Jotzey

Jotzey

Known Adware

by Yontoo Technology, Inc.

What is Jotzey?

Jotzey is software application developed by Yontoo Technology, Inc.. It is most commonly found on computers running Windows 7 with nearly 67.56% of installations running this operating system. Jotzey's installer is typically 563.00 KB in size and installs around 8 files. The most common release is 2014.02.26.051729 with 13.77% of all installations currently using this version.

Jotzey is most popular in the United States with 41.47% of installations residing in this country.

About Jotzey?

Jotzey is a web browser extension with adware functionality that is designed to control the user's browser in order to redirect web searches and inject advertising. This program operates as a Browser Helper Object in Internet Explorer. The extension hijacks advertising on non-associated websites and injects its own advertising in the form of contextual link ads, banner ads, popups, and pop-overs, including on known ad serving sites. It is commonly bundled with unwanted third-party applications and distributed through web browser vulnerabilities. The extension's functionality includes injecting advertising in the form of contextual ads, links, and pop-ups.

Multiple virus scanners have detected malware in Jotzey.

updateJotzey.exe (MD5: bcf051e2f6907df68f570ef8a2b17ca1) has been flagged by 35 scanners:
Scanner Software Result
ESET-NOD32 a variant of Win32/BrowseFox.G
Malwarebytes PUP.Optional.Jotzey.A
Lavasoft Ad-Aware Gen:Variant.Adware.BHO.Agent.4
Antiy-AVL GrayWare[AdWare:not-a-virus]/Win32.Agent
avast! Win32:BrowseFox-BD [PUP]
AVG BrowseFox.F
Avira ADWARE/BrowseFox.Gen2
AVware Yontoo (fs)
Baidu-International Adware.Win32.BrowseFox.BF
Bitdefender Gen:Variant.Adware.BHO.Agent.4
CAT-QuickHeal AdWare.Agent.r5 (Not a Virus)
Comodo Security Application.Win32.Altbrowse.AK
Dr.Web Trojan.BPlug.31
Emsisoft Anti-Malware Gen:Variant.Adware.BHO.Agent.4 (B)
Fortinet FortiGate Adware/Agent
F-Prot W32/BadBHO.AW.gen!Eldorado
F-Secure Gen:Variant.Adware.BHO.Agent.4
G Data Gen:Variant.Adware.BHO.Agent.4
Jiangmin Adware/Agent.jbk
K7 AntiVirus Trojan ( 0049f9c61 )
K7GW Trojan ( 0049f9c61 )
Kaspersky not-a-virus:AdWare.Win32.Agent.ahbx
Kingsoft AntiVirus Win32.Troj.Agent.ah.(kcloud)
McAfee Artemis!BD20D4305C1D
McAfee-GW-Edition Artemis!PUP
MicroWorld-eScan Gen:Variant.Adware.BHO.Agent.4
NANO AntiVirus Riskware.Win32.Agent.cummdd
nProtect Trojan-Clicker/W32.Agent.249624.C
Qihoo-360 HEUR/Malware.QVM30.Gen
SUPERAntiSpyware Adware.BrowseFox/Variant
Symantec Yontoo.C!gen1
Tencent Win32.Adware.Agent.Pgcm
Trend Micro TROJ_GEN.R0C1C0EJK14
TrendMicro-HouseCall TROJ_GEN.R0C1C0EJK14
VIPRE Antivirus Yontoo (fs)
JotzeyBHO.dll (MD5: bd20d4305c1d57bf38ca6d27ea65925c) has been flagged by 35 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.BHO.Agent.4
Antiy-AVL GrayWare[AdWare:not-a-virus]/Win32.Agent
avast! Win32:BrowseFox-BD [PUP]
AVG BrowseFox.F
Avira ADWARE/BrowseFox.Gen2
AVware Yontoo (fs)
Baidu-International Adware.Win32.BrowseFox.BF
Bitdefender Gen:Variant.Adware.BHO.Agent.4
CAT-QuickHeal AdWare.Agent.r5 (Not a Virus)
Comodo Security Application.Win32.Altbrowse.AK
Dr.Web Trojan.BPlug.31
Emsisoft Anti-Malware Gen:Variant.Adware.BHO.Agent.4 (B)
ESET-NOD32 a variant of Win32/BrowseFox.F
Fortinet FortiGate Adware/Agent
F-Prot W32/BadBHO.AW.gen!Eldorado
F-Secure Gen:Variant.Adware.BHO.Agent.4
G Data Gen:Variant.Adware.BHO.Agent.4
Jiangmin Adware/Agent.jbk
K7 AntiVirus Trojan ( 0049f9c61 )
K7GW Trojan ( 0049f9c61 )
Kaspersky not-a-virus:AdWare.Win32.Agent.ahbx
Kingsoft AntiVirus Win32.Troj.Agent.ah.(kcloud)
Malwarebytes PUP.Optional.Jotzey.A
McAfee Artemis!BD20D4305C1D
McAfee-GW-Edition Artemis!PUP
MicroWorld-eScan Gen:Variant.Adware.BHO.Agent.4
NANO AntiVirus Riskware.Win32.Agent.cummdd
nProtect Trojan-Clicker/W32.Agent.249624.C
Qihoo-360 HEUR/Malware.QVM30.Gen
SUPERAntiSpyware Adware.BrowseFox/Variant
Symantec Yontoo.C!gen1
Tencent Win32.Adware.Agent.Pgcm
Trend Micro TROJ_GEN.R0C1C0EJK14
TrendMicro-HouseCall TROJ_GEN.R0C1C0EJK14
VIPRE Antivirus Yontoo (fs)

Software Behaviors

Services:
  • updateJotzey.exe runs as a service named 'Update Jotzey' (Update Jotzey).

Software Details

URL:
https://jotzey.net/support
Support:
https://mailto:
Installation path:
C:\Program Files\Jotzey
Uninstaller:
C:\Program Files\Jotzey\Jotzeyuninstall.exe
Size:
563.00 KB
Language:
English

Jotzey Executable Details

Primary executable:
updateJotzey.exe
Name:
Jotzey
Path:
C:\Program Files\Jotzey\updateJotzey.exe
MD5:
bcf051e2f6907df68f570ef8a2b17ca1
SHA-1:
–
SHA-256:
–
Files installed by Jotzey
File Type Filename MD5
DLL
67a8a7b8b939bb6fb03184f236f724ad
EXE
38dcf478cd6a59cb0d4cd280071c2fdd
EXE
a4cfaa002ee496b8efc7a50e9e2414f6
EXE
bcf051e2f6907df68f570ef8a2b17ca1
EXE
12d7dfc9aba87d02dd68d3688dd5b6aa
DLL
bd20d4305c1d57bf38ca6d27ea65925c
EXE
776f8c67054f6bc30f6915adfb74dc5c
EXE
a094223e1b947c66976cb63b370f2bff