Rollnon

Publisher Information

Rollnon is a software developer located in Bellevue, Washington in the United States*. The company is a primary distributor of unwanted software. There is one additional code signing certificate issued to this publisher.
Authority:
COMODO CA Limited

Valid from:
5/26/2014 5:00:00 PM

Valid to:
5/27/2015 4:59:59 PM

Subject:
CN=Rollnon, O=Rollnon, STREET=3600 136th Pl SE, L=Bellevue, S=WA, PostalCode=98006, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
6c8be128901fd5cac240acbd1cc43abc

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.Rollnon.I, PUP.Rollnon.G, PUP.Installer.Rollnon.F, PUP.Rollnon.M, PUP.Installer.Verti, Threat.Verti.Bundler, PUP.Verti.Rollnon.Bundler (M), PUP.Verti (M)
100.00%

VIPRE Antivirus
Rocketfuel Installer, Ignition Installer, Threat.4790114
65.71%

ESET NOD32
Win32/Verti (variant)
60.00%

McAfee
Artemis!C96BD5645D12, Artemis!79DA512AD361, Artemis!D31FCC522332, Artemis!A111ADA1B417, Artemis!5BE170EEE06C, Artemis!6F779444040E, Artemis!E63CBFB1B210, Artemis!2AD5538F6AD0, Artemis!4A2682FFBE65, Artemis!5DB9DF6778F5, Artemis!AB07D5680A38, Artemis!DA3015BE8028
54.29%

Trend Micro House Call
Suspicious_GEN.F47V0708, Suspicious_GEN.F47V0812, Suspicious_GEN.F47V0729, Suspicious_GEN.F47V0805, Suspicious_GEN.F47V0906
54.29%

IKARUS anti.virus
PUA.Nextup, PUA.Verti
42.86%

avast!
Win32:Rootkit-gen [Rtk], Win32:Malware-gen, Win32:Adware-gen [Adw]
37.14%

Qihoo 360 Security
HEUR/Malware.QVM10.Gen, HEUR/Malware.QVM18.Gen, Win32/RootKit.Rootkit.7e5
28.57%

AVG
Rollnon
28.57%

Sophos
NextUp, Generic PUA BE, Generic PUA DK
25.71%

1 / 68      (Adware)
vlc.exe  (bb931225837e7fcf45ff6d19f5be0256)

1 / 68      (Adware)
diglobrowser.exe  (89d689590ad2910acf7602bf618eb09d)

1 / 68      (Adware)
setup_5.exe  (9f91e1a27a15ed9e992b161c0a5f42e1)

1 / 68      (Adware)
setup_4.exe  (c9f50125319b64255b452cb5a4074d13)

1 / 68      (Adware)
setup.exe  (0d418aa3e02a9a4fc4ffd22764c5ae02)

1 / 68      (Adware)
setup.exe  (cce9ec9ac6c00854a6cc1a06af282d14)

1 / 68      (Adware)
setup.exe  (69ef715d4de81cd4b3b130d7dc9ac8c9)

1 / 68      (Adware)
vlc.exe  (c3a65b6dd1be51e6129fc15be4881ae9)

1 / 68      (Adware)
supermariopython.exe  (ac3de0b5f7f25625fc219b1148ed4406)

1 / 68      (Adware)
crazytaxi2.exe  (7cdefd6962d56be037207cc4e18de7bf)

1 / 68      (Adware)
diglobrowser.exe  (68bd41a1b775654db87ba3ba7ce781b5)

1 / 68      (Adware)
setup.exe  (003c45f600fa389417bc8b3a011a382e)

1 / 68      (Adware)
diglobrowser.exe  (f5df1d468a3b2f648c937935c024dbcf)

7 / 68      (Adware)
diglobrowser.exe  (8fdc49c8ffb8c6aae6f8f948ad8aa5dd)

10 / 68    (Adware)
diglobrowser.exe  (da3015be80280db28855b3c1bccf7731)

9 / 68      (Adware)
setup.exe  (ab07d5680a38480a51c6faeb78185f4f)

6 / 68      (Adware)
diglobrowser.exe  (679885129b6631648525f357134beaa6)

7 / 68      (Adware)
diglobrowser.exe  (5db9df6778f5f2fab30b1198e8bfee53)

9 / 68      (Adware)
setup.exe  (4a2682ffbe659aaa82128c0d1610dfc9)

11 / 68    (Adware)
setup.exe  (2ad5538f6ad0abad6136dcfedf8ec302)

11 / 68    (Adware)
setup.exe  (e63cbfb1b2100899e747abeef7d3a3f6)

11 / 68    (Adware)
setup.exe  (7699c786b61b4289afa9d5bfdb497b5a)

10 / 68    (Adware)
setup.exe  (5e0a03f8ddc8f955727f75918bf20d61)

6 / 68      (Adware)
setup.exe  (79da512ad361b8ba13673829b1741cf3)

18 / 68    (Adware)
setup.exe  (6f779444040e460819c16fa6d8f26edb)

8 / 68      (Adware)
setup.exe  (5be170eee06c1885ccb89e6f5e475a6c)

7 / 68      (Adware)
setup.exe  (d2b6b2d1401967ef9eb4ae7e5598ec0d)

8 / 68      (Adware)
diglobrowser.exe  (12f1d51998385751709e1eeae6f27f06)

15 / 68    (Adware)
diglobrowser.exe  (a111ada1b41725712782b15440eb3cb3)

8 / 68      (Adware)
diglobrowser.exe  (d31fcc5223323c549a8757f17f4aaf07)

 
Latest 30 of 35 files

Downloads URLs for files signed by Rollnon.

11 / 68    (Adware)
http://s.premium-apps.net/stub/.../setup.exe  (20f3c5cb19c0f477ec2c088288be51cb)

1 / 68      (Adware)
http://s.allfreesoft.net/stub/VSAFE/.../DigloBrowser.exe  (89d689590ad2910acf7602bf618eb09d)

11 / 68    (Adware)
http://install.oinstaller6.com/o/.../Setup.exe  (20f3c5cb19c0f477ec2c088288be51cb)

1 / 68      (Adware)
http://s.allfreesoft.net/stub/VSAFE/.../setup.exe  (cce9ec9ac6c00854a6cc1a06af282d14)

11 / 68    (Adware)
http://www.official-drivers.com/.../setup.exe  (20f3c5cb19c0f477ec2c088288be51cb)

18 / 68    (Adware)
http://s.allfree-soft.com/stub/VSAFE/.../setup.exe  (6f779444040e460819c16fa6d8f26edb)

11 / 68    (Adware)
http://www.fraps.com/.../setup.exe  (20f3c5cb19c0f477ec2c088288be51cb)

11 / 68    (Adware)

4 / 68      (Adware)
http://s.allfree-soft.net/stub/VSAFE/.../setup.exe  (d89921607a484f886cc8083fc5a5e52f)

4 / 68      (Adware)
https://install.oinstaller5.com/o/.../Setup.exe  (7833397dd6873a7178da136de2de4042)

4 / 68      (Adware)
http://secure.pn-installer3.com/o/.../Setup.exe  (7833397dd6873a7178da136de2de4042)

4 / 68      (Adware)
https://install.fusioninstall.com/o/.../Setup.exe  (7833397dd6873a7178da136de2de4042)

4 / 68      (Adware)
http://install.oinstaller6.com/o/.../Setup.exe  (7833397dd6873a7178da136de2de4042)

7 / 68      (Adware)
http://s.allfree-soft.net/stub/VSAFE/.../DigloBrowser.exe  (5db9df6778f5f2fab30b1198e8bfee53)

10 / 68    (Adware)
http://www.lpmxp2014.com/.../Setup.exe  (5e0a03f8ddc8f955727f75918bf20d61)

8 / 68      (Adware)
http://s.allfree-soft.com/stub/VSAFE/.../DigloBrowser.exe  (12f1d51998385751709e1eeae6f27f06)

11 / 68    (Adware)
http://secure.1-fusioninstall.com/o/.../Setup.exe  (20f3c5cb19c0f477ec2c088288be51cb)

11 / 68    (Adware)
http://www.official-drivers.com/setup.exe  (20f3c5cb19c0f477ec2c088288be51cb)

11 / 68    (Adware)

11 / 68    (Adware)

11 / 68    (Adware)
http://s.vsafesw.com/stub/.../Flappy.exe  (142d5d07259cb85c9b8dfb775eebe2a3)

11 / 68    (Adware)
http://s.vsafesw.com/stub/.../setup.exe  (20f3c5cb19c0f477ec2c088288be51cb)

The following websites host and distribute files published by Rollnon.

The following certificate is also signed by Rollnon.

38DB31E5040834D048DA19B96D864789  (Apr 02, 2014 to Apr 03, 2015)

The following publishers (by Authenticode signature organization name) are related.

30 of 139 publishers

* Note, the details and description above are based on the code signing digital signature issued to Rollnon by COMODO CA Limited on May 26, 2014 with the serial number '6c8be128901fd5cac240acbd1cc43abc'.