SaltarSmart

Publisher Information

SaltarSmart is a brand of the Sambreel/Yontoo group, a web advertising company located in Carlsbad, CA. The company is a primary distributor of unwanted software. It is part of the Yontoo/Sambreel group and distributes web browser add-ons, typically potentially unwanted and adware in nature, that are designed to modify a user's typical search beahvior as well as display context and popup advertising.
Remove SaltarSmart Malware - Powered by Reason Core Security
Authority:
VeriSign, Inc.

Valid from:
8/12/2013 7:00:00 PM

Valid to:
8/13/2015 6:59:59 PM

Subject:
CN=SaltarSmart, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=SaltarSmart, L=San Diego, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
75908b9bafc78aeac30578d5193f6dc8

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Yontoo.SaltarSmart (M), Adware.Yontoo.SaltarSmart (M), PUP.Yontoo.SaltarSmart.Installer (M)
100.00%

VIPRE Antivirus
Threat.4150696, Threat.4741131, Yontoo, Trojan.Win32.Generic
26.00%

Baidu Antivirus
Adware.Win32.BrowseFox, Adware.Win64.BrowseFox
26.00%

McAfee
Program.BrowseFox, Program.BrowseFox.e, Artemis!FAFB7A16F87D, BrowseFox-FRR, RDN/Generic PUP.z!ed
26.00%

Sophos
PUA 'Browse Fox', SaltarSmart (PUA), BrowseSmart
26.00%

Dr.Web
Trojan.BPlug.214, Trojan.BPlug.219, Trojan.Yontoo.1734, Trojan.BPlug.123, Trojan.BPlug.142
26.00%

McAfee Web Gateway
Artemis!CCC839D94A13, BrowseFox.e, BehavesLike.Win64.PUPAmonetize.ph, BrowseFox-FRR, RDN/Generic PUP.z!ed
26.00%

AVG
Generic_r, SaltarSmart, BrowseFox.F, Adware BrowseFox.F
26.00%

F-Prot
W32/MegaBrowse.A, W64/S-5cc71ce8, W64/A-59c9c70a, W32/S-5aefa7b7, W64/A-e967bae2, W32/S-7bed2e86
26.00%

K7 Gateway Antivirus
Trojan , Adware
26.00%

1 / 68      (Adware)
maintainer.bak  (61c4f1e23dce8d15e4ea119bb5aed8f5)

36 / 68    (Adware)

1 / 68      (Adware)
SaltarSmart.exe  (6356b9ee7b3997869c8fe96f8363a66b)

1 / 68      (Adware)
saltarsmart.expextdll.dll  (f488bb0b051bb1ddf5452bacfa88e38b)

1 / 68      (Adware)
74dbfc99254e417c90dc64.dll  (95b9c9fad5c68242239ba9e8858c9a0d)

1 / 68      (Adware)
setup  (848e3b7b28c644cb0c6c60dd140987f6)

1 / 68      (Adware)
SaltarSmart.FFUpdate.dll  (cc6a647b57ed7e7eaf9aaf77da5abce9)

35 / 68    (Adware)
{f5547162-5df2-4216-9d7d-87cc3068bb50}w64.sys (StdLib)  (ea9b603b6ccfebdd2786ef6db1797e0c)

1 / 68      (Adware)
{7a717a37-358c-4d58-9564-7f9beb030c76}w64.sys (StdLib)  (c6077ab82006c11f08fc927760703c61)

1 / 68      (Adware)
saltarsmart.browseradapter_1.exe  (362fb8a48c40adc2f3907185591e5b77)

1 / 68      (Adware)
saltarsmart.browseradapter.exe  (292f2d15bc9ef1ed453929368ec7e95a)

1 / 68      (Adware)
SaltarSmart.Bromon.dll  (a8b9e5fab46fd4d22beab551dc662127)

39 / 68    (Adware)
saltarsmartbho.dll (SaltarSmart)  (47cf53b2ffb64c3958989f8b4e278da0)

1 / 68      (Adware)
SaltarSmart2015051723.exe  (cddb801a2375f5b2d22da1a1e9ea96d8)

1 / 68      (Adware)
SaltarSmart2015051804.exe  (a70ccb0ab5d21ecb8fca237cfcb48f5a)

1 / 68      (Adware)
SaltarSmart2015043005.exe  (10e27cde4d62c76ddf180a945e21a870)

1 / 68      (Adware)
saltarsmart.boas.exe.pendingoverwrite  (fc2fc01538aa88b3b3bfc790ea4609a1)

1 / 68      (Adware)
74dbfc99254e417c90dc64.dll  (f8d3ec3612d8888b5eb396ce1f0d4055)

1 / 68      (Adware)
SaltarSmart2015062415.exe  (8c15806fabeaa1e8e23e8963e71bb8c7)

1 / 68      (Adware)
SaltarSmart.exe  (3455b432e5868e38d012c9433d281311)

1 / 68      (Adware)
SaltarSmart.exe  (28316eee92c7596564d838eea66693aa)

33 / 68    (Adware)
{74dbfc99-254e-417c-90dc-c072c74c853a}w64.sys (StdLib)  (7aea4525d9e70e91f517d3f4fe74cfc6)

18 / 68    (Adware)
saltarsmartbho.dll (SaltarSmart)  (8a26afccef4069cbc3a3bab0dcfc25f6)

1 / 68      (Adware)
maintainer.bak  (40256537d6be9c0472da9a00d4e443d2)

1 / 68      (Adware)
SaltarSmart.GCUpdate.dll  (de0a71fa083a7776b944e8ef688d489d)

1 / 68      (Adware)
updatesaltarsmart.exe  (986577023aa45c6dc4df0df5da0ce9ff)

1 / 68      (Adware)
SaltarSmart.ExtChecker.dll (by SaltarSmart)  (a1384b80736399ec6f6a6639c4b49582)

1 / 68      (Adware)
appmgr.bak  (79639a283af7335c814a99b51a5a6c4d)

35 / 68    (Adware)
{f5547162-5df2-4216-9d7d-87cc3068bb50}w64.sys (StdLib)  (1ee14341a4c9498d81e064582389506f)

33 / 68    (Adware)
{74dbfc99-254e-417c-90dc-c072c74c853a}w64.sys (StdLib)  (31d00a383552499d00d7890e6f68f1fd)

 
Latest 30 of 628 files

The following publishers (by Authenticode signature organization name) are related.

30 of 177 publishers

Remove SaltarSmart Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to SaltarSmart by VeriSign, Inc. on August 12, 2013 with the serial number '75908b9bafc78aeac30578d5193f6dc8'.