SearchFoot is a brand of the Sambreel/Yontoo group, a web advertising company located in Carlsbad, CA. The company is a primary distributor of unwanted software. It is part of the Yontoo/Sambreel group and distributes web browser add-ons, typically potentially unwanted and adware in nature, that are designed to modify a user's typical search beahvior as well as display context and popup advertising. There is one additional code signing certificate issued to this publisher.
1/21/2014 10:00:00 PM
1/22/2015 9:59:59 PM
CN=SearchFoot, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=SearchFoot, L=San Diego, S=California, C=US
Detections (100% detected)
PUP.SearchFoot.g, PUP.SearchFoot.U, PUP.SearchFoot.AA, PUP.SearchFoot.i, PUP.Service.SearchFoot.K, PUP.SearchFoot.T, PUP.SearchFoot.V, Adware.Yontoo.SearchFoot (M), PUP.Yontoo.SearchFoot (M)
Adware.BrowseFox, Threat.4741131, Threat.5061968, Threat.4801586, Trojan.Win32.Generic, Yontoo
Adware.Win32.BrowseFox, Adware.Win32.Browsefox, Adware.MSIL.BrowseFox
BrowseFox, PUP-FPS, BrowseFox.e, BrowseFox.b, Artemis!9A5CBAA0B398, Artemis!D80FBA435C38, BrowseFox-FQX, Artemis!84C70661AA17, Artemis!090B281B56B6
McAfee Web Gateway
BrowseFox, PUP-FPS, BrowseFox.e, BrowseFox.b, Artemis, BrowseFox.a, Artemis!2EFBEE200F8A
Trojan.BPlug.214, Trojan.BPlug.297, Trojan.BPlug.218, Trojan.BPlug.219, Trojan.BPlug.281, Trojan.BPlug.199, Trojan.BPlug.169
Win32/BrowseFox (variant), Win64/BrowseFox (variant), MSIL/BrowseFox (variant)
ADWARE/BrowseFox.Gen, Adware/Graftor.159134.5, ADWARE/BrowseFox.Gen7, APPL/BrowseFox.Gen4
AhnLab V3 Security
PUP/Win32.BrowseFox, Adware/Win32.SwiftBrowse, PUP/Win32.SwiftBrowse, PUP/Win64.BrowseFox, PUP/Win32.Megabrowse, Trojan/Win64.SwiftBrowse
The following certificate is also signed by SearchFoot.
The following publishers (by Authenticode signature organization name) are related.
* Note, the details and description above are based on the code signing digital signature issued to SearchFoot by VeriSign, Inc. on January 21, 2014 with the serial number '5f02de54eb4bed008713866aaa6070e0'.