Rollnon

Publisher Information

Rollnon is a software developer located in Bellevue, Washington in the United States*. The company is a primary distributor of unwanted software. There is one additional code signing certificate issued to this publisher.
Remove Rollnon Malware - Powered by Reason Core Security
Authority:
VeriSign, Inc.

Valid from:
4/1/2014 8:00:00 PM

Valid to:
4/2/2015 7:59:59 PM

Subject:
CN=Rollnon, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Rollnon, L=Bellevue, S=Washington, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
38db31e5040834d048da19b96d864789

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Trend Micro House Call
TROJ_GEN.F47V0517, ADW_PRICEPEEP, TROJ_GEN.F47V0526, TROJ_GEN.F47V0519, Suspicious_GEN.F47V0610, Suspicious_GEN.F47V0617, Suspicious_GEN.F47V0621
100.00%

Reason Heuristics
PUP.Rollnon.R, PUP.BHO.Rollnon.F, PUP.Rollnon.H, PUP.Rollnon.F, PUP.Rollnon.M, PUP.Rollnon.Q, PUP.Rollnon.U, PUP.Rollnon.O, PUP.Rollnon.P, PUP.Verti.Rollnon, PUP.Verti.Rollnon.Bundler (M)
100.00%

VIPRE Antivirus
Blinkx/LeadImpact, Threat.4740961
84.21%

Trend Micro
ADW_PRICEPEEP
84.21%

AVG
Rollnon
68.42%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
34.21%

IKARUS anti.virus
AdWare.PricePeep
34.21%

Malwarebytes
PUP.Optional.Boost.A
15.79%

F-Prot
W32/PricePeep.A (exact, not disinfectable)
7.89%

Qihoo 360 Security
HEUR/Malware.QVM10.Gen
5.26%

1 / 68      (Adware)
boost_770001_0101.exe  (0506ddc01cc45eefd1ccd2cda63d5891)

5 / 68      (Adware)
boost.dll (Jigsaw)  (451563ba817e48ab88d28c141d48e291)

5 / 68      (Adware)
64boost.dll (Jigsaw)  (8b3ef0ced262fe8d2d67adb15070457b)

5 / 68      (Adware)
64boost.dll (Jigsaw)  (683beb3accf4df953563af282c35e4b8)

5 / 68      (Adware)
boost.dll (Jigsaw)  (a7e290f7aa0eb9e5a071cdb77c568baa)

14 / 68    (Adware)
awh21e4.tmp  (61b494d60419aaefcf67b06903f03ec6)

5 / 68      (Adware)
64boost.dll (Jigsaw)  (8b2a1901ffb6b3164ff55c1b3372c283)

5 / 68      (Adware)
boost.dll (Jigsaw)  (d263c665debd45a6888b959185803a7e)

13 / 68    (Adware)
ff80808146a1881e0146a8e03bf00002.exe  (5c2b9d2837e3b1af857ec9840d569454)

5 / 68      (Adware)
boost.dll (Jigsaw)  (546bf542f53275bdfee4814304143992)

10 / 68    (Adware)
boost_800001_1010.exe  (069186b331ff9845099d02fb12a6812d)

5 / 68      (Adware)
64boost.dll (Jigsaw)  (b969605a2a38e314bc88f80550b4fc5b)

7 / 68      (Adware)
boost.dll (Jigsaw)  (010578b14013326cd1e0226e45b085fb)

9 / 68      (Adware)
shop with boost.exe  (8ddc9bcead0f3524b29a1874ce91ed8a)

5 / 68      (Adware)
64boost.dll (Jigsaw)  (1a2f27947f3516fde9ef67a461539c06)

5 / 68      (Adware)
64boost.dll (Jigsaw)  (bf0d9bd521f2ffba2fd29bddc8c7c55c)

6 / 68      (Adware)
boostinstaller.exe  (27eb81723f141538290c0bdec20077e9)

9 / 68      (Adware)
boost.exe  (9d9aa113d83a7397a5b6b19501a60b14)

7 / 68      (Adware)
of_boost-fr_chk_0_54.exe  (dcd9bd3994a95a2845681124a110e7be)

5 / 68      (Adware)
boost.dll (Jigsaw)  (000a28bf5ac9e62263d8eaf0aafc8f85)

5 / 68      (Adware)
64boost.dll (Jigsaw)  (4f5a164876f820e915e30f9c82bf04a0)

5 / 68      (Adware)
64boost.dll (Jigsaw)  (5c4ed6955bf2127e705a305b301e3db3)

5 / 68      (Adware)
64boost.dll (Jigsaw)  (537bf5b09ecab46d417b7e0d9e1dd115)

6 / 68      (Adware)
air9d6c.exe  (178a162bbeb502cb36d06506fc410a59)

5 / 68      (Adware)
boost.dll (Jigsaw)  (e662234ed2a08486ed22d4f22b6e0c97)

4 / 68      (Adware)
boost_50001_1010.exe  (6b339fcbd78bbd4a108196c7c69efcd1)

5 / 68      (Adware)
boost.dll (Jigsaw)  (bf41717722bc78406350f078605b9d45)

4 / 68      (Adware)
boost_190001_1010.exe  (02d074567a81e794ee25a6e42c319b16)

5 / 68      (Adware)
boost.dll (Jigsaw)  (ffe5e0ed49883950911c9c4311d0befa)

5 / 68      (Adware)
64boost.dll (Jigsaw)  (c468891b565cf566749e001d2d34788d)

 
Latest 30 of 38 files

Downloads URLs for files signed by Rollnon.

4 / 68      (Adware)

4 / 68      (Adware)

4 / 68      (Adware)

The following websites host and distribute files published by Rollnon.

The following certificate is also signed by Rollnon.

6C8BE128901FD5CAC240ACBD1CC43ABC  (May 26, 2014 to May 27, 2015)

The following publishers (by Authenticode signature organization name) are related.

Remove Rollnon Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Rollnon by VeriSign, Inc. on April 01, 2014 with the serial number '38db31e5040834d048da19b96d864789'.