Qzoneinteractive

Publisher Information

Qzoneinteractive is a software publisher located in Gwangjin-gu, Seoul in Korea*. A majority of the programs developed by the company can be classified as adware or other potentially unwanted programs. Thre are 3 additional code signing certificates issued to this publisher.
Authority:
thawte, Inc.

Valid from:
12/15/2014 9:00:00 AM

Valid to:
2/14/2016 8:59:59 AM

Subject:
CN=Qzoneinteractive, O=Qzoneinteractive, L=Gwangjin-gu, S=Seoul, C=KR

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
07f8fa305f2bc9de492ee1d748e01dde

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Qzoneinteractive (M), PUP.Qzoneinteractive.Installer (M), PUP.Qzoneint (M), PUP.Qzoneint.Installer (M), PUP (M)
100.00%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
10.00%

McAfee
Artemis!AED0669D20B5, Artemis!EDA362FF8394, Artemis!00BFE7CFA4C4, Artemis!14652B2CE065
8.00%

MicroWorld eScan
Gen:Variant.Strictor.75892
6.00%

Bitdefender
Gen:Variant.Strictor.75892
6.00%

Lavasoft Ad-Aware
Gen:Variant.Strictor.75892
6.00%

F-Secure
Gen:Variant.Strictor.75892
6.00%

Emsisoft Anti-Malware
Gen:Variant.Strictor.75892
6.00%

G Data
Gen:Variant.Strictor.75892
6.00%

IKARUS anti.virus
Win32.SuspectCrc
6.00%

1 / 68      (Malware)
BlueAdSetup.exe (BlueAdSetup Module)  (05ca185d4dc2b0e99d900f32d5bc3c4b)

1 / 68      (Malware)
bap_ad11.exe (BlueAdSetup Module)  (ce71b44a26bd31ce076cb49ccf932744)

1 / 68      (Malware)
RmBA.exe (RmBA Module)  (b01128e8513af9ce9695c6b4228de3b6)

1 / 68      (Malware)
BASch.exe (BASch Module)  (a90249f59f27a809b8badf13df6856e7)

1 / 68      (Malware)
BAUpdate.exe (BAUpdate Module)  (557faeb7a53b36d3fda74cf5fc56ba9d)

1 / 68      (Malware)
RmBA.exe (RmBA Module)  (e70187692bd69fc8c2857abb56aff62d)

1 / 68      (Malware)
BAUpdate.exe (BAUpdate Module)  (0df1aeb462e3763b7e3055a8ebb281a0)

1 / 68      (Malware)
RmBA.exe (RmBA Module)  (0e229c7928753675e8c5101206f3b169)

1 / 68      (PUP)
BlueAdSetup.exe (BlueAdSetup Module)  (71fec970c7101308819e5c1a0f1a25a6)

1 / 68      (PUP)
BASch.exe (BASch Module)  (f926ca892f990f6377018235fe5b4ca9)

1 / 68      (PUP)
BAGuard.exe (BAGuard Module)  (54d42ba8ae55af5dbb2d80ba834d3924)

1 / 68      (PUP)
BAGuard.exe (BAGuard Module)  (58354d55d1b5a341bf49c57a6d33254b)

1 / 68      (PUP)
RmBA.exe (RmBA Module)  (bb6d8030cd859f62ff79ababa310c09e)

1 / 68      (PUP)
BAUpdate.exe (BAUpdate Module)  (9248555e30f0ba9a8d143d87038767ed)

1 / 68      (PUP)
BASch.exe (BASch Module)  (f8caff505ef43b88d10a88849a05651f)

1 / 68      (PUP)
BAGuard.exe (BAGuard Module)  (789cf9454a5871c112e7c0948b959163)

1 / 68      (PUP)
RmBA.exe (RmBA Module)  (6cf5ac1b64e7d16fc1a60d4abe309fe5)

1 / 68      (PUP)
BAUpdate.exe (BAUpdate Module)  (65a45e3b59171e2c2a5f2fcc1ad90605)

1 / 68      (PUP)
BASch.exe (BASch Module)  (22be4225b7d37113352a8917f6294b29)

1 / 68      (PUP)
BAGuard.exe (BAGuard Module)  (42ee3065355b4766cef2915a36c49bc2)

1 / 68      (PUP)
RmBA.exe (RmBA Module)  (11ea9007fb7ef98a1fff3523a6db573b)

1 / 68      (PUP)
BASch.exe (BASch Module)  (fc890d471d1f7cdda5aefcfc0bf9fa91)

1 / 68      (PUP)
Baple.exe (Baple Module)  (ebcc685af66436279cea05f10e5d9cb6)

1 / 68      (PUP)
BlueAdSetup.exe (BlueAdSetup Module)  (3aa72039e24dd6ea3493a519ae399059)

1 / 68      (PUP)
Baple.exe (Baple Module)  (efd56b4ae61cffdedd20307119731c55)

1 / 68      (PUP)
BlueAdSetup.exe (BlueAdSetup Module)  (8977227f9173bfddbb6f1c1c6523568c)

1 / 68      (PUP)
Baple.exe (Baple Module)  (5beeee27a1651fcc130cf21c17510da5)

1 / 68      (PUP)
BlueAdSetup.exe (BlueAdSetup Module)  (e71196b01a82618281fa9dbed4d154cf)

1 / 68      (PUP)
BlueAdSetup.exe (BlueAdSetup Module)  (48413af02f091810fd377f2a69978a04)

1 / 68      (PUP)
Baple.exe (Baple Module)  (544f561882340b8593715faad51feec1)

 
Latest 30 of 75 files

The certificates below are also signed by Qzoneinteractive.

0ED8386A77DD8C93F3CA811C375EA680  (Nov 30, 2013 to Dec 31, 2014)

7F237568BB838B3E163705A7365EEC19  (Nov 03, 2012 to Dec 04, 2013)

51790DE8CFF3FB8E48D3E671F9021D0B  (Nov 14, 2011 to Nov 14, 2012)

* Note, the details and description above are based on the code signing digital signature issued to Qzoneinteractive by thawte, Inc. on December 15, 2014 with the serial number '07f8fa305f2bc9de492ee1d748e01dde'.