Safari Developer: (ZMLURJCR77) duvalaugustin@gmail.com

Publisher Information

Authority:
Apple Inc.

Valid from:
7/16/2012 1:25:00 AM

Valid to:
7/16/2013 1:25:00 AM

Subject:
C=FR, CN=Safari Developer: (ZMLURJCR77) duvalaugustin@gmail.com, OID.0.9.2342.19200300.100.1.1=3MV9W8EA58

Issuer:
CN=Apple Worldwide Developer Relations Certification Authority, OU=Apple Worldwide Developer Relations, O=Apple Inc., C=US

Serial number:
24a43ee61f285a43

Scanner detections:
Malware distribution  (93% detected)

Scan engine
Details
Detections

Reason Heuristics
Threat.Win.Reputation.IMP, PUP.Browser.Crossrider.BHO.Meta (M), PUP.SafariDeveloperZMLURJCR77duvalaugustingmail.Reputation
85.71%

Trend Micro House Call
TROJ_GEN.F47V0328, TROJ_GEN.F47V0402, TROJ_GEN.R0C1H05L813, TROJ_GEN.F47V0215, TROJ_GEN.F47V0126
35.71%

ESET NOD32
Win32/Toolbar.CrossRider (variant), Win32/Packed.ScrambleWrapper, Win32/Toolbar.CrossRider.G potentially unwanted (variant)
35.71%

Dr.Web
Adware.Plugin.88, Adware.Plugin.22, Trojan.AVKill.27950
21.43%

Emsisoft Anti-Malware
Riskware.Win32.Toolbar.CrossRider.AMN, Packed.Win32.ScrambleWrapper.AMN
14.29%

Comodo Security
Heur.Suspicious
14.29%

VIPRE Antivirus
GamePlayLabs, Crossrider
14.29%

Baidu Antivirus
Adware.Win32.CrossRider, Adware.Win32.CrossAd
14.29%

AVG
SmartShopper.G, Crossrider
14.29%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
7.14%

1 / 68      (Malware)
Color My Facebook.dll (Color My Facebook by Duval)  (111c9da2a1bcbf199d76cb35b127f513)

1 / 68      (Malware)
color my facebook-bg.exe (Color My Facebook by Duval)  (3ec8fc4f0cde71535956199112c6eefb)

5 / 68      (PUP)
buttonutil.dll  (01d5b9f0e95cd524ebc26999f5297a94)

3 / 68      (PUP)
5145780_setup.exe (Color My Facebook by Duval)  (ca0e446835a644de1fefc10c6485016a)

5 / 68      (inconclusive)
30854590_setup.exe (Color My Facebook by Duval)  (b85edd9ac4a224e780ea3a42dace2b9d)

1 / 68      (Malware)
color my facebook-bg.exe (Color My Facebook by Duval)  (3f39eaf9606b46a2f4261206b7008720)

23 / 68    (PUP)
updater3847.exe (Color My Facebook by Duval)  (8bb89e8d749542120af83642f473e8f9)

1 / 68      (Malware)
color my facebook64.exe (Color My Facebook by Duval)  (092b8d966b8ec157f5cd19b85124a4c4)

1 / 68      (Malware)
color my facebook-bg.exe (Color My Facebook by Duval)  (71e75162110cefeef46c6d52c6fe7b2f)

1 / 68      (Malware)
buttonutil64.dll  (6882bacec71ee56700c3e5f43e823a46)

1 / 68      (Malware)
buttonutil.dll  (b50a028e4492927fb39c2136969ef053)

3 / 68      (PUP)
2185517_setup.exe (Hosqqish by Ohbzelyxotkz)  (078a1c840bff64e7a1c2c558ea5837db)

1 / 68      (PUP)
Color My Facebook.dll (Color My Facebook by Duval)  (fb2d2ec61f8cf1b850bfeeb09e8bec14)

5 / 68      (PUP)
updater3847.exe (Color My Facebook by Duval)  (48db03a4c5f1605694c0aef27c028a83)

* Note, the details and description above are based on the code signing digital signature issued to Safari Developer: (ZMLURJCR77) duvalaugustin@gmail.com by Apple Inc. on July 16, 2012 with the serial number '24a43ee61f285a43'.