redple

Publisher Information

redple is a software publisher located in SEOUL, Gyeonggi-Do in Korea*. A majority of the programs developed by the company can be classified as adware or other potentially unwanted programs. Thre are 2 additional code signing certificates issued to this publisher.
Remove redple Malware - Powered by Reason Core Security
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
5/11/2010 8:00:00 PM

Valid to:
6/11/2011 7:59:59 PM

Subject:
CN=redple, O=redple, L=SEOUL, S=GYEONGGI-DO, C=KR

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
2753dc079c467eddb3e2da78a3f1219c

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.redple (M), PUP.redple.Installer (M)
70.00%

Malwarebytes
Adware.KorAd, Rogue.PowerPC, Adware.Kraddare
35.00%

K7 AntiVirus
Trojan
25.00%

K7 Gateway Antivirus
Trojan
20.00%

Trend Micro House Call
TROJ_GEN.F47V1006, TROJ_GEN.F47V1114, Suspicious_GEN.F47V0814, TROJ_GEN.F47V1014
20.00%

Dr.Web
Trojan.Adkor.83, Trojan.DownLoader4.24103, Trojan.Daum.origin
20.00%

Avira AntiVirus
TR/ATRAPS.Gen2, TR/Gendal.6626406.7, TR/Gendal.206016
15.00%

IKARUS anti.virus
Trojan.SuspectCRC, Trojan.Gendal
15.00%

AVG
Skodna.Generic, Win32/DH, Generic21
15.00%

Comodo Security
Heur.Suspicious, UnclassifiedMalware
15.00%

1 / 68      (PUP)
powerpcsetup_filedown.exe (by redple)  (869f4130d8e83e67d7554ed4557c45a3)

1 / 68      (PUP)
pwtray.exe (by redple)  (5b3a16b0dc06d13b6f72011d7164ab16)

1 / 68      (PUP)
powerup.exe (by redple)  (7f53c7623d6d1ea9fe44cbae7e71e43a)

1 / 68      (PUP)
powerpc.exe (by redple)  (3033e04209d6cf598f3220e56086e276)

8 / 68      (Malware)
pwuninstall.exe (by redple)  (6e1543705bf4e96aa116d50d9853e5ee)

7 / 68      (Malware)
multicodecband.dll  (2b4da69497a51048350352ebb33f8996)

3 / 68      (PUP)
powercomsetup_filedown.exe (by redple)  (d3d7b9e6396b827d102e3b19403f6724)

2 / 68      (PUP)
multicodecuninstall.exe (multicodec uninstall by redple)  (8223b880c67f636ff8df0f70f9196d84)

31 / 68    (PUP)
multicodechper.exe (multicodec up help by redple)  (cebb28aae6bf57defa9c68fe68253d7b)

5 / 68      (PUP)
multicodecch.exe (multicodec changer by redple)  (9179d93dcaa88cd7ca7aaa7d7448805a)

3 / 68      (PUP)
pwcup.exe (by redple)  (b4fce83f29981b8becf27c6e6bb0ed2c)

5 / 68      (PUP)
pwcuninst.exe (by redple)  (71867ea14cf87696a9211b68d81585d2)

1 / 68      (PUP)
pwctray.exe (by redple)  (d141a0ae75e2acd34494b39ab4b06e3c)

1 / 68      (PUP)
powercom.exe (by redple)  (1ec6c859c887df9b65f48efde79fbe20)

2 / 68      (PUP)

2 / 68      (PUP)
powerpc.exe (by redple)  (c06738024f85986a13e05019fae0f90e)

3 / 68      (PUP)
MultiDownloadAgree.exe (by redple)  (f9357c991fbd82cb50945fc58c8b215c)

4 / 68      (PUP)
MdDownload.dll (by redple)  (60a832261cc83662f85a091e3ac64545)

5 / 68      (PUP)
MultiDownloadChange.exe (by redple)  (322b3a62edfdf8a3ca4639b66670470b)

1 / 68      (PUP)
MultiDownloadActProj.ocx  (c6b745ced57ea938d9078a7f04118b42)

The certificates below are also signed by redple.

5D6354AB4A1CCFB51CCE9FB3DA2D595C  (Jun 08, 2011 to Jul 08, 2012)

3337EE85FD2D60CCDC03FD2C1811AE0F  (May 06, 2009 to May 07, 2010)

Remove redple Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to redple by Thawte Consulting (Pty) Ltd. on May 11, 2010 with the serial number '2753dc079c467eddb3e2da78a3f1219c'.