Ruslan Murobec

Publisher Information

Ruslan Murobec is a brand of publishers/developers run by WebPick Internet Holdings Ltd. located in Ramat Ha'Chayal Tel Aviv, Israel. The company is a primary distributor of unwanted software. Ruslan Murobec is a developer of WebPick Internet Holdings and publishes a number of adware web browser plugins designed to monitor web browser behavior and inject advertisements (banner, popups, text-links, etc.) in the browser by using the WebPick InstalleRex monetization delivery platform. These programs from Ruslan Murobec are typiclaly installed on a variety of names and misspellings and are very difficult to remove. According to WebPick, they use developers to sign their adware in order to "throw off competitors".
Remove Ruslan Murobec Malware - Powered by Reason Core Security
Authority:
COMODO CA Limited

Valid from:
9/9/2013 7:00:00 PM

Valid to:
9/10/2014 6:59:59 PM

Subject:
CN=Ruslan Murobec, O=Ruslan Murobec, STREET=Chistyakovska 1, L=Kiev, S=Kiev, PostalCode=02593, C=UA

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00a607fe6c9baf18511288bd2284b7669a

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
Adware.WebPick.Installer.EE, Adware.WebPick.Installer.g, Adware.WebPick.Installer.I, Adware.WebPick.Installer.b, Adware.WebPick.Installer.T, Adware.WebPick.Installer.M, Adware.WebPick.Installer.FF, Adware.WebPick.Installer.w, Adware.WebPick.Installer.t, Adware.WebPick.Installer.P, Adware.WebPick.Installer.N, PUP.Installer.RuslanMurobec.I, PUP.Installer.RuslanMurobec.U, PUP.Installer.RuslanMurobec.M, Adware.WebPick.Installer (M), PUP.WebPick.RuslanMurobec.Installer (M)
100.00%

VIPRE Antivirus
Threat.4150696, Trojan.Win32.Generic
84.62%

Malwarebytes
PUP.Optional.InstalleRex
84.62%

NANO AntiVirus
Riskware.Win32.InfoLeak.cvgqot
84.62%

Kaspersky
Trojan.Win32.AntiFW
84.62%

Sophos
InstallRex, PUA 'InstallRex'
84.62%

Comodo Security
Application.Win32.InstalleRex.KG
84.62%

Dr.Web
Adware.Downware.2108, Trojan.WebPick.2540, Threat.Undefined
84.62%

Avira AntiVirus
TR/AntiFW.b.109
84.62%

Antiy Labs AVL
RiskWare[Downloader:not-a-virus,HEUR]/Win32.AdLoad, Trojan/Win32.TSGeneric, Trojan/Win32.AntiFW.b
84.62%

1 / 68      (Adware)
mars frontier cheat engine.exe (TopApp software)  (6043102fad8053c7ef850a070e25c65f)

39 / 68    (Adware)
00000000 (TopApp software)  (29ccdad26357dddbfeb14ab07ca49e9f)

1 / 68      (Adware)
song.mp3.exe (TopApp software)  (2b02127a98f4e4223c9b395ae1c8bd6f)

1 / 68      (Adware)

1 / 68      (Adware)
frozen let it go.exe (TopApp software)  (0b3015560581aed0616bfd50a3f58d6d)

39 / 68    (Adware)
00000000 (TopApp software)  (608f12f430ef072f6d2edb016755f673)

39 / 68    (Adware)
00000000 (TopApp software)  (6a0f99820094b31a4769be1dcaab734b)

39 / 68    (Adware)
00000000 (TopApp software)  (b4b718b92e9e347eaf24c76781d6c4f0)

13 / 68    (Adware)
00000003 (TopApp software)  (7bf3e8bae349f42f1e247024cd45c467)

13 / 68    (Adware)
00000002 (TopApp software)  (2a69c0f5b43ab0a938e66d30391e48ef)

17 / 68    (Adware)
download.exe (TopApp software)  (f1f144e78abddfd9159a007dffdca58d)

30 / 68    (Adware)
00000000 (TopApp software)  (c28a4955b749d63f13c9e939b4e0f040)

38 / 68    (Adware)
00000000 (TopApp software)  (dd5fc3b26602e5837c9b2ab133cde680)

30 / 68    (Adware)
espqgghq.exe (TopApp software)  (31cae0efa424ac09a62f97fc6555402b)

33 / 68    (Adware)
applicationgrabb_com (TopApp software)  (66d04e4c28547e913fbabbe497a2c516)

33 / 68    (Adware)
00000000 (TopApp software)  (aa4d226b03396b610bae6b456469aad9)

37 / 68    (Adware)
00000000 (TopApp software)  (e376e2a5ef94ff34a2d45edd0a7d8da2)

37 / 68    (Adware)
doctor sueã±o.exe (TopApp software)  (52fc03ab69f7c78d7b9a3ce3bb0f188d)

36 / 68    (Adware)
atif aslam song.exe (TopApp software)  (711455073ab91ae9a8dd5f766abae9eb)

34 / 68    (Adware)

34 / 68    (Adware)

35 / 68    (Adware)

19 / 68    (Adware)
103031_j.k.rar.exe (TopApp software)  (4cdd237e6146bc8cf62a0be79bc08315)

15 / 68    (Adware)
unlock root pro 4.1.1.exe (TopApp software)  (fa25d24caadac648965653011effef4c)

13 / 68    (Adware)
u2 - vertigo (mtv jammed) par t 1.exe (TopApp software)  (fa6cf215f4f0f92b4a12607a7b8bb26a)

14 / 68    (Adware)

14 / 68    (Adware)
download.exe (TopApp software)  (3db845877ad7fb83962b5a1647a1ccdb)

14 / 68    (Adware)
download.exe (TopApp software)  (f2f6e2a1c82f30582e193342d7baaf1f)

14 / 68    (Adware)
download.exe (TopApp software)  (7cd486a43f37fbc93a99e4631bb9fbf1)

 
Latest 30 of 39 files

Downloads URLs for files signed by Ruslan Murobec.

15 / 68    (Adware)
http://applicationgrabb.net/.../Unlock Root Pro 4.1.1.exe  (fa25d24caadac648965653011effef4c)

1 / 68      (Adware)

The following websites host and distribute files published by Ruslan Murobec.

The following publishers (by Authenticode signature organization name) are related.

Remove Ruslan Murobec Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Ruslan Murobec by COMODO CA Limited on September 09, 2013 with the serial number '00a607fe6c9baf18511288bd2284b7669a'.