / 68      (Adware)

41 / 68    (Adware)
download.exe (StarApp)  (b9556c9bcf7654d8d8aa0a342c42b88a)

41 / 68    (Adware)
download.exe (StarApp)  (a5368dbe6868a65b089ca2c426a1a1ce)

41 / 68    (Adware)
download.exe (StarApp)  (a1242f77328925d6c12fdc242b276825)

1 / 68      (Adware)
o379uiam.exe (StarApp)  (0891053322ed1511ceebddab7fe6c441)

1 / 68      (Adware)
nhpq736u.exe (StarApp)  (c1e5a7142238913dd856d813332e10a9)

41 / 68    (Adware)
download.exe (StarApp)  (02cf69f0d0250600373f6d0838f61078)

41 / 68    (Adware)
download.exe (StarApp)  (f7e0529ac40f5a5de6e1387f99d23919)

1 / 68      (Adware)
unit3.rar.exe (StarApp)  (b1286388e7e41b3bc8c637c8898be73d)

 
Latest 30 of 108 files

Downloads URLs for files signed by Rafael Leviev.

41 / 68    (Adware)

38 / 68    (Adware)

40 / 68    (Adware)

Top-level domains owned by Rafael Leviev.

The following websites host and distribute files published by Rafael Leviev.

The following publishers (by Authenticode signature organization name) are related.

Remove Rafael Leviev Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Rafael Leviev by COMODO CA Limited on January 30, 2013 with the serial number '008e0d8f39b2e360e15b22563ed8c6879a'.