Venisoft Corp.

Publisher Information

Venisoft Corp. is a software publisher located in Guro-gu, Seoul in Korea*. The company is a primary distributor of unwanted software. Thre are 2 additional code signing certificates issued to this publisher.
Remove Venisoft Corp. Malware - Powered by Reason Core Security
Authority:
Thawte, Inc.

Valid from:
11/3/2010 9:00:00 AM

Valid to:
1/3/2012 8:59:59 AM

Subject:
CN=Venisoft Corp., OU=Development Team, O=Venisoft Corp., L=Guro-gu, S=Seoul, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
112122f77cf9c86b1daee0b516717c87

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Startup.VenisoftCorp.S, PUP.VenisoftCorp.Q, PUP.Startup.VenisoftCorp.R, PUP.VenisoftCorp.O, PUP.Installer.VenisoftCorp.DD, PUP.VenisoftCorp (M), PUP.VenisoftCorp.Installer (M)
100.00%

Trend Micro House Call
TROJ_GEN.F4FBZBO, TROJ_GEN.F47V0810, TROJ_GEN.RCEH1GC, TROJ_GEN.F47V1209, PAK_Generic.001, TROJ_GEN.USHMABA16
35.29%

F-Secure
Gen:Variant.Adware.Addendum.1
35.29%

Avira AntiVirus
Adware/Addendum.1.7, Adware/Addendum.1.6, Adware/Addendum.1.4, Adware/Addendum.1.12, Adware/Addendum.1.2
35.29%

IKARUS anti.virus
Win32.SuspectCrc
35.29%

Comodo Security
Heur.Suspicious, UnclassifiedMalware
29.41%

AhnLab V3 Security
PUP/Win32.TabBrowser, PUP/Win32.Helper, Win-PUP/Helper.MultiSearchBar.574096, Win-PUP/Helper.MultiSearchBar.329360, PUP/Win32.KeywordPlusBar
29.41%

G Data
Gen:Variant.Adware.Addendum
29.41%

Malwarebytes
Adware.Agent, Adware.Addendum
29.41%

Bitdefender
Gen:Variant.Adware.Addendum.1
23.53%

1 / 68      (Adware)
keywordplusbar.dll (keywordplusbar by VeniSoft)  (615d8a502ed6f22c0794a2ba2d7f80d5)

1 / 68      (Adware)
FavoriteIconUpdate.exe (FavoriteIcon)  (9e2d083372381f4bf709468a756cb4bd)

1 / 68      (Adware)
FavoriteIconUninstall.exe (FavoriteIcon)  (f5011f84e04519e996eceeb15a766fc7)

1 / 68      (Adware)
FavoriteIconControl.exe (FavoriteIcon)  (2bffa5dc45c04d50d7f5241f6c1263cd)

1 / 68      (Adware)
FavoriteIcon.EXE  (b318054ae5044d12319fc5af418148b4)

1 / 68      (Adware)
multisearchbar_filedown2_setup.exe  (159195e8ae55ec707e7f944ed123cba6)

1 / 68      (Adware)
favoriteiconsetup.exe (by VeniSoft)  (3510e73b13809741351bb87fb244dcfe)

1 / 68      (Adware)
multisearchbarside.dll (multisearchbar by VeniSoft)  (0f34a989cf654cfb6c1895aeb71576db)

13 / 68    (Adware)
uninstall.exe (multisearchbardel.exe by firsti)  (109a73f926210c46980331910499b76c)

2 / 68      (Adware)
multisearchbarmt.exe (keywordplusbar)  (32f1c26795bebc530f040ab8443cec90)

6 / 68      (Adware)
multisearchbarch.exe (multisearchbar changer)  (6af07e03b7a41d4eebfc96553ada8e8e)

4 / 68      (Adware)
multisearchbarcb.exe (multisearchbar changer by firsti)  (ef9783ca8b00c9eb01b44331a8a2766f)

24 / 68    (Adware)
multisearchbar_filedown_setup.exe  (66c09adfba2c86c8a11875e666d5e88d)

6 / 68      (Adware)
multisearchbar.dll (multisearchbar by VeniSoft)  (4d74f802cdb0a619ced97c941393e2c4)

3 / 68      (Adware)
multisearchbarapp.exe (multisearchbar)  (014c1390f55eb38c87205890a39c6891)

30 / 68    (Adware)
multisearchbarup.exe (multisearchbar update by firsti)  (f6e83a3ad5c1633f4c6e74a6e8347523)

31 / 68    (Adware)
multisearchbarhper.exe (multisearchbar helper by firsti)  (d3fb504e3f71cba1c5ab07fcfecc3f91)

The certificates below are also signed by Venisoft Corp..

6F23FDD75F511AB9AE6A6780098EA43C  (Dec 23, 2011 to Jan 22, 2013)

3AE7EEDA0A2AB5D99FB5814480567F22  (Nov 16, 2009 to Nov 17, 2010)

Remove Venisoft Corp. Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Venisoft Corp. by Thawte, Inc. on November 03, 2010 with the serial number '112122f77cf9c86b1daee0b516717c87'.