Wuhan Weijun Technology Co. Ltd.

Publisher Information

Wuhan Weijun Technology Co. Ltd. is a software publisher located in Wuhan, Hubei in China*.
Authority:
VeriSign, Inc.

Valid from:
8/7/2013 8:00:00 AM

Valid to:
8/8/2015 7:59:59 AM

Subject:
CN=Wuhan Weijun Technology Co. Ltd., OU=技术部, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Wuhan Weijun Technology Co. Ltd., L=Wuhan, S=Hubei, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6db193a74109c3699cec1aa4ea943833

Status:
Inconclusive detections from multiple engines

Scan engine
Details
Detections

Trend Micro House Call
TROJ_GEN.F47V1129, TROJ_GE.A3A4935F, TROJ_GEN.F47V0327, TROJ_GEN.F47V0422, TROJ_GEN.F47V0102, TROJ_GEN.F47V1105, TROJ_GEN.R0CBH07JO13
75.00%

McAfee
Artemis!21927716FA77, Artemis!26CFA25FA642, Artemis!A93C146C26EE, Artemis!1C340182B273, Artemis!40C4CD0D3445, Artemis!B3D072B6009B, Artemis!7D4E972B76BD, Artemis!FD789A6E4F3A
65.00%

McAfee Web Gateway
Artemis!21927716FA77, Artemis!26CFA25FA642, Artemis!A93C146C26EE, Artemis!1C340182B273, Artemis!40C4CD0D3445, Artemis!B3D072B6009B
65.00%

Norman
DLoader.AOCCN
55.00%

VIPRE Antivirus
Trojan.Win32.Generic.pak!cobra, BehavesLike.Win32.Malware.bsw (vs)
55.00%

Antiy Labs AVL
Worm/Win32.Qvod, GrayWare[:not-a-virus]/Win32.StartPage.gen
55.00%

Vba32 AntiVirus
BScope.Lipler.045, suspected of Trojan.Downloader.gen.h, Backdoor.DarkKomet
30.00%

Quick Heal
(Suspicious) - DNAScan
20.00%

Comodo Security
UnclassifiedMalware, Application.Win32.StartPage.IKS
20.00%

AVG
SHeur4
15.00%

6 / 68      (Malware)
setupp_b.exe (by www.pc6.com)  (fd789a6e4f3ae4042ab4d125df13aef9)

0 / 68
lele_a2.exe (by www.962.net)  (1c4d8a581fec6c0628e1108eeeda23a0)

18 / 68    (PUP)
setup_g1.exe (by Wuhan Weijun Technology Co)  (04051f45abbe32bb8addc976ca403b80)

5 / 68      (PUP)
setupp_002.exe (by www.pc6.com)  (e472ea008647b556a9d2b93365f3572b)

0 / 68
playgame.exe (by www.962.net)  (eec7d8ed0835feee71ac9a42fd158a82)

0 / 68
安装程序.exe  (a0ad2bfc371e7422a6a098d55dda4f2e)

1 / 68
playgame.exe (by www.paopaoche.net)  (5b22cf0c1d04c56242f716a08847544a)

1 / 68
llconfig.dll  (b586a70828b9809b22656bd83bf2bca0)

0 / 68
fybb.dll  (6eb85c846bd32ca832e3c1ead19c3606)

0 / 68
aqhttp.dll  (0c908cdaf1ac2f67557232323e32038d)

0 / 68
llgamebox.exe  (21000e01c5588447438280db25777999)

21 / 68    (PUP)
lelebot_26189.exe (by www.962.net)  (d4f7cd723b6ca99f49869afb0bcffa53)

0 / 68
playgame.exe (by www.paopaoche.net)  (2fe5f42db4d298f16e27dee5869f0c67)

11 / 68    (Malware)
setupp_006.exe (by http://www.pc6.com/)  (7d4e972b76bd8c187b72b186a4a3b814)

7 / 68      (Malware)
setup_20012.exe (by www.cr173.com)  (1ff51ff2a3233dd977ce4623942e4955)

9 / 68      (Malware)
setupp_b.exe (by www.pc6.com)  (80b1d696302c080347f53b2003b9ed77)

0 / 68
lytool.dll  (3ef6ca8beb06b9563b6af1f70a3ebe56)

0 / 68
lyhook.dll  (6da32c4b6b1b10df6a71b97afb398ff7)

0 / 68
inject.dll  (a2325672489ddc25b310a2dcde279808)

9 / 68      (Malware)
setupp_a.exe (by www.pc6.com)  (a4812a3957bbf2d2b32704814cd3036a)

0 / 68
win7摄像头.exe  (f3af3843f2d570b840febcdfde75eff8)

4 / 68      (inconclusive)
minidownloader.exe  (741a3be86d6ffd4eab2119901ac825ed)

2 / 68
minidownloader.exe  (19235bb2cc4793be9a56183eb9fc128a)

0 / 68
AtlPluginDown.dll  (09e7e3423353e54d8205ee6058590a33)

0 / 68
假蚾最唗.exe  (58860f344ef256d89bdb2da87956e1df)

0 / 68
playgame.exe (by www.fxxz.com)  (487c986d2a7bdac4e4c859ee3cef625c)

0 / 68
wjtg.dll  (3860d26874a97cad398f7aa6e38a5fdf)

0 / 68
devmon.dll  (5a5a5fa1f59fe58016d46e31f990ca7a)

0 / 68
aqhttp.dll  (782dcde7157eab79f5ffa55ccb3f9ee4)

0 / 68
adbdrv.dll  (1e67efe228e2e220dc57c08590ea4e48)

 
Latest 30 of 45 files

Downloads URLs for files signed by Wuhan Weijun Technology Co. Ltd..

8 / 68      (Malware)
http://box.cr173.com/.../xixiaddress_28363.exe  (26cfa25fa6425325b4899b73a0383f05)

7 / 68      (Malware)
http://box.cr173.com/.../xixileft_32783.exe  (21927716fa770abb2193390f256e301e)

8 / 68      (PUP)
http://d.xiazai18.com/setupp_c.exe  (a93c146c26ee436ecf31b4863cc1c28a)

8 / 68      (Malware)
http://box.cr173.com/.../setup_69538.exe  (40c4cd0d344520e9e626a984415a4769)

8 / 68      (PUP)
http://xia.57cx.com/setupp_d.exe  (a93c146c26ee436ecf31b4863cc1c28a)

8 / 68      (Malware)
http://box.dlm4.com/.../uzzftop_28534.exe  (26cfa25fa6425325b4899b73a0383f05)

7 / 68      (Malware)
http://box.cr173.com/.../xixiaddress_33146.exe  (21927716fa770abb2193390f256e301e)

The following websites host and distribute files published by Wuhan Weijun Technology Co. Ltd..

* Note, the details and description above are based on the code signing digital signature issued to Wuhan Weijun Technology Co. Ltd. by VeriSign, Inc. on August 07, 2013 with the serial number '6db193a74109c3699cec1aa4ea943833'.