Ruslan Murobec

Publisher Information

Ruslan Murobec is a brand of publishers/developers run by WebPick Internet Holdings Ltd. located in Ramat Ha'Chayal Tel Aviv, Israel. The company is a primary distributor of unwanted software. Ruslan Murobec is a developer of WebPick Internet Holdings and publishes a number of adware web browser plugins designed to monitor web browser behavior and inject advertisements (banner, popups, text-links, etc.) in the browser by using the WebPick InstalleRex monetization delivery platform. These programs from Ruslan Murobec are typiclaly installed on a variety of names and misspellings and are very difficult to remove. According to WebPick, they use developers to sign their adware in order to "throw off competitors".
Authority:
COMODO CA Limited

Valid from:
9/9/2013 7:00:00 PM

Valid to:
9/10/2014 6:59:59 PM

Subject:
CN=Ruslan Murobec, O=Ruslan Murobec, STREET=Chistyakovska 1, L=Kiev, S=Kiev, PostalCode=02593, C=UA

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00a607fe6c9baf18511288bd2284b7669a

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
Adware.WebPick.Installer.EE, Adware.WebPick.Installer.g, Adware.WebPick.Installer.I, Adware.WebPick.Installer.b, Adware.WebPick.Installer.T, Adware.WebPick.Installer.M, Adware.WebPick.Installer.FF, Adware.WebPick.Installer.w, Adware.WebPick.Installer.t, Adware.WebPick.Installer.P, Adware.WebPick.Installer.N, PUP.Installer.RuslanMurobec.I, PUP.Installer.RuslanMurobec.U, PUP.Installer.RuslanMurobec.M, Adware.WebPick.Installer (M), PUP.WebPick.RuslanMurobec.Installer (M)
100.00%

VIPRE Antivirus
Threat.4150696, Trojan.Win32.Generic
84.62%

Malwarebytes
PUP.Optional.InstalleRex
84.62%

NANO AntiVirus
Riskware.Win32.InfoLeak.cvgqot
84.62%

Kaspersky
Trojan.Win32.AntiFW
84.62%

Sophos
InstallRex, PUA 'InstallRex'
84.62%

Comodo Security
Application.Win32.InstalleRex.KG
84.62%

Dr.Web
Adware.Downware.2108, Trojan.WebPick.2540, Threat.Undefined
84.62%

Avira AntiVirus
TR/AntiFW.b.109
84.62%

Antiy Labs AVL
RiskWare[Downloader:not-a-virus,HEUR]/Win32.AdLoad, Trojan/Win32.TSGeneric, Trojan/Win32.AntiFW.b
84.62%

1 / 68      (Adware)
mars frontier cheat engine.exe (TopApp software)  (6043102fad8053c7ef850a070e25c65f)

39 / 68    (Adware)
00000000 (TopApp software)  (29ccdad26357dddbfeb14ab07ca49e9f)

1 / 68      (Adware)
song.mp3.exe (TopApp software)  (2b02127a98f4e4223c9b395ae1c8bd6f)

1 / 68      (Adware)

1 / 68      (Adware)
frozen let it go.exe (TopApp software)  (0b3015560581aed0616bfd50a3f58d6d)

39 / 68    (Adware)
00000000 (TopApp software)  (608f12f430ef072f6d2edb016755f673)

39 / 68    (Adware)
00000000 (TopApp software)  (6a0f99820094b31a4769be1dcaab734b)

39 / 68    (Adware)
00000000 (TopApp software)  (b4b718b92e9e347eaf24c76781d6c4f0)

13 / 68    (Adware)
00000003 (TopApp software)  (7bf3e8bae349f42f1e247024cd45c467)

13 / 68    (Adware)
00000002 (TopApp software)  (2a69c0f5b43ab0a938e66d30391e48ef)

17 / 68    (Adware)
download.exe (TopApp software)  (f1f144e78abddfd9159a007dffdca58d)

30 / 68    (Adware)
00000000 (TopApp software)  (c28a4955b749d63f13c9e939b4e0f040)

38 / 68    (Adware)
00000000 (TopApp software)  (dd5fc3b26602e5837c9b2ab133cde680)

30 / 68    (Adware)
espqgghq.exe (TopApp software)  (31cae0efa424ac09a62f97fc6555402b)

33 / 68    (Adware)
applicationgrabb_com (TopApp software)  (66d04e4c28547e913fbabbe497a2c516)

33 / 68    (Adware)
00000000 (TopApp software)  (aa4d226b03396b610bae6b456469aad9)

37 / 68    (Adware)
00000000 (TopApp software)  (e376e2a5ef94ff34a2d45edd0a7d8da2)

37 / 68    (Adware)
doctor sueã±o.exe (TopApp software)  (52fc03ab69f7c78d7b9a3ce3bb0f188d)

36 / 68    (Adware)
atif aslam song.exe (TopApp software)  (711455073ab91ae9a8dd5f766abae9eb)

34 / 68    (Adware)

34 / 68    (Adware)

35 / 68    (Adware)

19 / 68    (Adware)
103031_j.k.rar.exe (TopApp software)  (4cdd237e6146bc8cf62a0be79bc08315)

15 / 68    (Adware)
unlock root pro 4.1.1.exe (TopApp software)  (fa25d24caadac648965653011effef4c)

13 / 68    (Adware)
u2 - vertigo (mtv jammed) par t 1.exe (TopApp software)  (fa6cf215f4f0f92b4a12607a7b8bb26a)

14 / 68    (Adware)

14 / 68    (Adware)
download.exe (TopApp software)  (3db845877ad7fb83962b5a1647a1ccdb)

14 / 68    (Adware)
download.exe (TopApp software)  (f2f6e2a1c82f30582e193342d7baaf1f)

14 / 68    (Adware)
download.exe (TopApp software)  (7cd486a43f37fbc93a99e4631bb9fbf1)

 
Latest 30 of 39 files

Downloads URLs for files signed by Ruslan Murobec.

15 / 68    (Adware)
http://applicationgrabb.net/.../Unlock Root Pro 4.1.1.exe  (fa25d24caadac648965653011effef4c)

1 / 68      (Adware)

The following websites host and distribute files published by Ruslan Murobec.

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to Ruslan Murobec by COMODO CA Limited on September 09, 2013 with the serial number '00a607fe6c9baf18511288bd2284b7669a'.