Yantai ZhengHao Network Technology Co.,Ltd.

Publisher Information

Yantai ZhengHao Network Technology Co.,Ltd. is a software developer located in Yantai, Shandong in China*. Thre are 3 additional code signing certificates issued to this publisher.
Authority:
VeriSign, Inc.

Valid from:
5/20/2013 8:00:00 AM

Valid to:
7/20/2014 7:59:59 AM

Subject:
CN="Yantai ZhengHao Network Technology Co.,Ltd.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Yantai ZhengHao Network Technology Co.,Ltd.", L=Yantai, S=shandong, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6060d45e5db4df2938864568ba1e90f8

Status:
Inconclusive detections from multiple engines

Scan engine
Details
Detections

F-Prot
W32/SelfStarterInternetTrojan!M, W32/SelfStarterInternetTrojan!M (not disinfectable)
71.43%

Trend Micro House Call
TROJ_SPNV.01F514, TROJ_GEN.F47V0415, TROJ_GEN.F47V0811, TROJ_GEN.F47V0205, TROJ_GEN.F47V0426, TROJ_GEN.F47V0201, TROJ_GEN.R0CBB01FT13
57.14%

Clam AntiVirus
Win.Trojan.11350378, Win.Trojan.768284
57.14%

McAfee Web Gateway
Artemis, Artemis!2B51FA4D1581, BehavesLike.Win32.Suspicious.rc, BehavesLike.Win32.Downloader.rc, Artemis!A900793679BB, Heuristic.BehavesLike.Win32.Suspicious-PKR.O
57.14%

McAfee
Artemis!31106B27F8BB, Artemis!2B51FA4D1581, Artemis!E317C48AD6FC, Artemis!0FFA50758DC3, Artemis!A900793679BB, Artemis!9631B694465C
42.86%

Dr.Web
Adware.InstallCore.238, Trojan.Click3.8961
42.86%

Fortinet FortiGate
W32/Agent.NPS!tr.dldr, W32/Generic
42.86%

Commtouch SDK
W32/SelfStarterInternetTrojan!M
42.86%

Sophos
Mal/Agent-AOM, Mal/VMProtBad-A
35.71%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
35.71%

3 / 68      (inconclusive)
setup_pcgame.exe  (90bace65b6c802e2739c531f2224443a)

3 / 68      (inconclusive)
setup_219.exe  (fbb56c9b0cedac7b54ef61db0e10fd9c)

0 / 68
Update.exe  (92f043ee6c3967d79ff703215a97e669)

0 / 68
uninst.exe  (e0c0edfeebe6f292e651664e41496132)

0 / 68
printscreen.exe  (c1459bce3b893c7e84c12b6cb90ddaca)

0 / 68
DCRUICtrl.dll  (c44a2f605022fe8a53afe64917c2c0e0)

0 / 68
dcrcleaner.exe (by Zheng Hao)  (922ae088a266e1f9f5d87c6cc0b75ae8)

0 / 68
DcrAppBox.exe (DcrAppBox)  (da4be8dd5fb283711d0f2ef648525be7)

0 / 68
DcrFastExt64.dll  (a021968a1dddcce8a17a59216993568b)

0 / 68
dcrsysopt.dll (by Kingsoft)  (4b354260ac31acee4beaf008896836ce)

0 / 68
Transform.dll  (8bc80fdde126a6f8e389191f9e40ae9a)

0 / 68
dcrweainfo.dll  (8e601e572124dec2064c2e18d8174c24)

0 / 68
SystemInfo.dll  (6a7ae2e3ccef34bbc98cf24337e77ba2)

0 / 68
dcrutil.dll  (134bdfe9465797f93fef46f353f17e10)

0 / 68
gxbutil.dll (GameXBox SpeedUp Module by www.renzhe.com)  (19ec3f8ea4e8181f8cfdb94059a7e07c)

0 / 68
gamespeedup.dll  (e6ffdc288f63688d4d5d537c93cc9d2d)

0 / 68
XMLParse.dll  (86094dd4b697831bfee94eddd7380d7a)

0 / 68
UtilityMgr.dll  (b58f691f8c777c061d1813b0fc053690)

0 / 68
Controls.dll  (dc84f3eb02021f1f5461037d2835f8a9)

17 / 68    (PUP)
setup_zol.exe  (9631b694465c5c043e0f135024431b7a)

5 / 68      (Malware)
setup_106.exe  (f995afc61cada4836337570b499ca834)

0 / 68
update.exe  (5489fa672176bb6d925888de93c52d08)

0 / 68
uninst.exe  (f381b99bbcc7b2a8b6716f3f6a55be07)

0 / 68
printscreen.exe  (ac7da5a10881543ab05f8369b31d5316)

0 / 68
maskkey.dll  (0b334be0bedd02b5893fc901da7ffc60)

0 / 68
lockcmptr.exe  (5454b05ad4954a4ca3c65c927d76ac00)

0 / 68
gxbproxy.dll  (8fb38adc4d3fb1b31136623e1b48ddb9)

0 / 68
daocaoren3.6.exe  (ab595736e874dcb1e075f59e4e249a8f)

0 / 68
AppLaucher.exe  (7d0d89090208b8f84874ba1835dd4bfb)

0 / 68
XMLParse.dll  (50b0c921d262adc5027b26b5ce5b6a28)

 
Latest 30 of 115 files

Downloads URLs for files signed by Yantai ZhengHao Network Technology Co.,Ltd..

4 / 68      (inconclusive)

10 / 68    (PUP)

The following websites host and distribute files published by Yantai ZhengHao Network Technology Co.,Ltd..

The certificates below are also signed by Yantai ZhengHao Network Technology Co.,Ltd..

29BD1ABE240AD35F28F37F819CACFD29  (Sep 06, 2015 to Oct 06, 2016)

06C8D3DDAA7D7BE474B1D69973E3ACB4  (May 28, 2014 to Aug 28, 2015)

0F3D33D10E94C4017C0417C354E3620E  (Jun 14, 2012 to Jun 15, 2013)

The following publishers (by Authenticode signature organization name) are related.

* Note, the details and description above are based on the code signing digital signature issued to Yantai ZhengHao Network Technology Co.,Ltd. by VeriSign, Inc. on May 20, 2013 with the serial number '6060d45e5db4df2938864568ba1e90f8'.