Download Sp. z.o.o.

Publisher Information

Download Sp. z.o.o. is a software developer located in Warszawa, Poland*. The publisher primarily developes software that can be classified as adware. There is one additional code signing certificate issued to this publisher.
Authority:
DigiCert Inc

Valid from:
12/8/2014 7:00:00 PM

Valid to:
12/14/2015 7:00:00 AM

Subject:
CN=Download Sp. z.o.o., O=Download Sp. z.o.o., L=Warszawa, C=PL

Issuer:
CN=DigiCert Assured ID Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
08883940928ae596451853b69f51c554

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.DownloadSpzoo.O, PUP.Installer.DownloadSpzoo, PUP.Task.DownloadSpzoo, PUP.DownloadSpzoo.Installer (M), PUP.DownloadSpzoo (M), PUP.Download.Installer (M), PUP.Download (M), PUP (M)
100.00%

Malwarebytes
PUP.Optional.ObronaAds, PUP.Optional.ObronaCleaner.A
23.08%

Dr.Web
Adware.Redsky.1
15.38%

Qihoo 360 Security
HEUR/QVM40.1.Malware.Gen, HEUR/QVM10.1.Malware.Gen, HEUR/QVM42.1.Malware.Gen
10.26%

Avira AntiVirus
ADWARE/Redsky.565688, ADWARE/Redsky.616080, ADWARE/Redsky.565672
7.69%

Emsisoft Anti-Malware
Adware.Win32.AdClean
5.13%

herdProtect (fuzzy)
a variant of 2c931979671b8edfbae2360d386ad69382603252, a variant of 4573c45242ff7019ea4c13a9dcdc47ddedf1e137
5.13%

McAfee
Artemis!5DCF32734705, Artemis!C4227773F808
5.13%

Rising Antivirus
PE:Trojan.Win32.Generic.1337C9FE!322423294
2.56%

Trend Micro House Call
Suspicious_GEN.F47V0416
2.56%

1 / 68      (PUP)
wikibrowser.exe (WikiBrowser)  (d5ccf2d079a579c4adf6fbdcc822439e)

1 / 68      (PUP)
c787137fcb820584de5e20a34c8eb21e.exe  (832f3a7aab0fa6c8424770c6a9b94a58)

1 / 68      (PUP)
obronablockads.exe (Obrona Block Ads by RedSky Sp. z o.o)  (51e6d5fbd6620b8a58eb330e09b03847)

1 / 68      (PUP)
obronablockads.exe (Obrona Block Ads by RedSky Sp. z o.o)  (bc15d0dfda2780411a8ae2d930d57c36)

1 / 68      (PUP)
c787137fcb820584de5e20a34c8eb21e.exe  (f652895da5c156137c99a4b9aa8c6ba8)

1 / 68      (PUP)
adblokerell.exe (Adblokerell)  (c9152a46fa8a5607a2bdfcac6debb8bf)

1 / 68      (PUP)
adblokerell.exe (Adblokerell by Download Sp. z o.o)  (3781368d333988c75d90cd10deae61bd)

1 / 68      (PUP)
obronablockadsupdate.exe (Obrona Block Ads)  (770528eda94d5a9bac08d3550b51b825)

1 / 68      (PUP)
ba010ae2cb5ce66c417ee0d510b05655e198c264.exe  (9ee1d8c2e412b11baa67feaaae153561)

1 / 68      (PUP)
wikibrowser.exe  (ea0035c96b1fe34569be10ed0bf7d5c7)

4 / 68      (PUP)
wikibrowser.exe  (d7709f0c74cc0c8d984d54df1f617539)

4 / 68      (PUP)
awh93f9.tmp  (e88c4e0e5810305fd651d73ea7f61886)

1 / 68      (PUP)
awhde00.tmp  (ddc754b0de931148c7589c53108aae05)

3 / 68      (PUP)
awhbf79.tmp  (901f369689ed1bc5639ae1b23c3db6c4)

3 / 68      (PUP)
wikibrowser104.exe  (afec1f66395dca1cab4492a6b12dc55f)

1 / 68      (PUP)
wikibrowser104.exe  (4a17a8e688f57f2faec69c8ada1cc4f9)

3 / 68      (PUP)
obronablockads.exe (Obrona Block Ads)  (c4227773f808538ef7fa3e31651ecb2d)

1 / 68      (PUP)
wikibrowser.exe  (27dab8519b22259dc96d4652d6570942)

3 / 68      (PUP)
wikibrowser.exe  (4cf95a50c037b4a48846e3a94512cf74)

1 / 68      (PUP)
awh87ca.tmp  (43fdd63eef5891fea9f097dd7049aa41)

2 / 68      (PUP)
awh9905.tmp  (3bcc51fe850b3bb6d36abe8f6be89773)

2 / 68      (PUP)
obronablockadsupdate.exe (Obrona Block Ads)  (6e86b3e5bde53ce4998abf5e4a591d9d)

2 / 68      (PUP)
obronablockads.exe (Obrona Block Ads by RedSky Sp. z o.o)  (bc15d0dfda2780411a8ae2d930d57c36)

3 / 68      (PUP)
obronablockadsupdate.exe (Obrona Block Ads)  (aae91cf7c501484c8c2e6d08812163f8)

1 / 68      (PUP)
startuptime.exe  (a47b4bdfb817905336f84439977f35df)

1 / 68      (PUP)
skipuac.exe  (d5f6580e529cbe9e08c1c1b3f683f19c)

2 / 68      (PUP)
ObronaCleaner.exe (Obrona Cleaner by Download Sp. z o. o)  (85cd39ec6a2a564cdec1e89c4c6ce817)

8 / 68      (PUP)
420ef657ac409540090cd5f2bc90ee8e.exe  (5dcf32734705509c0b3343a0e61c0fb8)

3 / 68      (PUP)
obronacleaner24update.exe (OBRONA Cleaner)  (02d7e297c23d9b95ddfb1faa7cdf5d2c)

1 / 68      (PUP)
skipuac.exe  (561a5b89389556bbc6fc66a6e608d682)

 
Latest 30 of 39 files

Downloads URLs for files signed by Download Sp. z.o.o..

2 / 68      (PUP)
http://cleaner.obrona.org/.../ObronaCleaner.exe  (8bdaf6278566de9ae3184692695b934f)

1 / 68      (PUP)
http://adblokerell.pl/static/.../Adblokerell.exe  (c9152a46fa8a5607a2bdfcac6debb8bf)

1 / 68      (PUP)
http://wikibrowser.co/.../WikiBrowser.exe  (27dab8519b22259dc96d4652d6570942)

The following websites host and distribute files published by Download Sp. z.o.o..

The following certificate is also signed by Download Sp. z.o.o..

085E3D2A59F10CC943880B40ED67B453  (Feb 04, 2013 to Feb 10, 2014)

* Note, the details and description above are based on the code signing digital signature issued to Download Sp. z.o.o. by DigiCert Inc on December 08, 2014 with the serial number '08883940928ae596451853b69f51c554'.