Sevas-S LLC

Publisher Information

Sevas-S LLC is a software developer located in Kyiv, Kyivska Oblast in Ukraine*. The company is a primary distributor of unwanted software. Thre are 2 additional code signing certificates issued to this publisher.
Remove Sevas-S LLC Malware - Powered by Reason Core Security
Authority:
VeriSign, Inc.

Valid from:
2/23/2014 7:00:00 AM

Valid to:
3/26/2015 6:59:59 AM

Subject:
CN=Sevas-S LLC, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Sevas-S LLC, L=Kyiv, S=Kyivska oblast, C=UA

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
4b35ac223f4db03d3b4c5368983a4b53

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.SevasS.Installer (M)
100.00%

McAfee
Artemis!23585DDDC95B, Trojan.Artemis!39488B4505B1
4.00%

Malwarebytes
PUP.Optional.OpenCandy
4.00%

VIPRE Antivirus
Sevas-S Installer, Threat.4847482
4.00%

K7 Gateway Antivirus
Trojan , Unwanted-Program
4.00%

Agnitum Outpost
Riskware.Agent, Riskware.OpenCandy
4.00%

Trend Micro House Call
Suspicious_GEN.F47V0720, TROJ_GEN.F47V1218
4.00%

Sophos
Generic PUA LN, PUA 'OpenCandy'
4.00%

Dr.Web
Adware.OpenCandy.39, Adware.Downware.3115
4.00%

Avira AntiVirus
APPL/Downloader.Gen
4.00%

1 / 68      (Adware)
opera23.exe (Opera)  (dfef7eba1c0ab6d4a9fae5b1ad73bcac)

1 / 68      (Adware)
intellipoint-8.2.exe (IntelliPoint)  (59571bc35fc1561e34c862700f31ee5b)

1 / 68      (Adware)
vinternet-explorer-windows-7-7.exe (Internet Explorer)  (412a9e685a7660ce0a9ccb750fce5001)

1 / 68      (Adware)
adobe-media-player-1.7.exe (Adobe Media Player)  (1acf20304a572cd321374c9171b1c565)

1 / 68      (Adware)
ie8-windowsxp-x64-enu.exe (Internet Explorer 8.0)  (96821c2cfef2d3c42ae58d135767e571)

1 / 68      (Adware)

1 / 68      (Adware)
nero2014-15.0.07700_trial.exe (Nero Multimedia Suite)  (2106dfcfc6e11060470ef08f296dd168)

1 / 68      (Adware)

1 / 68      (Adware)
msn-messenger-16.4.3508.0205.exe (Windows Live Messenger)  (7d9ad27a1fa23a484c59b0deca482ab6)

1 / 68      (Adware)
dap10i_4eb0cacc78_setup.exe (Download Accelerator Plus)  (fa312813a2b571cdad461f4477a6e8f0)

1 / 68      (Adware)

24 / 68    (Adware)
sopcast-3.8.3.exe (SopCast)  (4f87229941fde8fcc69f568e45f758ef)

1 / 68      (Adware)
minecraft_server.1.7.9.exe (Minecraft Client)  (2d7c3b814915d2f0dfa35f2cc1d2b990)

1 / 68      (Adware)

1 / 68      (Adware)
msaoe.exe (Age of Empires I)  (2d6f0670a021eec655e624d46cf5aa09)

1 / 68      (Adware)
ie10-windows6.1-x86-en-us.exe (Internet Explorer 10.0)  (87491d433a422fb64946ab7c43e98345)

1 / 68      (Adware)
zune-download-71520-4.8.2345.0.exe (Microsoft Zune)  (2bc81a07550e1fdf0189000e1bcb6934)

1 / 68      (Adware)
teracopy-2.3.exe (TeraCopy)  (a16b0955106130a58a9417e4e8cb7b8d)

1 / 68      (Adware)
logitech-setpoint-6.61.15.exe (SetPoint)  (96032a2fbdaabd1e957ee09c38a6be2a)

1 / 68      (Adware)
folder-lock-7.2.2.exe (Folder Lock)  (cdab1c63f8929836d1c3d989ae861872)

1 / 68      (Adware)
mkv-player-2.1.15.exe (MKV Player)  (4521be135040561b32325f7ff9d01622)

1 / 68      (Adware)
faststone-image-viewer-4.8.exe (FastStone Image Viewer)  (d3d049710b17f1481cff284c4449314b)

1 / 68      (Adware)
kingsoft-office-2013 9.1.0.4256.exe (Kingsoft Office)  (1cced880fb60191c36a77056617ae0ea)

1 / 68      (Adware)
directx-1.0.exe (DirectX 9.0c)  (4a963a4b5a9e4ff5a3bf16b847664e30)

1 / 68      (Adware)
javasetup7u60.exe (Java Runtime Environment)  (8358abf7beef980a6d01adea1775f7e3)

1 / 68      (Adware)
scdemo.exe (Starcraft)  (b61d5fec373e6c46cc7d3a309ebcb085)

1 / 68      (Adware)
zuma-deluxe-1.0.exe (Zuma Deluxe)  (ce88cc985626866105871074dfc847c8)

1 / 68      (Adware)
zuma-deluxe-1.0.exe (Zuma Deluxe)  (e3c0f690ac1e9ecf26fca77b4ce15a72)

1 / 68      (Adware)
powerdvd-13.0.20922.exe (PowerDVD)  (7a666caf5730bdd6ca328f3dac518a7a)

1 / 68      (Adware)
wordweb-7.0.exe (WordWeb)  (e22235bb6424436a62b1dc5082cb7111)

 
Latest 30 of 388 files

Downloads URLs for files signed by Sevas-S LLC.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://www.joydownload.com/wi_def/.../lightroom-5.2.exe  (72c1d441ff62b5ee52637b5e6314e618)

The following websites host and distribute files published by Sevas-S LLC.

The certificates below are also signed by Sevas-S LLC.

527471E53862E2F90AB45ED4ACB8F4C2  (Jan 23, 2013 to Feb 23, 2014)

6B59CDE153F9D6B8052599E505477C19  (Jan 23, 2012 to Jan 23, 2013)

The following publishers (by Authenticode signature organization name) are related.

Remove Sevas-S LLC Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Sevas-S LLC by VeriSign, Inc. on February 23, 2014 with the serial number '4b35ac223f4db03d3b4c5368983a4b53'.