AKLT.exe

Anti-Keylogger Tester (AKLT)

Firewall Leak Tester

The application AKLT.exe, “Test your anti-Keylogger” has been detected as a potentially unwanted program by 7 anti-malware scanners. The file has been seen being downloaded from files.snapfiles.com.
Publisher:
Firewall Leak Tester

Product:
Anti-Keylogger Tester (AKLT)

Description:
Test your anti-Keylogger

Version:
2.5

MD5:
6ca9677dbe685238bdff4861188b8203

SHA-1:
07a478caafb1079b0f8110fc6532af78a6bab132

SHA-256:
fdbb91d383615b64e6abaf327d1ec5567f3289657197faacbc57ced90f975b7f

Scanner detections:
7 / 68

Status:
Potentially unwanted

Analysis date:
5/10/2025 3:15:05 PM UTC  (today)

Scan engine
Detection
Engine version

AVG
Tool
2015.0.3509

Bkav FE
W32.Clodcc7.Trojan
1.3.0.4959

Comodo Security
ApplicUnwnt.Win32.Leaktest.AKLT.25
17886

ESET NOD32
Win32/Leaktest.AKLT.25
8.9501

F-Prot
W32/MalwareF.EPLT
v6.4.7.1.166

IKARUS anti.virus
possible-Threat.Tool.EN
t3scan.2.2.29

Rising Antivirus
PE:Malware.XPACK/RDM!5.1
23.00.65.14407

File size:
169 KB (173,056 bytes)

Product version:
2.5

Copyright:
Firewall Leak Tester 2007

Original file name:
AKLT.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\aklt.exe

File PE Metadata
Compilation timestamp:
12/4/2007 5:16:43 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.50

CTPH (ssdeep):
3072:6xdmfA96aY2VAaiqIZj5MzcFxqLKW/AeRyL3aEBTWbq2cVeWyZ7kXrh:qdKA8a2aiqIZj5MwFxqLKWICyOEpwbc/

Entry address:
0x1000

Entry point:
68, 78, 00, 00, 00, 68, 00, 00, 00, 00, 68, 74, A7, 42, 00, E8, 20, 30, 00, 00, 83, C4, 0C, 68, 00, 00, 00, 00, E8, 19, 30, 00, 00, A3, 78, A7, 42, 00, 68, 00, 00, 00, 00, 68, 00, 10, 00, 00, 68, 00, 00, 00, 00, E8, 06, 30, 00, 00, A3, 74, A7, 42, 00, E8, 7C, 72, 01, 00, E8, 0F, 72, 01, 00, E8, 32, 69, 01, 00, E8, 8F, 64, 01, 00, E8, FE, 4D, 01, 00, E8, CA, 33, 01, 00, E8, 1D, 32, 01, 00, E8, 30, 28, 01, 00, E8, A6, 3C, 00, 00, E8, 4F, 3B, 00, 00, E8, 0A, 34, 00, 00, E8, A5, 32, 00, 00, E8, 7E, 30, 00, 00...
 
[+]

Entropy:
7.1219

Packer / compiler:
PKLITE32, 0x1.1

Code size:
93.5 KB (95,744 bytes)

The file AKLT.exe has been seen being distributed by the following URL.

Remove AKLT.exe - Powered by Reason Core Security