Home Malware Programs Adware Jotzey

Jotzey

Posted: February 19, 2014

Threat Metric

Ranking: 13,373
Threat Level: 2/10
Infected PCs: 1,063
First Seen: February 19, 2014
Last Seen: August 22, 2023
OS(es) Affected: Windows


Jotzey Screenshot 1Jotzey is adware which, at first sight, may occur as a valuable program; however, mainly Jotzey may invade the PC without the computer user's approval. Jotzey may keep track of the surfing habits of the PC user. Jotzey may make changes to the system settings that may lead to delivery of non-stop pop-up ads and continuous diversions of the Web browser to unreliable websites that may also show commercial pop-up and banner advertisements. Jotzey may embed its own add-on, plug-in or browser extension in all the Web browsers that are installed on the computer system. Jotzey may propagate and infiltrate into the computer system through packaged free software.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



system32\drivers\{59981518-8b2b-431e-90db-17dacc8cfa86}w64.sys File name: {59981518-8b2b-431e-90db-17dacc8cfa86}w64.sys
Size: 61.11 KB (61112 bytes)
MD5: 5465b35396138df3c86ed6df73792fea
Detection count: 95
File type: System file
Mime Type: unknown/sys
Path: system32\drivers
Group: Malware file
Last Updated: July 11, 2014
system32\drivers\{59981518-8b2b-431e-90db-17dacc8cfa86}Gt64.sys File name: {59981518-8b2b-431e-90db-17dacc8cfa86}Gt64.sys
Size: 60.08 KB (60088 bytes)
MD5: 1731786f212afeae40767b2ccebd8708
Detection count: 40
File type: System file
Mime Type: unknown/sys
Path: system32\drivers
Group: Malware file
Last Updated: July 7, 2014
%WINDIR%\System32\drivers\{59981518-8b2b-431e-90db-17dacc8cfa86}w.sys File name: {59981518-8b2b-431e-90db-17dacc8cfa86}w.sys
Size: 52.92 KB (52920 bytes)
MD5: dae4fe13c12c2326a68a445585002029
Detection count: 25
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: July 7, 2014
system32\drivers\{59981518-8b2b-431e-90db-17dacc8cfa86}t64.sys File name: {59981518-8b2b-431e-90db-17dacc8cfa86}t64.sys
Size: 60.08 KB (60088 bytes)
MD5: 98db9648b3f5dddb49b445d4029061f5
Detection count: 11
File type: System file
Mime Type: unknown/sys
Path: system32\drivers
Group: Malware file
Last Updated: July 7, 2014
system32\drivers\{59981518-8b2b-431e-90db-17dacc8cfa86}t64.sys File name: {59981518-8b2b-431e-90db-17dacc8cfa86}t64.sys
Size: 60.08 KB (60088 bytes)
MD5: b2f6845d753d1c1334fb056368c125f9
Detection count: 9
File type: System file
Mime Type: unknown/sys
Path: system32\drivers
Group: Malware file
Last Updated: July 7, 2014
system32\drivers\{59981518-8b2b-431e-90db-17dacc8cfa86}Gw64.sys File name: {59981518-8b2b-431e-90db-17dacc8cfa86}Gw64.sys
Size: 61.11 KB (61112 bytes)
MD5: 55b35cec74ddd7346473513b1288e8f2
Detection count: 9
File type: System file
Mime Type: unknown/sys
Path: system32\drivers
Group: Malware file
Last Updated: July 7, 2014
system32\drivers\{59981518-8b2b-431e-90db-17dacc8cfa86}Gw64.sys File name: {59981518-8b2b-431e-90db-17dacc8cfa86}Gw64.sys
Size: 61.11 KB (61112 bytes)
MD5: 642f6e6c877e5be322977c0e2e7ccb6e
Detection count: 5
File type: System file
Mime Type: unknown/sys
Path: system32\drivers
Group: Malware file
Last Updated: July 7, 2014
%PROGRAMFILES%\Jotzey\updateJotzey.exe File name: updateJotzey.exe
Size: 111.89 KB (111896 bytes)
MD5: 49274369d0eca1d9e4fb9b60b3e10597
Detection count: 3
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Jotzey
Group: Malware file
Last Updated: March 6, 2014

Registry Modifications

The following newly produced Registry Values are:

CLSID{0CCE1468-7A48-42C8-84F1-9F41AF1B5A76}{0EEE4D6D-0A0A-4FAE-8188-668C5D8F96D2}HKEY..\..\..\..{RegistryKeys}Software\JotzeySoftware\Microsoft\Internet Explorer\Approved Extensions\{CDF368CB-6A2F-460A-8ABF-51538DE43DEC}SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{cdf368cb-6a2f-460a-8abf-51538de43dec}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CDF368CB-6A2F-460A-8ABF-51538DE43DEC}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CDF368CB-6A2F-460A-8ABF-51538DE43DEC}SOFTWARE\Wow6432Node\JotzeyHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}Jotzey

Additional Information

The following directories were created:
%PROGRAMFILES%\Jotzey%PROGRAMFILES(x86)%\Jotzey
The following URL's were detected:
Jotzeyjotzey
Loading...