TGSM Inc.

Publisher Information

TGSM Inc. is a software developer located in Haeundae-gu, Busan in Korea*. The company is a primary distributor of unwanted software. Thre are 4 additional code signing certificates issued to this publisher.
Authority:
Thawte, Inc.

Valid from:
2/11/2011 9:00:00 AM

Valid to:
3/13/2012 8:59:59 AM

Subject:
CN=TGSM Inc., OU=Dev Team, O=TGSM Inc., L=Haeundae-gu, S=Busan, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
5110a6616204b0264e74f3527fa2aa76

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.OpenShopper (M), PUP.OpenShopper.Installer
100.00%

1 / 68      (Adware)
DsSearchBar.exe (DsSearchBar by TGSM)  (1de39707b21c5ee8384d17c2deca40a2)

1 / 68      (Adware)
sharebox_setup.exe (by http://sharebox.co.kr)  (c1207d422ddd017b5bdab88193ab0324)

1 / 68      (Adware)
tor3.0-win.exe  (68176c71822499f9f98d33a7aa9b84f6)

1 / 68      (Adware)
setup.exe (by http://jjangq.co.kr)  (b1cbcacfef8388c4d77b3d323042712e)

1 / 68      (Adware)
update.exe (by http://nomgame.co.kr)  (485f4fad1e8b124848e5ff0364d284f6)

1 / 68      (Adware)
JJangQUp.exe (by TGSM)  (b6295baa54bbbb470091f1615404cad8)

1 / 68      (Adware)
JJangQDown.exe (by TGSM)  (21bf680e9a2bbd2cafee7908e0bc67f8)

1 / 68      (Adware)
enswerapiworker.dll (enswerapiworker Application)  (0fe92b70e9718efc3ce888b6d368319a)

1 / 68      (Adware)
enswerapi.dll (enswerapi Dynamic Link Library)  (9cac4ad17fc93ad8fc0cb65265def5c7)

1 / 68      (Adware)
ark32.dll (ArkLibrary by www.Bandisoft.com)  (15ccab7bc06224c6a8f31e92af5a0184)

1 / 68      (Adware)
7z32.dll (7-Zip by Igor Pavlov)  (d3c31f0492ef0441f028cc1e8b205957)

1 / 68      (Adware)
jjangqdown2.exe (by TGSM)  (c72cbca01378994035fdb3e77612fa17)

1 / 68      (Adware)
ShareBoxUp.exe (by TGSM)  (654948b21085a9f796383de2220c41e9)

1 / 68      (Adware)
ShareBoxDown.exe (by TGSM)  (c7bf2d9d0ed4f53d02591a7172fddf93)

1 / 68      (Adware)
shareboxdown2.exe (by TGSM)  (ee82778ec16d793cde97de821052cbe4)

1 / 68      (Adware)
setup.exe (by http://bomulbox.co.kr)  (48d7c655edd9cdf22a26731722256708)

1 / 68      (Adware)
setup.exe (by http://jjangq.co.kr)  (57338a809597a9fa30d18d47a5802e8a)

1 / 68      (Adware)
setup.exe (by http://downs.co.kr)  (df989f1c5948b844ebd80e823274c5a7)

1 / 68      (Adware)
ButtonGuideS.exe (ButtonGuideS by TGSM)  (b0c33e036908076e1a2b7a1869dd60a6)

1 / 68      (Adware)
setup.exe (by http://jjangq.co.kr)  (edd212dfb19e2358835465b064c8d436)

1 / 68      (Adware)
dsup.exe (by TGSM)  (2ad190f228e82bf9ae8de9add43099ad)

1 / 68      (Adware)
dsdown.exe (by TGSM)  (9369b1e9eca7468e7228429bcbd1ee84)

1 / 68      (Adware)
dsdown2.exe (by TGSM)  (32c0b35b97223e3b9246f1f8bfe44701)

1 / 68      (Adware)
opsetup.exe (by http://openshopper.co.kr)  (3e15d01e54117f3e9f09c071d03805b7)

1 / 68      (Adware)
setup.exe (by http://bomulbox.co.kr)  (a29b2f1ca45ece07fc2b7887e4883df4)

1 / 68      (Adware)
setup.exe (by http://bomulbox.co.kr)  (fa2b59851b1ca690883eb724fb44778d)

1 / 68      (Adware)
setup.exe (by http://sharebox.co.kr)  (a736d477600ebe0aae715eb5b6f4cdbc)

1 / 68      (Adware)
btguide_install.exe  (ffc02440752edfe343f0dbf35e22a409)

1 / 68      (Adware)
424390.exe (by http://openshopper.co.kr)  (a7e5e51a4b53e26ea5877cc77979680b)

1 / 68      (Adware)
setup.exe (by http://bomulbox.co.kr)  (2d9fc98d6c1ee73f4785f8b36bbe0a4a)

 
Latest 30 of 239 files

The certificates below are also signed by TGSM Inc..

7D8725772359BB44707B7E208AE915C2  (Mar 17, 2013 to May 17, 2014)

7193DB486426289A17603DC315513E28  (Mar 05, 2012 to Apr 05, 2013)

655F3EAF0D3E7A560B415FFE5611AFDD  (Dec 14, 2009 to Feb 13, 2011)

3CF28BF78B7D2C503C83F61AB56BAFA8  (Jan 09, 2009 to Jan 09, 2010)

* Note, the details and description above are based on the code signing digital signature issued to TGSM Inc. by Thawte, Inc. on February 11, 2011 with the serial number '5110a6616204b0264e74f3527fa2aa76'.