Qizhi Software (beijing) Co. Ltd

Publisher Information

Qizhi Software (beijing) Co. Ltd is a software publisher located in Beijing, China*. There is one additional code signing certificate issued to this publisher.
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
11/24/2006 8:00:00 AM

Valid to:
11/24/2008 7:59:59 AM

Subject:
CN=Qizhi Software (beijing) Co. Ltd, OU=Secure Application Development, O=Qizhi Software (beijing) Co. Ltd, L=Beijing, S=Beijing, C=CN

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
613bf885496412207ecb70acfac6755b

Status:
Inconclusive detections from multiple engines

Scan engine
Details
Detections

Norman
FakeAlert.DELQ, Agent.LPFJ, Startpage.CRCL, W32/Smalltroj.UMHF, Trojan.Generic.8208232
64.29%

Vba32 AntiVirus
Worm.Runouce, Win32.Rootkit.Agent.NFF, SScope.Adware.Baidu.01015, suspected of Win32 Shadow Driver Install, suspected of Trojan.Downloader.gen.h
35.71%

Malwarebytes
Trojan.Downloader.Gen, Backdoor.Wuca, Trojan.Agent, Backdoor.Agent, Spyware.Password
35.71%

McAfee
Artemis!1C0EC93AB160, Generic Downloader.x!brs, Trojan.Artemis!780AA049EEEF, Artemis!15D62AE9D213
28.57%

McAfee Web Gateway
Artemis!1C0EC93AB160, Trojan.Crypt.ZPACK.Gen, RDN/Generic PWS.y!bdr, BehavesLike.Win32.Flyagent.th
28.57%

F-Prot
W32/Heuristic-DRX, W32/Rootkit-PX, W32/Zegost.C.gen, W32/Agent.EW.gen
28.57%

Panda Antivirus
Adware/Antivirus360, Bck/Gh0stRat.K, Trj/Genetic.gen
21.43%

Agnitum Outpost
TrojanSpy.FlyStudio, Trojan.PWS.Bjlog
21.43%

Zillya! Antivirus
Trojan.Genome.Win32.60376, Trojan.Agent.Win32.208525, Trojan.Bjlog.Win32.6696
21.43%

Quick Heal
Trojan.Kyper.bdj, TrojanDropper.Zegost.C5, TrojanDownloader.Zlob.auqk
21.43%

0 / 68
360SEUP.dll (360SEUP)  (2eac93f3d89b18aeee3d702c4651f206)

1 / 68      (inconclusive)
360net.dll  (75413c16d3a20f5453dcb14c29c4f1d5)

32 / 68    (PUP)
15d62ae9d2131ed9df077fe3382135ee.exe (QT)  (15d62ae9d2131ed9df077fe3382135ee)

0 / 68
SoftWareMgr.dll  (07da329d0d5e120653d495f7d3bb1269)

3 / 68
boxmod.exe  (6da77aad8198de199a3ea36a551b4f92)

46 / 68    (PUP)
780aa049eeeff2e06f357ba14a9feccf (by 360.cn)  (780aa049eeeff2e06f357ba14a9feccf)

0 / 68
LeakCheck.DLL (LeakCheck Module by 360Safe.com)  (ddc46c595188b592f60b9d8796547c12)

1 / 68      (inconclusive)
AntiAdwa.dll (by 360Safe.com)  (a65a36560debcf6eed038f0573437834)

34 / 68    (Malware)
d2155050-sample  (2f7e29ea0a191e4567ed073b9d30fb28)

0 / 68
SafeBoxAPI.dll  (beb03848dbd944a1f03c828ef6477143)

1 / 68
safebank.exe  (84470f17a327b0f030261f004107ff44)

1 / 68      (inconclusive)
Rptup.dll (Rptup by 360Safe.com)  (ef75b76f337360505a49cde0a6b8b59c)

0 / 68
liveupdate.DLL  (0cebcbfc43fa7f119f5d92bc525d438a)

1 / 68      (inconclusive)
LeakCheck.DLL (LeakCheck Module by 360Safe.com)  (5de000dea9b12c81277e3ca5cd68473d)

0 / 68
AntiSpy.dll  (3a621f7a33b6c42463c8182f86bde88f)

1 / 68      (inconclusive)
AntiAdwa.dll (by 360Safe.com)  (2063e19fb323e74e623aad868dabd7c1)

0 / 68
links.dll  (e8c8c6eca4f13654b2845512982ae71c)

0 / 68
360sfchk.dll  (aedfb0789f406da31ef3f79691849eac)

0 / 68
SafeBoxAPI.dll  (84174765d461438c3e361367b8f6892d)

0 / 68
ProtoDrv.sys  (77bd3c62544ae5ec24ed08a08d8090a9)

0 / 68
antiacti.dll (by 360Safe.com)  (2982373f8855823f2276087e1d6adb0b)

0 / 68
Rptup.dll (Rptup by 360Safe.com)  (a539adac5ff9a82a5f768b6d1a9c8e8a)

7 / 68      (Malware)
修复工具.exe  (c67418649dca7a7d835428b7c9873906)

1 / 68      (inconclusive)
makereport.exe (by 360Safe.com)  (48cde60e91a754f0a32245eb400ba3a5)

1 / 68      (inconclusive)
360rpt.EXE (360rpt by 360Safe.com)  (9588bd253eb5c6aa34165a6b2adb1b19)

6 / 68      (PUP)
installer.exe (by 360.CN)  (1c0ec93ab1603d2874021371b65d8ede)

The following certificate is also signed by Qizhi Software (beijing) Co. Ltd.

21D91D915F64FE5AEAA16DD9B46F06DD  (Oct 22, 2008 to Nov 24, 2010)

* Note, the details and description above are based on the code signing digital signature issued to Qizhi Software (beijing) Co. Ltd by Thawte Consulting (Pty) Ltd. on November 24, 2006 with the serial number '613bf885496412207ecb70acfac6755b'.