Zugo Ltd

Publisher Information

Zugo Ltd is a software publisher located in St Helier, Jersey in JE*. The company is a primary distributor of unwanted software. Zugo is a web browser monetization platform that co-bundles various search exetensions including the StartNow toolbar. The company provides software bundle opportunities for publishers that install these extensions. Thre are 2 additional code signing certificates issued to this publisher.
Remove Zugo Ltd Malware - Powered by Reason Core Security
Authority:
The USERTRUST Network

Valid from:
1/25/2010 7:00:00 PM

Valid to:
1/26/2011 6:59:59 PM

Subject:
CN=Zugo Ltd, O=Zugo Ltd, STREET=PO Box 36, STREET=1st Floor, STREET=37 Broad St., L=St Helier, S=Jersey, PostalCode=JE4 9NU, C=JE

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
00c52fd6f7886644358c539d8fc50bcc93

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Zugo.PRODUCTPUBLISHER.Installer (M), PUP.Zugo.Worcester.Installer (M), PUP.Zugo.Toolbar (M), PUP.Zugo.MakeMyBaby.Installer (M), PUP.Zugo (M), PUP.Zugo.iMedix.Installer (M), PUP.Zugo.ExentTechnologies.Installer (M), PUP.Zugo.PredictYourBaby.Installer (M), PUP.Zugo.PlayItAllMediaPlayer.Installer (M), PUP.Zugo.Vitzo.Installer (M), PUP.Zugo.Installer (M), PUP.Zugo.MindQuiz.Installer (M), PUP.Zugo.TightropeInteractive.Installer (M), PUP.Zugo.ParticipatoryCultureFoundation.Installer (M), PUP.Zugo.DeedsMedia.Installer (M), PUP.Zugo.Amelet.Installer (M), PUP.Zugo.PinballCorporation.Installer (M), PUP.Zugo.BrotherSoft.Installer (M), PUP.Zugo.Alawar.Installer (M), PUP.Zugo.SoftonicSL.Installer (M)
100.00%

ESET NOD32
Win32/Toolbar.Zugo, Win32/Toolbar.Zugo (variant), Win32/Toolbar.Zugo potentially unwanted, Win32/Toolbar.Zugo potentially unwanted (variant)
40.00%

Dr.Web
Program.Zugo, Adware.Searcher.73, Adware.Zugo.122
36.00%

NANO AntiVirus
Riskware.Win32.Zugo.cyukej
20.00%

Norman
Downloader, W32/Downloader
16.00%

McAfee Web Gateway
Heuristic.BehavesLike.Win32.Suspicious-PKR.G, BehavesLike.Win32.BadFile.gc, BehavesLike.Win32.Suspicious.gc, BehavesLike.Win32.Suspicious.dc
16.00%

Clam AntiVirus
Adware.Searchbar-33
16.00%

VIPRE Antivirus
Zugo Ltd
16.00%

Avira AntiVirus
Adware/Agent.Zugo.274, Adware/Agent.Zugo.35, TR/Agent.cada.1003, ADWARE/Agent.Zugo.51, TR/BHO.MindQuizSearch
14.00%

F-Prot
W32/A-a9ce3e7e
12.00%

2 / 68      (Adware)
tmp00000006c1c515233db6a69f (Search Toolbar by Zugo)  (e33459114f2964032a2c0780fb613feb)

1 / 68      (Adware)

9 / 68      (Adware)
skipscreen-setup.exe (SkipScreen by Worcester)  (ebbfc08fab8b0ced74b03fbba74826d7)

1 / 68      (Adware)
alawar-silent.exe (Alawar)  (02d2a7297e4cd77a54843a1e2f15b477)

9 / 68      (Adware)
skipscreen-setup.exe (SkipScreen by Worcester)  (06e70e48b2fdfce3812d4d4d45a14ebb)

1 / 68      (Adware)

1 / 68      (Adware)
zugo_toolbar.exe  (fcc0f58eac404de98fd6bf05a135f6fe)

1 / 68      (Adware)
sai629c.exe (Hotbar by Pinball)  (b5393d84fe340582c395795e27765087)

1 / 68      (Adware)
tmp00000595dbc7df36b6ac8e73 (SearchToolbar)  (75aed6a7e44e52809038b01b63254376)

1 / 68      (Adware)

1 / 68      (Adware)
tightrope-silent.exe (Tightrope by Tightrope Interactive)  (58bff250e4f597e0ccf86ddea1a28e91)

1 / 68      (Adware)
hamster-silent.exe (Hamster Software by Amelet)  (01c9404d1469aa5f1d7ec1585c9ac72a)

1 / 68      (Adware)
makemybabysetup.exe (Make My Baby by Make My Baby)  (4a4ebccf99be1f9adf2f89ce609c35bf)

1 / 68      (Adware)
li-games-silent-2.exe  (9dfd7b1ebfaa58be176ea2be7f05494f)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
skypelauncher-setup.exe  (392bef0c8072dbe4f2b8786f8709fbf0)

1 / 68      (Adware)
sms-silent.exe  (c764799b9d2dd7a08aad16a125dac8ac)

1 / 68      (Adware)
tightrope-silent.exe (Tightrope by Tightrope Interactive)  (9cd8b77d81d81bd24a2bdfe0ba4dea03)

1 / 68      (Adware)
pn-gamers-silent-us-dtx.exe  (567ad480178a0a8cbde4122c6d906c01)

1 / 68      (Adware)
pdf-reader_setup.exe  (d520cff7264e929499eeca14e7f90623)

10 / 68    (Adware)
mindquizsetup.exe (Mind Quiz by Mind Quiz)  (f93e519a122b5694784653a87c28b3b5)

1 / 68      (Adware)
142662976.ex_ (Search Toolbar by Zugo)  (a959394b8e504ea15178b20f4900556a)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
imedix-silent.exe (iMedix MIL by iMedix)  (052a90d70ea7c91182f5bf0a2069a4b0)

5 / 68      (Adware)

 
Latest 30 of 122 files

The certificates below are also signed by Zugo Ltd.

00FA860DF2AC924FC31176C787706F3824  (Jan 30, 2013 to Jan 31, 2016)

46241CDE5C7B500B51C5F1328228F2A9  (Jan 27, 2011 to Jan 27, 2013)

Remove Zugo Ltd Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Zugo Ltd by The USERTRUST Network on January 25, 2010 with the serial number '00c52fd6f7886644358c539d8fc50bcc93'.