We Code Good Inc.

Publisher Information

We Code Good Inc. is a software developer located in Beaverton, Oregon in the United States*. The company is a primary distributor of unwanted software. We Code Good Inc. is part of the Performersoft/iBario group that distributes the InstallBrain installer to publish web browser extensions (adware in nature) as well as Performersoft's 'optimization' and media products through a pay-per-install monetization program. Although the publisher's authenticode cert is registered to Beaverton it is actuall located in Yehuda, Israel.
Remove We Code Good Inc. Malware - Powered by Reason Core Security
Authority:
GoDaddy.com, Inc.

Valid from:
11/1/2012 9:20:37 PM

Valid to:
11/1/2015 9:20:37 PM

Subject:
CN=We Code Good Inc., O=We Code Good Inc., L=Beaverton, S=OR, C=US

Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
4eef3a85620395

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Performersoft.WeCodeGood.Bundler (M), PUP.Performersoft.Bundler
100.00%

Agnitum Outpost
Trojan.DL.Brantall, Trojan.Adware, Adware.BrainInst
84.00%

Trend Micro House Call
TROJ_GEN.R0C1C0CBK15, TROJ_GEN.F0C2C00KR14, TROJ_GEN.F47V0904, TROJ_GEN.F47V1122, TROJ_GEN.R00JC0DHC14
84.00%

Kaspersky
not-a-virus:AdWare.Win32.BrainInst, not-a-virus:HEUR:AdWare.Win32.BrainInst
84.00%

Dr.Web
Adware.Downware.1458, Adware.Downware.1425, Adware.Downware.1492
84.00%

VIPRE Antivirus
InstallBrain, Trojan.Win32.Generic!SB.0
84.00%

Avira AntiVirus
APPL/InstallBrain.AH, APPL/InstallBrain.Gen, Adware/InstallBrain.CE
84.00%

Antiy Labs AVL
AdWare/Win32.BrainInst, Trojan[Downloader:not-a-virus]/Win32.Agent
84.00%

Microsoft Security Essentials
TrojanDownloader:Win32/Brantall.A, TrojanDownloader:Win32/Brantall.D, TrojanDownloader:Win32/Brantall.B
84.00%

G Data
Win32.Application.InstallBrain, Gen:Variant.Adware.Kazy.284891
84.00%

46 / 68    (Adware)
ib_uninstall.exe (Installer)  (d308bab42e3db56e9ebe4858f3daad9e)

49 / 68    (Adware)
pdfspeedsetup.exe (Installer)  (2e2de441df80c6fadae918bce95c7a04)

46 / 68    (Adware)
77zipsetup.exe (Installer)  (307207f851cb60cc2321954f404924a2)

46 / 68    (Adware)
ib_uninstall.exe (Installer)  (37b1957e4995a3773220e7196110f566)

1 / 68      (Adware)
l4bn1+hv.exe (Installer)  (855e283ae0372dac83e39bbb86820f51)

46 / 68    (Adware)
77zipsetup.exe (Installer)  (822cf3374805caeca2213ee916219088)

46 / 68    (Adware)
77zipsetup.exe (Installer)  (5399f43c3c67a454351bcd40a1fc5782)

46 / 68    (Adware)
ib_uninstall.exe (Installer)  (93ce9368471af276c0511390dcefa591)

46 / 68    (Adware)
77zipsetup.exe (Installer)  (f2211eee3fb44f8fc1aea81a8a5ea7c5)

46 / 68    (Adware)
77zipsetup.exe (Installer)  (95ae07edf5d94ac30a1bbe0a325ff656)

46 / 68    (Adware)
77zipsetup.exe (Installer)  (5cb04b4bc53fca4b843de34555ca3ba2)

1 / 68      (Adware)
zoolagamessetup.exe (Installer)  (ee6758303206574e8b12f79dbc1b7950)

1 / 68      (Adware)
fastlanepinball_softangodownloader.exe (Installer)  (4ea2061f876dd17e352ee9804f4f4444)

46 / 68    (Adware)
ib_uninstall.exe (Installer)  (ccce78bc235f2e2198bb1a2c3524e044)

46 / 68    (Adware)
77zipsetup.exe (Installer)  (4f39cc8a518d6b09c0b309698196267a)

43 / 68    (Adware)
updfsetup.exe (Installer)  (17da3579a189e536a1b187f17f4ef19a)

1 / 68      (Adware)
planttycoon_softangodownloader.exe (Installer)  (653e26c99f864473b8eae68dd4476796)

49 / 68    (Adware)
pdfspeedsetup.exe (Installer)  (3085cd5ab7233533748e95f5d50f3158)

46 / 68    (Adware)
77zipsetup.exe (Installer)  (94329abebbf65a337079befac037bbc4)

1 / 68      (Adware)
install pdf speed973868.exe (Installer)  (339445de9020d58b81fee7031e30c6cf)

49 / 68    (Adware)
pdfspeedsetup.exe (Installer)  (341ce7fbf657a2e4731ae4d1814f25dd)

46 / 68    (Adware)
77zipsetup.exe (Installer)  (6a544e52312c93e383c4c033cc4c9e59)

46 / 68    (Adware)
77zipsetup.exe (Installer)  (ec6278c448b1b98595a9977937a01d8e)

43 / 68    (Adware)
updfsetup.exe (Installer)  (5debf5cedbfbec01ea450e338d5da2a4)

49 / 68    (Adware)
pdfspeedsetup.exe (Installer)  (7a8f7c02f7a452ce220bb642cd8acab1)

68 / 68    (Adware)
77zipsetup.exe (Installer)  (4b85f83534e71c1f2ef475a31fce1fc5)

46 / 68    (Adware)
ib_uninstall.exe (Installer)  (51a3e42439d967356bf3a02c1aa4bd81)

43 / 68    (Adware)
updfsetup.exe (Installer)  (1884fe23bba5a016851ef1727f396897)

44 / 68    (Adware)
77zip973867.exe (Installer)  (a68be2cb9fbc2a868d202ff733397bd7)

46 / 68    (Adware)
77zipsetup.exe (Installer)  (4158ff0efd234b43489bf45c12b4631b)

 
Latest 30 of 380 files

Downloads URLs for files signed by We Code Good Inc..

1 / 68      (Adware)
http://games.softango.com/.../157782.html  (fastlanepinball_softangodownloader.exe)

1 / 68      (Adware)
https://dl.addonupdater.com/.../statuswinks.exe  (5a59d76294366885844e630133c91041)

The following publishers (by Authenticode signature organization name) are related.

Remove We Code Good Inc. Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to We Code Good Inc. by GoDaddy.com, Inc. on November 01, 2012 with the serial number '4eef3a85620395'.