SUNWORK MEDIA

Publisher Information

SUNWORK MEDIA is a software developer located in NICE, Paca in France*.
Remove SUNWORK MEDIA Malware - Powered by Reason Core Security
Authority:
Thawte, Inc.

Valid from:
4/6/2012 2:00:00 AM

Valid to:
4/7/2014 1:59:59 AM

Subject:
CN=SUNWORK MEDIA, OU=ALPES MARITIME, O=SUNWORK MEDIA, L=NICE, S=PACA, C=FR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
42b235ae116d147d4122347e0124620e

Scanner detections:
Malware distribution  (56% detected)

Scan engine
Details
Detections

Emsisoft Anti-Malware
Gen:Trojan.StartPage.kuW@a8SP8gei, Gen:Trojan.Heur.PT.kuW@bKUyLCei, Trojan.Generic.8810370, Gen:Trojan.StartPage.kuW@ayz1uDbi
66.67%

Norman
Gen:Trojan.StartPage.kuW@a8SP8gei, Malware, Trojan.Generic.8810370, Gen:Trojan.StartPage.kuW@ayz1uDbi
66.67%

Kaspersky
HEUR:Trojan.Win32.StartPage, Trojan.Win32.Pasta
66.67%

Bitdefender
Gen:Trojan.StartPage.kuW@a8SP8gei, Gen:Trojan.Heur.PT.kuW@bKUyLCei, Trojan.Generic.8810370, Gen:Trojan.StartPage.kuW@aSH4Vudi
66.67%

F-Secure
Gen:Trojan.StartPage.kuW@a8SP8gei, Gen:Trojan.Heur.PT.kuW@bKUyLCei, Trojan.Generic.8810370, Gen:Trojan.StartPage.kuW@aSH4Vudi
66.67%

G Data
Gen:Trojan.StartPage.kuW@a8SP8gei, Gen:Trojan.Heur.PT.kuW@bKUyLCei, Trojan.Generic.8810370, Gen:Trojan.StartPage.kuW@aSH4Vudi
66.67%

MicroWorld eScan
Gen:Trojan.StartPage.kuW@a8SP8gei, Gen:Trojan.Heur.PT.kuW@bKUyLCei, Trojan.Generic.8810370
50.00%

Kingsoft AntiVirus
Win32.Troj.Undef.(kcloud), VIRUS_UNKNOWN
50.00%

Dr.Web
Trojan.StartPage.51018, infected with Trojan.StartPage.51260, infected with Trojan.StartPage.50821
50.00%

Lavasoft Ad-Aware
Gen:Trojan.StartPage.kuW@a8SP8gei, Trojan.Generic.8810370
33.33%

0 / 68

2 / 68      (inconclusive)
formalitefacilegc.exe (FormaliteFacile by SunWork Media)  (2d4117096e33f9a811b434c9de3cfc42)

4 / 68      (Malware)
formalitefacileie.exe (FormaliteFacile by SunWork Media)  (df2bb16507c0b0c0b2cebcba5cdd2862)

0 / 68

0 / 68
uninstallaccent.exe  (0e93d42bc39e57b2aa9166f003297d2a)

7 / 68      (Malware)

14 / 68    (Malware)

9 / 68      (Malware)
formalitefacileff.exe (FormaliteFacile by SunWork Media)  (daf065f9bf016cb89a84820d6503f664)

11 / 68    (Malware)
formalitefacilegc.exe (FormaliteFacile by SunWork Media)  (10ef9f9273e754347f9a76390f63815a)

Remove SUNWORK MEDIA Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to SUNWORK MEDIA by Thawte, Inc. on April 06, 2012 with the serial number '42b235ae116d147d4122347e0124620e'.