Verti Technology Group, Inc. - 20% Detection Rate *

Did you just stumble upon a download or a file on your computer that has a digital signature from Verti Technology Group, Inc.? Some of the security products refers to the detected files as Dropped:Trojan.GenericKD.1943469 and Rocketfuel Installer (fs). The detection rate for the Verti Technology Group, Inc. files collected here is 20%. Please read on for more details.

You will probably notice Verti Technology Group, Inc. when running the file. The publisher name shows up as the "Verified publisher" in the UAC dialog as the screenshot shows:

Screenshot where Verti Technology Group, Inc. appears as the verified publisher in the UAC dialog

You can view additional details from the Verti Technology Group, Inc. certificate with the following steps:

  1. Open Windows Explorer and locate the Verti Technology Group, Inc. file
  2. Right-click on the file and select Properties
  3. Click the Digital Signatures tab
  4. Click the View Certificate button

Here is a screenshot of a file digitally signed by Verti Technology Group, Inc.:

Screenshot of the Verti Technology Group, Inc. certificate

As you can see in the screenshot above, Windows states that "This digital signature is OK". This means that the file has been published by Verti Technology Group, Inc. and that the file has not been tampered with.

If you click the View Certificate button shown in the screenshot above, you can see all the details of the certificate, such as when it was issued, who issued the certificate, how long it is valid, and so on. You can also examine the address for Verti Technology Group, Inc., such as the street name, city and country.

VeriSign Class 3 Code Signing 2010 CA has issued the Verti Technology Group, Inc. certificates. You can also view the details of the issuer by clicking the View Certificate button shown in the screenshot above.

Verti Technology Group, Inc. Files

The following are the Verti Technology Group, Inc. files I've gathered, thanks to the FreeFixer users.

Detection RatioFile Name
9/5537161337.exe
16/53Xvid_RocketFuelInstaller.exe
18/54MediaPlayerClassic_RocketFuelInstaller.exe
10/57RapidMediaConverterApp.exe

Scanner and Detection Names

Here's the detection names for the Verti Technology Group, Inc. files. I have grouped the detection names by each scanner engine. Thanks to VirusTotal for the scan results.

ScannerDetection Names
AVGGeneric.632
AVwareRocketfuel Installer (fs)
Ad-AwareDropped:Trojan.GenericKD.1943469
AvastWin32:Adware-BGF [PUP]
AviraAdware/Rocketfuel.AB, TR/Verti.292320
Baidu-InternationalPUA.Win32.Verti.BJ
BitDefenderDropped:Trojan.GenericKD.1943469
BkavW32.HfsAdware.A7C8
CAT-QuickHealAdWare.NSIS.r5 (Not a Virus)
ComodoApplication.Win32.RocketFuel.~WW
DrWebAdware.Downware.6704, Adware.Downware.8721
ESET-NOD32a variant of Win32/Verti.J, a variant of Win32/Verti.K potentially unwanted
EmsisoftAdware.Win32.Verti (A), Dropped:Trojan.GenericKD.1943469 (B)
F-SecureDropped:Trojan.GenericKD.1943469
FortinetRiskware/Verti
GDataDropped:Trojan.GenericKD.1943469
K7AntiVirusUnwanted-Program ( 0040f97f1 )
K7GWUnwanted-Program ( 0040f97f1 )
Kasperskynot-a-virus:AdWare.NSIS.Rocketfuel.a
MalwarebytesPUP.Optional.Verti, PUP.Optional.RocketFuel, PUP.Optional.Rocketfuel
McAfeeArtemis!A749DB2A1E67, Artemis!D4236A533AA8, Artemis!01851A9BA06C
McAfee-GW-EditionArtemis
Qihoo-360Win32/Virus.Adware.c2a
SophosGeneric PUA MM
TencentNsis.Adware.Rocketfuel.Llqv
TotalDefenseWin32/Tnega.TXReZGC
TrendMicro-HouseCallSuspicious_GEN.F47V0802
VBA32AdWare.Rocketfuel
VIPRERocketfuel Installer (fs)
ViRobotAdware.AppDownloader.362664
ZillyaAdware.ELEX.Win32.9
nProtectDropped:Trojan.GenericKD.1943469

* How the Detection Percentage is Calculated

The detection percentage is based on the fact that I've gathered 269 scan reports for the Verti Technology Group, Inc. files. 53 of these scan reports came up with some sort of detection. If you like, you can view the full details of the scan reports by examining the files listed above.

Analysis Details

The analysis is based on certificates with the following serial numbers:

Comments

No comments posted yet.

Leave a reply