Edu App

Publisher Information

Edu App is a brand of the Sambreel/Yontoo group, a web advertising company located in Carlsbad, CA. The company is a primary distributor of unwanted software. It is part of the Yontoo/Sambreel group and distributes web browser add-ons, typically potentially unwanted and adware in nature, that are designed to modify a user's typical search beahvior as well as display context and popup advertising.
Authority:
VeriSign, Inc.

Valid from:
3/18/2015 1:00:00 AM

Valid to:
3/18/2016 12:59:59 AM

Subject:
CN=Edu App, O=Edu App, L=San Diego, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2a116e4ddae4eb2c28f70fbc481d3e94

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Yontoo (M), Adware.Yontoo (M)
100.00%

1 / 68      (Adware)
eduapp.browseradapter_6.exe  (34af99c98aaebdb751b9c39e8c71164f)

1 / 68      (Adware)
eduapp.browseradapter_5.exe  (a42b689d86ad136516d38a28345a259c)

1 / 68      (Adware)
eduapp.browseradapter_3.exe  (250d0248850f23c79f9657c6612c2d72)

1 / 68      (Adware)
eduapp.browseradapter_2.exe  (eef6e86f6f8158691dc6f2d5a41ab1c2)

1 / 68      (Adware)
eduapp.browseradapter_1.exe  (24657d0708f2dcf22796e7b9dd2943f8)

1 / 68      (Adware)
42f8f7292fa844bbb01a_6.dll  (ae1a4c58a87f57d68716e017c394d5f7)

1 / 68      (Adware)
42f8f7292fa844bbb01a_4.dll  (f123837c5211183deea16ebb74bab592)

1 / 68      (Adware)
42f8f7292fa844bbb01a_3.dll  (86c013956703ba1a6091a263654b3035)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
42f8.dll (by TODO: <Company name>)  (02ae3c2871feb0ba69c18b0bba922b49)

1 / 68      (Adware)
eduapp.purbrowseg.dll  (a4beec5dded4f44172281a05a8e9a98b)

1 / 68      (Adware)
eduapp.gcupdate.dll  (9a7a7b11c97f59fe0e3cdc932d313506)

1 / 68      (Adware)
eduapp.findlib.dll  (9e6de35386d8bea89fedb02cb2b2e10e)

1 / 68      (Adware)
eduapp.ffupdate.dll  (43dab463c1cb896c6f5ba4a31cc5c080)

1 / 68      (Adware)
eduapp.browseradapter.dll  (f42524078a76d6d1da8db90b9d3667fa)

1 / 68      (Adware)
eduapp.purbrowse.exe  (dec33e55d528d7a7287d63014a331324)

1 / 68      (Adware)
42f8f7292f64.dll  (072c0e635c17f92f0986d91007db0f8e)

1 / 68      (Adware)
42f8f7292f.dll  (949cdfbf841401bbc8463f4c69abe6a4)

1 / 68      (Adware)
42f8.dll (by TODO: <Company name>)  (779d611ab92a2124f91699442e11c93f)

1 / 68      (Adware)
eduappun.exe  (5218a29153c995023cf08720eabcf430)

1 / 68      (Adware)
{42f8f729-2fa8-44bb-b01a-28c57a8162c7}gw.sys (StdLib)  (65124070ce7d1946c6d2c5e30f925beb)

1 / 68      (Adware)
eduapp.purbrowse.dll  (911eb68704dacbaa31ab1d9cd333582d)

1 / 68      (Adware)
EduApp.OptChecker.dll  (2b00b54cfd820b08114113344a414943)

1 / 68      (Adware)
eduapp.browseradapter64.exe  (77539457c3f55f963d11f2a3a05567bc)

 
Latest 30 of 9,874 files

The following publishers (by Authenticode signature organization name) are related.

30 of 143 publishers

* Note, the details and description above are based on the code signing digital signature issued to Edu App by VeriSign, Inc. on March 18, 2015 with the serial number '2a116e4ddae4eb2c28f70fbc481d3e94'.