Sambamedia SL

Publisher Information

Sambamedia SL is a software developer located in Adeje, Santa Cruz De Tenerife in Spain*. The company is a primary distributor of unwanted software by bundling various potentially unwanted programs (PUPs) in a bundled installer. Thre are 4 additional code signing certificates issued to this publisher.
Remove Sambamedia SL Malware - Powered by Reason Core Security
Authority:
VeriSign, Inc.

Valid from:
4/28/2014 1:00:00 AM

Valid to:
4/29/2015 12:59:59 AM

Subject:
CN=Sambamedia SL, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Sambamedia SL, L=Adeje, S=Santa Cruz de Tenerife, C=ES

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0cc1dc4bff437a219b57fd821a92ee57

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
Threat.Win.Reputation.IMP, PUP.SambamediaSL.K, PUP.Installer.SambamediaSL.F, PUP.Installer.SambamediaSL.M, PUP.SambamediaSL.G, PUP.SambamediaSL.E, PUP.SambamediaSL.U, PUP.SambamediaSL.I, PUP.Bundler.Softpulse, PUP.Softpulse.Sambamedia.Bundler (M)
100.00%

ESET NOD32
Win32/SoftPulse.B potentially unwanted application, Win32/SoftPulse.J potentially unwanted application, Win32/SoftPulse.H potentially unwanted application
62.50%

G Data
Win32.Application.SoftPulse, Gen:Variant.Application.Bundler, Gen:Variant.Adware.Strictor.62516, Gen:Variant.Adware.Graftor.150962
62.50%

AVG
Generic, Softpulse, Win.Threat.High, Found Win32/DH{gRJ UIEHeVRPFVGBFYEJHFOBE0GBDw}, Trojan horse Dropper.Generic9.WOZ
62.50%

VIPRE Antivirus
Threat.4783235, Threat.4150696
60.42%

Avira AntiVirus
APPL/Downloader.Gen, Adware/Agent.djcr.7, TR/Dropper.Gen, Adware/CrossRider.px.4, Adware/Agent.djcr.4, APPL/Softpulse.Gen8
60.42%

avast!
Win32:PUP-gen [PUP], Win32:Adware-BRE [PUP], Win32:Adware-BSA [PUP], Win32:SoftPulse-R [PUP], Win32:SoftPulse-W [PUP], Win32:SoftPulse-U [PUP]
58.33%

Panda Antivirus
Trj/Genetic.gen
56.25%

Agnitum Outpost
Riskware.Agent, PUA.Agent, Trojan.Buzus, PUA.Downloader
54.17%

Comodo Security
Application.Win32.Softpulse.A, Application.Win32.SoftPulse.J, Application.Win32.CrossRider.JSTE, Application.Win32.SoftPulse.H
50.00%

1 / 68      (Adware)
00000000  (96fc018b576e5a250206e63cc2052feb)

1 / 68      (Adware)
setup.exe  (4be3c75ed4dbb02e917344a2f6a1fd0c)

1 / 68      (Adware)
setup.exe  (f2c03e338d148d607a96ae773148bff1)

1 / 68      (Adware)
setup.exe  (bc274795eff79f78b36e676c0fbdce6e)

1 / 68      (Adware)
player_setup.exe  (9936aeb43d67874d521e79a1d15af0e3)

1 / 68      (Adware)
player_setup.exe  (899ae01ea73b59e6cd43068fc5d0cef3)

1 / 68      (Adware)
player_setup.exe  (76bac7799169cf07a72d1481e090c14f)

1 / 68      (Adware)
setup.exe  (44763d14dfc40c0ba5c9332524a61e59)

1 / 68      (Adware)
setup.exe  (6f725ebb3904f09d97608295222073be)

1 / 68      (Adware)
00000000  (ebba7870e03e40c40983accfee168fe5)

1 / 68      (Adware)
setup.exe  (1db2fce863016c867b526084faac61d6)

1 / 68      (Adware)
player_setup.exe  (805a13d2a0965cf68f001aeacb3f0b3f)

1 / 68      (Adware)
setup.exe  (29eb60e705ef5040866ebe11b1b90571)

1 / 68      (Adware)
setup.exe  (c496bd737c7f838e10360028ee82c764)

1 / 68      (Adware)
itunes.exe  (27ae89138637fa818b35933ec22a0470)

1 / 68      (Adware)
setup.exe  (ee653dae1a607a9241ad28259068aa4d)

1 / 68      (Adware)
setup.exe  (f2a49dc78ac1355db81576195101ef27)

1 / 68      (Adware)
setup.exe  (f2cd7002a4f3e2e40a1ab2483d235daa)

35 / 68    (Adware)
00000000  (3954fc6d5ac370cb0e4fd17905c325e0)

36 / 68    (Adware)
setup.exe  (65beaf79e938dcee9e7586a4ede9ec2d)

33 / 68    (Adware)
00000000  (e7b7b911d770a40befde7e11fa7358eb)

34 / 68    (Adware)
microsoft-money-2008.exe  (00d8a1755f31ac42c3da5421c5a0d17b)

31 / 68    (Adware)
setup.exe  (59520067b3e2757f296018246c675232)

28 / 68    (Adware)
setup.exe  (5f6f6e984d94a611fab9272e43c603d6)

21 / 68    (Adware)
data.exe  (b53bc9024c780c36b2217e4061eb2737)

25 / 68    (Adware)
zipper.exe  (fa5df20df1fdc52905ded3dfb780e119)

10 / 68    (Adware)
java.exe  (533913e2feb123518d33b242d8db2a37)

25 / 68    (Adware)
zipper.exe  (5bec5c26abd16d602f26269f29564abe)

24 / 68    (Adware)
zipper.exe  (d15b3bea2de28ebde50b64a5a2ec6f5f)

25 / 68    (Adware)
zipper.exe  (501887b6b3e91f335ba2fcdcabe1cc3b)

 
Latest 30 of 48 files

Downloads URLs for files signed by Sambamedia SL.

23 / 68    (Adware)

13 / 68    (Adware)
http://www.lpmxp10.com/.../Setup.exe  (8068513daeba311466835c0644c2b14f)

18 / 68    (Adware)
http://www.lpmxp2.com/.../New player.exe  (7efc34bd1e2778f588c896b8d42b797d)

The following websites host and distribute files published by Sambamedia SL.

The certificates below are also signed by Sambamedia SL.

45EC30691B6FCCE67A70FF47105196DF  (Sep 06, 2014 to Sep 07, 2015)

2E18A24E7306F07F934BE75CA0E80137  (Sep 23, 2014 to Sep 07, 2015)

1121A6F5CA8560763435DF885221AE3B200F  (Apr 28, 2014 to Apr 29, 2015)

00B3AB0358C7184E7B47E1675806B74132  (Apr 25, 2014 to Apr 26, 2015)

The following publishers (by Authenticode signature organization name) are related.

Remove Sambamedia SL Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Sambamedia SL by VeriSign, Inc. on April 28, 2014 with the serial number '0cc1dc4bff437a219b57fd821a92ee57'.