SaFe cLick LOL

Publisher Information

SaFe cLick LOL is a software publisher located in Dublin, Ireland*. The company is a primary distributor of unwanted software. Thre are 8 additional code signing certificates issued to this publisher.
Authority:
thawte, Inc.

Valid from:
11/10/2015 5:00:00 AM

Valid to:
1/28/2016 4:59:59 AM

Subject:
CN=SaFe cLick LOL, O=SaFe cLick LOL, L=Dublin, S=Dublin, C=IE

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
38da92824628c76870186997164c1d6f

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Outbrowse (M)
100.00%

1 / 68      (Adware)
setup.exe (VPFMS)  (780e1a29700a37ff755ba77efac9d539)

1 / 68      (Adware)
setup.exe (DGJXD)  (0de487016174d9044e80e777930cd06c)

1 / 68      (Adware)
setup.exe (AYMXF)  (adc94de01289bf61d8e99ae5085febda)

1 / 68      (Adware)
softwaredownload.dat (WSHSI)  (80845f9e08bd8e029a1394f13df014cb)

1 / 68      (Adware)
setup.exe (QOYMN)  (bd629686664407853b4cc602ad083756)

1 / 68      (Adware)
setup.exe (HOWQU)  (776f42ebcd68523a80a695c96d8f931e)

1 / 68      (Adware)
setup.exe (BYLAJ)  (f4d6660bb4c5325f4acaaf7e63258948)

1 / 68      (Adware)
windows 8 anytime upgrade keys.exe (CXAAT)  (9154bcd5464903ade6eb701368af3a72)

1 / 68      (Adware)
setup.exe (GSCYT)  (e4626cf689fdef7a6b8ea1f672c3f880)

1 / 68      (Adware)
setup.exe (BGDEK)  (84e1ba441adb09e2bf992b5e8074a3e6)

1 / 68      (Adware)
setup.exe (PCMVZ)  (cfe3ee6f8a9fb7ae81a5f51b8b60e09a)

1 / 68      (Adware)
setup.exe (AITCT)  (57c8caffc98d87e65c4a2bbfa9caac71)

1 / 68      (Adware)
virtualvillagersfullversion.dat (VKTSS)  (dabe9526ab1b7726ce24d7a2bfb6ff11)

1 / 68      (Adware)
virtualfamiliesfullversion.dat (CHDIM)  (ade4b6a22a5b4675f9697063c9b1228a)

1 / 68      (Adware)
turbosubfullversion.dat (IZBNG)  (00b55446e89b3f2f93f6027c3503b92c)

1 / 68      (Adware)
turbopizzafullversion.dat (NINZQ)  (58184f917ffb0c9bb0a1e54558fa4560)

1 / 68      (Adware)
softwaredownload.dat (QBZQF)  (aa5a754fd52bcf11bf3a8532cf5b3f6a)

1 / 68      (Adware)
slingoquestfullversion.dat (HFTJU)  (4310bba67f815e7a5602fd6e447caeca)

1 / 68      (Adware)
sherlockholmes2fullversion.dat (UYVVE)  (94c9bc08865af4130a97906663cfbfb0)

1 / 68      (Adware)
poppitfullversion.dat (VVSXW)  (e502d120e2afded40e97f2c3eeed0352)

1 / 68      (Adware)
montezuma3fullversion.dat (QRPEX)  (bebf7bf67ff934145b0cb8957c2c1485)

1 / 68      (Adware)
mahjongfullversion.dat (JPQQY)  (8ba160eff87fd13a39a0bbf5a0ab5599)

1 / 68      (Adware)
luxor5fullversion.dat (SSZRE)  (57f75b48ea896aa5ef7dd3555730d870)

1 / 68      (Adware)
jewelquestfullversion.dat (IUWOF)  (90cb502b54d64f95b77e54ecb4ce911e)

1 / 68      (Adware)
easyyoutbedownloader.dat (GOXSE)  (5a4981ecee052ab88ebcef9fb03fcc28)

1 / 68      (Adware)
burgershop2fullversion.dat (ZQFNX)  (4c246345910bbaca0bf623e85572d71f)

1 / 68      (Adware)
virtualvillagers.exe (CZSQS)  (1146082f7e51972083c691cff5521615)

1 / 68      (Adware)
virtualfamilies.exe (KBDQC)  (dc4fa74d6dadd91d681ed50966141ee2)

1 / 68      (Adware)
turbosub.exe (SNICH)  (fea06df9b41107174e38565180df5494)

1 / 68      (Adware)
turbopizza.exe (WOXEM)  (8f00b0c376eb076e53a2b9d4ee7f395d)

 
Latest 30 of 250 files

The certificates below are also signed by SaFe cLick LOL.

6C542516D19455BC730D359E4ACE5F03  (Jan 27, 2015 to Jan 28, 2016)

1D35B931645F649089CF2B35F1F31828  (May 28, 2015 to Jan 28, 2016)

6A4D214C072FB3F4C288346142D6738B  (May 31, 2015 to Jan 28, 2016)

5AEA058C597ADA6D21E975B57C9FEA77  (Mar 16, 2015 to Jan 28, 2016)

4FDE5AD324E269DA8C09C2F4DC8B70AF  (Feb 03, 2015 to Jan 27, 2016)

0595CC8239CA339F8801E629507F9181  (May 17, 2015 to Jan 27, 2016)

0113B280254155278C27A31712365932  (Feb 04, 2015 to Jan 27, 2016)

6A94D3B47108255DE689EDD0048476E7  (Mar 08, 2015 to Jan 27, 2016)

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to SaFe cLick LOL by thawte, Inc. on November 10, 2015 with the serial number '38da92824628c76870186997164c1d6f'.