Shetef Solutions & Consulting (1998) Ltd.

Publisher Information

Shetef Solutions & Consulting (1998) Ltd. is a software developer located in Rannana, Israel*. The company is a primary distributor of unwanted software. Shetef uses the Amonetize is a pay-per-insall monetization and distribution platform to distribute adware installers as well as other potentially unwanted software, mostly wrapping legitimate programs in adware bundles. Thre are 4 additional code signing certificates issued to this publisher.
Authority:
Thawte, Inc.

Valid from:
7/23/2013 2:00:00 AM

Valid to:
7/24/2014 1:59:59 AM

Subject:
CN=Shetef Solutions & Consulting (1998) Ltd., O=Shetef Solutions & Consulting (1998) Ltd., L=Rannana, S=Israel, C=IL

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
7c23dbb97fafbb9d28d413f836202024

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.ShetefSolutionsConsulting1998, PUP.Installer.Amonetize, PUP.Bundler.Amonetize, Threat.Installer.ShetefSolutionsConsulting1998, PUP.Amonetize.ShetefSolutionsConsulting1998.Bundler (M)
100.00%

Malwarebytes
PUP.Optional.Amonetize.A, PUP.Optional.InstallMonetizer
42.00%

Dr.Web
Adware.Downware.1575, Adware.Conduit.6, Adware.Downware.9392, Trojan.Amonetize.2549
40.00%

VIPRE Antivirus
Amonetize, Conduit, Threat.4785227, FlashEnhancer, Trojan.Win32.Generic, Threat.4314870
34.00%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud)
34.00%

ESET NOD32
Win32/Amonetize (variant), Win32/Amonetize.AG (variant), Win32/Amonetize.AJ (variant), Win32/Amonetize.S potentially unwanted (variant)
34.00%

Avira AntiVirus
ADWARE/Adware.Gen2
32.00%

AhnLab V3 Security
PUP/Win32.Amonetiz, PUP/Win32.Amonetize
30.00%

McAfee
Artemis!1B77DA7E6162, Artemis!3D6BBA296B69, Artemis!A305F7DF50FD, Artemis!A2E9FB846383, Artemis!1CAC1C135C6D, Artemis!D4FD51D7ADC0, Artemis!C5F57E6D5F53, Artemis!75C26D8C24E0
28.00%

G Data
Win32.Application.Amonetize, Gen:Variant.Application.Bundler.Amonetize.14, Adware.Generic.941089
28.00%

1 / 68      (Adware)
setup.exe (Installer by Amonétié)  (8a88d51bbde79dd78b803263ee834050)

1 / 68      (Adware)

1 / 68      (Adware)
launcher__2594_il4293200.exe (Installer by Amonétizé)  (06ad5e3c7bec5e2c3aa2d8c16ac34e3b)

1 / 68      (Adware)

10 / 68    (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
nethfdrv.sys (nethfdrv)  (66551fbcc7f9bf966a27010304f9b9fa)

1 / 68      (Adware)

1 / 68      (Adware)
nethfdrv.sys (nethfdrv)  (4c773edc5da6aec0b997c5f09f4dde87)

1 / 68      (Adware)
launcher.exe (Installer by Amonétizé)  (63bd970c633237016597f2c0fbee609a)

1 / 68      (Adware)
flashplayersetup__5221_i384959631_il6.exe (Installer)  (63d453db7b2ca2bd47fd3534c0440f38)

1 / 68      (Adware)

1 / 68      (Adware)
nethfdrv.sys (nethfdrv)  (9727112167ea29c6a6997fe1a5de99a1)

1 / 68      (Adware)
flashplayersetup__5561_i367208707_il6.exe (Installer)  (2d4b0d64c11ce018f0f6454f3511406d)

1 / 68      (Adware)
flashplayersetup__5221_i369800921_il6.exe (Installer)  (39564b2f213c88e3096b38f32cb96ff5)

1 / 68      (Adware)
non confirmé 834124.crdownload (Install)  (3a85d259f38aee08443081d9a8d36717)

1 / 68      (Adware)
ares galaxysetup__5670_il5247.exe (Install)  (18031994d1ac55cecc3bb9e1eb29fe01)

1 / 68      (Adware)

1 / 68      (Adware)
raidcall__2594_il4769330.exe (Installer by Amonétié)  (b6fb2dd181a413f46770dc991d0031a5)

1 / 68      (Adware)
nethfdrv.sys (nethfdrv)  (6f0d4ae1cda4d90e1105e52ec12de49d)

1 / 68      (Adware)
flashplayer__4369_i407069277_il280.exe (Install)  (3091a72bd4c561bbac582e884d879418)

1 / 68      (Adware)
7zip__6621_il1340.exe (Install)  (1dee4cc176c612064c7e1fe56b230bd2)

1 / 68      (Adware)
onhax downloader__4006_il40.exe (Installer)  (7e28b8e496b1faf3cdded704041839e0)

1 / 68      (Adware)
onhax downloader__4006_il40.exe (Installer)  (7e28b8e496b1faf3cdded704041839e0)

1 / 68      (Adware)
flashplayer__4077_il2093156.exe (Installer by Amonétié)  (3daffe9419f4862b459261b2f1794f65)

1 / 68      (Adware)

1 / 68      (Adware)
nethfdrv.sys (nethfdrv)  (56b791370eed5e52b20401e94132a0fd)

1 / 68      (Adware)
damnvid__2681_i385759250_il3864537.exe (Installer)  (06c1042b4fb4a4857701b3c9de9f2074)

1 / 68      (Adware)

4 / 68      (Adware)
s7zip__2860_il217.exe (Installer by Amônétízé)  (4299199c7ef1a7deb14e2f66b391412b)

 
Latest 30 of 204 files

Downloads URLs for files signed by Shetef Solutions & Consulting (1998) Ltd..

1 / 68      (Adware)

The following websites host and distribute files published by Shetef Solutions & Consulting (1998) Ltd..

The certificates below are also signed by Shetef Solutions & Consulting (1998) Ltd..

4B1B72BCEFC0E8  (Oct 13, 2014 to Oct 13, 2015)

009E472EA7B4ADB461EB35F9F783DA3438  (Sep 26, 2014 to Sep 27, 2015)

4F0762A0FB4E2EA75260E9E77B74473E  (Jul 19, 2014 to Aug 19, 2015)

40812DA0F7CB2ECD4955FD76E0A6C493  (Feb 21, 2012 to Feb 21, 2013)

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to Shetef Solutions & Consulting (1998) Ltd. by Thawte, Inc. on July 23, 2013 with the serial number '7c23dbb97fafbb9d28d413f836202024'.