Fact Fire

Publisher Information

Fact Fire is a brand of the Sambreel/Yontoo group, a web advertising company located in Carlsbad, CA. The company is a primary distributor of unwanted software. It is part of the Yontoo/Sambreel group and distributes web browser add-ons, typically potentially unwanted and adware in nature, that are designed to modify a user's typical search beahvior as well as display context and popup advertising.
Authority:
VeriSign, Inc.

Valid from:
11/19/2014 4:00:00 PM

Valid to:
11/20/2015 3:59:59 PM

Subject:
CN=Fact Fire, O=Fact Fire, L=Santa Monica, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5b70f89cfcca24f1f741f575a33a7edd

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Yontoo (M), Adware.Yontoo (M)
100.00%

1 / 68      (Adware)
FactFire2015013003.exe  (8d94ddfd7d677da1149b08ffa7c1f586)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
factfire.expextdll.dll  (68d15916e7e84df40970e8f99c3b467e)

1 / 68      (Adware)

1 / 68      (Adware)
e0334788ad654bf3a6cc.dll  (89decdc906034a22eb9230610144dbec)

1 / 68      (Adware)

1 / 68      (Adware)
5acea8031b094025a05064.dll  (6dfd7364ca7a807e5721a0ca7ea9c5cd)

1 / 68      (Adware)
5acea8031b094025a050.dll  (6b91acb0ea122c777a4ec2dbe3b72eaf)

1 / 68      (Adware)
4f458a2cac524b98a12b64.dll  (706bd095b102755c328f8556661de43f)

1 / 68      (Adware)
4f458a2cac524b98a12b.dll  (c1e9d6eae8a0f27a09d4f71bd98c39c8)

1 / 68      (Adware)

1 / 68      (Adware)
317f39c5cf484353899064.dll  (fac9dffd12e06aac0bcb2fe8c4c32818)

1 / 68      (Adware)
317f39c5cf4843538990.dll  (5ad8558348aedb5c956ada8b4d2d5301)

1 / 68      (Adware)
factfireuninstall.exe  (1e266a55983c0882e994d76712f4c401)

1 / 68      (Adware)
{4f458a2c-ac52-4b98-a12b-e76440b3ad4c}w64.sys (StdLib)  (ba71522733c4f415436ce5e907687279)

1 / 68      (Adware)
{e0334788-ad65-4bf3-a6cc-af7d32d62409}w64.sys (StdLib)  (2d56420cc5e20dc72038f863ca307481)

1 / 68      (Adware)
{dd3f9e6e-fb3e-42ee-bf93-2611bbc386c5}gw64.sys (StdLib)  (1b2ec214da5223eaf6e485f5a5847e86)

1 / 68      (Adware)
{00a91ae3-5673-4e0a-af10-1aaa160e8eb4}w64.sys (StdLib)  (c3119ce285c3315294e2b872e781db12)

1 / 68      (Adware)
{d1214e9a-a33a-4cf6-924c-136fd0162009}gw64.sys (StdLib)  (0d391cdac0ba5e1adb25fb425c6e5f1e)

1 / 68      (Adware)
FactFire2014123014.exe  (bcd8427059ac1415f2d4b23eb6164531)

1 / 68      (Adware)
factfire.expextdll.dll  (115e9d7f506f348256b5fafd09ba550b)

1 / 68      (Adware)
factfire.expext.exe  (711393363a08f5403d1b8ea7b9558e3d)

1 / 68      (Adware)
factfire.gcupdate.dll  (ab560a573ec00e9bfe7daf5c910fa962)

1 / 68      (Adware)
factfire.browseradapter64.exe  (90bcf0874edee5a913fc11a34fc0bd35)

1 / 68      (Adware)
factfire.browseradapter.exe  (9c1d7d83b10b3ef245f792fb5c02845a)

1 / 68      (Adware)
factfire.expextdll.dll  (9e1b99cac960d28adcb5c6a6965f42d8)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
9d9458969d88478f895f64.dll  (8d4905fbaed2643d4e73ba35170fb0d4)

 
Latest 30 of 6,456 files

The following publishers (by Authenticode signature organization name) are related.

30 of 102 publishers

* Note, the details and description above are based on the code signing digital signature issued to Fact Fire by VeriSign, Inc. on November 19, 2014 with the serial number '5b70f89cfcca24f1f741f575a33a7edd'.