WunderWeb

Publisher Information

WunderWeb is a brand of the Sambreel/Yontoo group, a web advertising company located in Carlsbad, CA. The company is a primary distributor of unwanted software. It is part of the Yontoo/Sambreel group and distributes web browser add-ons, typically potentially unwanted and adware in nature, that are designed to modify a user's typical search beahvior as well as display context and popup advertising.
Remove WunderWeb Malware - Powered by Reason Core Security
Authority:
VeriSign, Inc.

Valid from:
8/13/2013 9:00:00 AM

Valid to:
8/14/2015 8:59:59 AM

Subject:
CN=WunderWeb, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=WunderWeb, L=San Diego, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
766c8ed1334566ab295138a99fe038d9

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Yontoo.WunderWeb (M), Adware.Yontoo.WunderWeb (M)
100.00%

McAfee
Artemis!1342F03EAC2C
2.00%

VIPRE Antivirus
Yontoo
2.00%

K7 AntiVirus
Unwanted-Program
2.00%

K7 Gateway Antivirus
Unwanted-Program
2.00%

NANO AntiVirus
Riskware.Win32.Agent.crkvek
2.00%

Trend Micro House Call
TROJ_GEN.F47V0507
2.00%

Kaspersky
not-a-virus:AdWare.Win32.Agent
2.00%

Agnitum Outpost
PUA.Agent
2.00%

SUPERAntiSpyware
Adware.BrowseFox/Variant
2.00%

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
wunderweb.expextdll.dll  (ef24d4c173a55058cb998e111e47ffe4)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
cd0b1e8f08a54df1aabf64.dll  (865ba5c5d0aaf39cbf68444bc8c97b6b)

1 / 68      (Adware)
cd0b1e8f08a54df1aabf.dll  (b7a4bf835f298573ed8561b9df4a656b)

1 / 68      (Adware)
c38e01db64534f6e912864.dll  (2acc12973df245c1c45f02552e1ce659)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
c38e01db64534f6e9128.dll  (af763f89182912e19a7d100cdd0d24b5)

1 / 68      (Adware)
635f794f1ead4cb39f5d64.dll  (7d39ad6ac894cebc44ea0293b35dd8cb)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
635f794f1ead4cb39f5d.dll  (11cadd8d4c8f09629b77d80c75c8d39b)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
26409523cecb48a28e0764.dll  (43fc4451620b244c8ed3d686b7ebd611)

1 / 68      (Adware)
26409523cecb48a28e07.dll  (f1dd6118cf36be5fa2f4350b38a55944)

1 / 68      (Adware)
16bedba7bd3d4f59b3cd64.dll  (e81a902402407222964547391b7fe4c7)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
16bedba7bd3d4f59b3cd.dll  (00cf75bf43c30746bb7e70db0144e6b4)

1 / 68      (Adware)
0aeeb01430db4ea7bdd264.dll  (9da53790da4edaafa37d586423ffe1a3)

1 / 68      (Adware)
0aeeb01430db4ea7bdd2.dll  (540c83ced5b0e15b44258d231a74c3b3)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
01c58c2ceecb478a873a64.dll  (0f41d6df41b52d506ee925f5fa494eeb)

1 / 68      (Adware)
01c58c2ceecb478a873a.dll  (37456c5af25046e4fc294cd32bdd6d74)

1 / 68      (Adware)
{cd0b1e8f-08a5-4df1-aabf-ca8dcf3a8af4}t.sys (StdLib)  (de49a769edafa6cb315e6b2857169e46)

 
Latest 30 of 139 files

The following publishers (by Authenticode signature organization name) are related.

30 of 76 publishers

Remove WunderWeb Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to WunderWeb by VeriSign, Inc. on August 13, 2013 with the serial number '766c8ed1334566ab295138a99fe038d9'.