Shanghai Zhenrui Network Technology Studio

Publisher Information

Shanghai Zhenrui Network Technology Studio is a software publisher located in ShangHai, China*.
Authority:
VeriSign, Inc.

Valid from:
5/6/2013 8:00:00 AM

Valid to:
5/7/2014 7:59:59 AM

Subject:
CN=Shanghai Zhenrui Network Technology Studio, OU=IT, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Shanghai Zhenrui Network Technology Studio, L=ShangHai, S=ShangHai, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
40210eb4b5038cd40c7b282fa7c94440

Status:
Inconclusive detections from multiple engines

Scan engine
Details
Detections

Trend Micro House Call
TROJ_GEN.F47V0509, TROJ_GEN.F47V0425, TROJ_GEN.F47V0306
60.00%

IKARUS anti.virus
Win32.Malware, Trojan-Dropper.Small
60.00%

McAfee
Artemis!685658F57A4C, Artemis!50EB67C1A0C5
40.00%

avast!
Win32:Rootkit-gen [Rtk], Win32:Adware-gen [Adw]
40.00%

McAfee Web Gateway
Artemis!685658F57A4C, Artemis!50EB67C1A0C5
40.00%

Kingsoft AntiVirus
Win32.Troj.Adspread.Hh.(kcloud), Win32.Troj.Generic.a.(kcloud)
40.00%

Dr.Web
Adware.Downware.2757
40.00%

Malwarebytes
Trojan.Agent.NS
20.00%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
20.00%

MicroWorld eScan
Gen:Variant.Graftor.51246
20.00%

1 / 68      (inconclusive)
setup_t110.exe  (76babbbfc0c8dad82bd72321bd0eecf1)

0 / 68
bhslock64.sys (bhslock Network)  (f42501afd0222a19ee8e392b95b91b81)

0 / 68
uninst.exe  (b8332848b6cc870cfffcff984b570af7)

15 / 68    (Malware)
homepage.exe- (super)  (50eb67c1a0c56c6ff6e301e2190b9f81)

4 / 68      (PUP)
setup_t226.exe  (5fbc69c2d04d13d0a3a675a12da49778)

7 / 68      (Malware)
setup_t002.exe  (685658f57a4c1e3513b814bd52731d9c)

0 / 68
statistics.dll (by www.haharili.com)  (07202be1f29d05c0095d54dd0c80e860)

0 / 68
service.dll (by www.haharili.com)  (0b3acabff83a687bac2637a5a7727494)

0 / 68
clock64.dll (by www.haharili.com)  (6e03a695c6665544a34a892dc809428a)

0 / 68
clock32.dll (by www.haharili.com)  (99b383395abc276437d49b5f30a2a8ed)

0 / 68
uninst.exe  (ab1bc0cc9378644af5e7007d8088ea39)

0 / 68
softupd.exe (by www.guangsu.cn)  (418efa540893d287a7476268461f39de)

0 / 68
hhrl.exe (by www.haharili.com)  (e5d172fd138d21bd55ae764252ff9749)

0 / 68
clock64.exe (by www.haharili.com)  (0cd0aee1a3a05a74c8e1550fa4a1a276)

0 / 68
clock32.exe (by www.haharili.com)  (bf64fd2f60fe3c0e8c9bccfcc6e0776d)

1 / 68      (inconclusive)
setup_t014.exe  (781b40934bd55913a7b93bc760c0b069)

Downloads URLs for files signed by Shanghai Zhenrui Network Technology Studio.

7 / 68      (Malware)
http://down.haharili.com/.../setup_t162.exe  (685658f57a4c1e3513b814bd52731d9c)

7 / 68      (Malware)

7 / 68      (Malware)

1 / 68      (inconclusive)
http://down.haharili.com/.../setup_t099.exe  (781b40934bd55913a7b93bc760c0b069)

1 / 68      (inconclusive)

1 / 68      (inconclusive)

7 / 68      (Malware)
http://cnrdn.com/tZbC  (setup_t002.exe)

1 / 68      (inconclusive)
http://down.haharili.com/.../setup_t024.exe  (781b40934bd55913a7b93bc760c0b069)

1 / 68      (inconclusive)

1 / 68      (inconclusive)

1 / 68      (inconclusive)
http://cnrdn.com/lvqC  (setup_t014.exe)

The following websites host and distribute files published by Shanghai Zhenrui Network Technology Studio.

The following publishers (by Authenticode signature organization name) are related.

30 of 32 publishers

* Note, the details and description above are based on the code signing digital signature issued to Shanghai Zhenrui Network Technology Studio by VeriSign, Inc. on May 06, 2013 with the serial number '40210eb4b5038cd40c7b282fa7c94440'.