Shanghai Gaoxin Computer System Co.,ltd

Publisher Information

Shanghai Gaoxin Computer System Co.,ltd is a software developer located in Shanghai, China*. The publisher primarily developes software that can be classified as adware.
Authority:
VeriSign, Inc.

Valid from:
5/7/2013 8:00:00 AM

Valid to:
5/7/2016 7:59:59 AM

Subject:
CN="Shanghai Gaoxin Computer System Co.,ltd", OU=IT, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Shanghai Gaoxin Computer System Co.,ltd", L=Shanghai, S=Shanghai, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
3252b61cbbba434fc4c89a24f5ed7d30

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.ShanghaiGaoxinComputerSystemColtd.Installer (M), PUP.ShanghaiGaoxinComputerSystemColtd (M)
100.00%

Trend Micro House Call
Suspicious_GEN.F47V0702, TROJ_GEN.F47V1102, TROJ_GEN.F47V0209
6.00%

avast!
Win32:Rootkit-gen [Rtk], Win32:Malware-gen
6.00%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
6.00%

McAfee
Artemis!0DE7F71566A7, PUP-FGC
4.00%

VIPRE Antivirus
Trojan.Win32.Generic
4.00%

McAfee Web Gateway
Heuristic.BehavesLike.Win32.Suspicious-PKR.O, BehavesLike.Win32.Suspicious.tc
4.00%

Sophos
Mal/Emogen-F
4.00%

IKARUS anti.virus
Win32.Malware
4.00%

Kingsoft AntiVirus
VIRUS_UNKNOWN
4.00%

1 / 68      (PUP)
setup_t008.exe  (e3689bce70f399bc3662d7e6e699cd5e)

1 / 68      (PUP)
Wizard.exe (by www.guangsu.cn)  (2781c4afd6874a3b4aea333103553786)

1 / 68      (PUP)
wdjrelated.dll (by www.guangsu.cn)  (00f51d5f5742d0861c787198fdd804d0)

1 / 68      (PUP)
statistics.dll (by www.guangsu.cn)  (27d41d35aee6eab1caf0eefca20ae49c)

1 / 68      (PUP)
Power.exe (by www.guangsu.cn)  (746a9de4334bd7642aa33686f293211b)

1 / 68      (PUP)
Mutual.exe (by www.guangsu.cn)  (3ad1745df8460f29cfce9007eb8ed5fe)

1 / 68      (PUP)
MBManager.exe (by www.guangsu.cn)  (d3dbd172b94c8c610e2d0989d58959cf)

1 / 68      (PUP)
ImeUtil.exe (by www.guangsu.cn)  (9ca04bcd17e8c04444012008e7f0556e)

1 / 68      (PUP)
gswb64.ime (by www.guangsu.cn)  (5b0d143ad65222e4eadc9650b8816539)

1 / 68      (PUP)
gswb32.ime (by www.guangsu.cn)  (03e128ae8e1dd2a84d41ca64b236a167)

1 / 68      (PUP)
Config.exe (by www.guangsu.cn)  (7efbf7826917a2ac49d00e3b37c4611a)

1 / 68      (PUP)
ApkReg.exe (by www.guangsu.cn)  (225c8df2ef7aa46ba39ad42423fdd3ee)

1 / 68      (PUP)
wdjengine.dll (by www.guangsu.cn)  (1c47d6d154335beee283eb77c6176e83)

1 / 68      (PUP)
service.dll  (ffbccee21f575b6aa6eb78b7c0b1e9df)

1 / 68      (PUP)
expand.dll  (c1104f1c0fb1476ae8afec52d6c83ffc)

1 / 68      (PUP)
247df18eb7f4cf79d0acbb7785165858.exe  (2f06d805cf350776711ef66e95cc2e2f)

1 / 68      (PUP)
soft_sp.exe (by www.guangsu.cn)  (32134e2d7e982a892c3f89b3590281c2)

11 / 68    (PUP)
setup700.exe  (2e9aa7c31ebc6be8c8104cb3e751a842)

1 / 68      (PUP)
ysie.exe  (d08dcdaac63cc90b96a7f7840e4de701)

1 / 68      (PUP)
uninst.exe  (fd6d34b569e4613e4dfe24961ce1f063)

1 / 68      (PUP)
setup_463.exe  (9b0cdd915e493c4045255fdcb7ce2957)

1 / 68      (PUP)
setup352.exe  (7117076ef6c8d2e23425ff357016f3ea)

1 / 68      (PUP)
setup352.exe  (eee21a68633dc8ec0968bbce6b9466d3)

1 / 68      (PUP)
Wizard.exe (by www.guangsu.cn)  (25fd66a5d11ddd9edd88c68a066e9e01)

1 / 68      (PUP)
uninst.exe  (0134e315dbc3099765fa4eabbd58a305)

1 / 68      (PUP)
Power.exe (by www.guangsu.cn)  (e3ccf5893133104dcccf622fcd2c5ca7)

1 / 68      (PUP)
MBManager.exe (by www.guangsu.cn)  (223faeab90b531204c1ea816a5b5ab3c)

1 / 68      (PUP)
ImeUtil.exe (by www.guangsu.cn)  (8ba5a83dd71f03cf040e061c1f003f5b)

1 / 68      (PUP)
expand.dll (by www.guangsu.cn)  (837a3c6d4a987c0b1a1dce1f5400d679)

1 / 68      (PUP)
service.dll (by www.guangsu.cn)  (bb660eaf978b92cb55e84643f6f05500)

 
Latest 30 of 226 files

* Note, the details and description above are based on the code signing digital signature issued to Shanghai Gaoxin Computer System Co.,ltd by VeriSign, Inc. on May 07, 2013 with the serial number '3252b61cbbba434fc4c89a24f5ed7d30'.