solteratop

Publisher Information

solteratop is a brand of the Sambreel/Yontoo group, a web advertising company located in Carlsbad, CA. The company is a primary distributor of unwanted software. It is part of the Yontoo/Sambreel group and distributes web browser add-ons, typically potentially unwanted and adware in nature, that are designed to modify a user's typical search beahvior as well as display context and popup advertising. There is one additional code signing certificate issued to this publisher.
Authority:
VeriSign, Inc.

Valid from:
11/26/2013 7:00:00 PM

Valid to:
11/27/2014 6:59:59 PM

Subject:
CN=solteratop, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=solteratop, L=San Diego, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
41cb4b95910e14fe125a0333405b7d34

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.solteratop.F, PUP.solteratop.m, PUP.solteratop.n, PUP.Yontoo.solteratop.Installer (M), PUP.Yontoo.solteratop (M), PUP.Yontoo.solterat (M), Adware.Yontoo (M), PUP.Yontoo (M)
100.00%

Sophos
Generic PUA HF, BrowseSmart
25.00%

VIPRE Antivirus
Yontoo, Threat.4150696
25.00%

Agnitum Outpost
PUA.Agent, Trojan.BPlug
16.67%

Dr.Web
Trojan.BPlug.35, Trojan.BPlug.123
16.67%

McAfee
Artemis!714F4FD56EC1
8.33%

Malwarebytes
PUP.Optional.Solteratop.A
8.33%

NANO AntiVirus
Riskware.Win32.Agent.cqycvd
8.33%

Trend Micro House Call
TROJ_GEN.F47V0327
8.33%

Kaspersky
not-a-virus:AdWare.Win32.Agent
8.33%

1 / 68      (Adware)
solteratop.FirstRun.exe (FirstRun)  (6667da850d2a5b375ad09ecfa1c23770)

1 / 68      (Adware)
solteratopun.exe  (a6ffa95c07db25f6981567c5764c3183)

1 / 68      (Adware)
{49148009-4e93-47dc-bbfb-b74de0a7fd19}w64.sys (StdLib)  (eca65b621ed9bb747d4cb493932fee8c)

1 / 68      (Adware)
solteratop.BrowserFilter.dll  (b1c6c797c6f91817af0aae3c0fd4bf54)

1 / 68      (Adware)
solteratopBrowserFilter.exe  (342d1a5db8461ecdc7dfda08083ddc61)

1 / 68      (Adware)
solteratop.browserfilter.helper.dll  (890e70f115dee2dace364fe1a39d288e)

1 / 68      (Adware)
{49148009-4e93-47dc-bbfb-b74de0a7fd19}t64.sys (StdLib)  (d6d415732e4ef2f0ad9a2535640fe23b)

1 / 68      (Adware)
wstlibg64.sys (StdLib)  (f147e4b7d242cf90cbe6d984e63e2b6c)

1 / 68      (Adware)
solteratopsetup.exe  (c323276dcdb9c004eab3304e4f99eefe)

16 / 68    (Adware)
{49148009-4e93-47dc-bbfb-b74de0a7fd19}gw64.sys (StdLib)  (4404cecc1a7b769cd701c2e05fdd977d)

4 / 68      (Adware)
{49148009-4e93-47dc-bbfb-b74de0a7fd19}w64.sys (StdLib)  (5fa5d20412435e24f5f278a29308ea15)

15 / 68    (Adware)
setup.exe  (714f4fd56ec1b9e1797ea3365d261392)

The following certificate is also signed by solteratop.

6D426BB6955D21B0FD11271C31E37E29  (Nov 03, 2014 to Jan 03, 2016)

* Note, the details and description above are based on the code signing digital signature issued to solteratop by VeriSign, Inc. on November 26, 2013 with the serial number '41cb4b95910e14fe125a0333405b7d34'.