fczjqwox.exe

Verti Technology Group, Inc.

This is part of the Verti bundle installer which bundles applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed with minimal consent. The file fczjqwox.exe by Verti Technology Group has been detected as adware by 6 anti-malware scanners.
Publisher:
Verti Technology Group, Inc.  (signed and verified)

Version:
1.0.135.0

MD5:
af4941bb80b16ed2ea4ca5a8fa8add58

SHA-1:
0fa33dc9774bcfb0aad416907137db92a96e429d

Scanner detections:
6 / 68

Status:
Adware

Analysis date:
5/1/2024 4:54:35 PM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Adware-BGF [PUP]
2014.9-150426

ESET NOD32
Win32/Verti (variant)
9.9624

Malwarebytes
PUP.Optional.RocketFuel.A
v2015.04.26.05

Reason Heuristics
Threat.Verti.VertiTechnologyGroup
15.4.11.0

VIPRE Antivirus
Rocketfuel Installer
21250

File size:
511.5 KB (523,792 bytes)

Product version:
1.0.135.0

Language:
English (United States)

Common path:
C:\Documents and Settings\{user}\Local settings\temp\fczjqwox.exe.part

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
11/13/2011 6:00:00 PM

Valid to:
11/13/2013 5:59:59 PM

Subject:
CN="Verti Technology Group, Inc.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Verti Technology Group, Inc.", L=Bellevue, S=Washington, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5E5A8F44B995DF01701554FBF18173B7

File PE Metadata
Compilation timestamp:
7/8/2013 9:45:17 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
12288:z8ZfwRNHB4DXn2NCLNBQ/fp5gsGP71PzBoL/xsTkKFYAu6ShaSkBI6nuZ0AeFwJh:dR1mDXn2YN6/fp5gsGP71PzBoL/xsTk3

Entry address:
0x2C038

Entry point:
E8, 28, 94, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 8B, 45, 08, 33, C9, 3B, 04, CD, 38, 71, 45, 00, 74, 13, 41, 83, F9, 2D, 72, F1, 8D, 48, ED, 83, F9, 11, 77, 0E, 6A, 0D, 58, 5D, C3, 8B, 04, CD, 3C, 71, 45, 00, 5D, C3, 05, 44, FF, FF, FF, 6A, 0E, 59, 3B, C8, 1B, C0, 23, C1, 83, C0, 08, 5D, C3, E8, E6, 10, 00, 00, 85, C0, 75, 06, B8, A0, 72, 45, 00, C3, 83, C0, 08, C3, E8, D3, 10, 00, 00, 85, C0, 75, 06, B8, A4, 72, 45, 00, C3, 83, C0, 0C, C3, 8B, FF, 55, 8B, EC, 56, E8, E2, FF, FF, FF, 8B, 4D, 08...
 
[+]

Entropy:
6.7937

Code size:
248.5 KB (254,464 bytes)

Remove fczjqwox.exe - Powered by Reason Core Security