keygen.exe

The executable keygen.exe has been detected as malware by 24 anti-virus scanners. Accoriding to the detections, this has been classified as a kyelogger which is capable of recoring a user's keystrokes.
MD5:
961777868c3906c8fb6230dbf49e4d68

SHA-1:
1a94decb904ad4d51a3e59ae57805c0184dd3e1e

SHA-256:
df5924a58cb1e03e7473ac1e5f8db55b645cca3f59a898fd0152886d10d44706

Scanner detections:
24 / 68

Status:
Malware

Analysis date:
4/25/2024 5:22:56 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Kazy.380414
826

AhnLab V3 Security
Win32/MalPackedB.suspicious
2014.11.01

Avira AntiVirus
TR/Crypt.XPACK.Gen
7.11.30.172

AVG
Win32/Heur
2014.0.4189

Bitdefender
Gen:Variant.Kazy.380414
1.0.20.1525

Bkav FE
HW32.Packed
1.3.0.6185

Clam AntiVirus
Win.Trojan.Agent-280279
0.98/21411

Comodo Security
TrojWare.Win32.Spy.KeyLogger.~P
19960

Emsisoft Anti-Malware
Gen:Variant.Kazy.380414
14.11.01

F-Prot
W32/Fujack.U
4.6.5.141

F-Secure
Gen:Variant.Kazy.380414
11.2014-01-11_7

G Data
Gen:Variant.Kazy.380414
14.11.24

IKARUS anti.virus
Trojan.Boxed
t3scan.1.8.3.0

Malwarebytes
Trojan.Agent
v2014.11.01.02

McAfee
HTool-Keygen.a
5600.6960

MicroWorld eScan
Gen:Variant.Kazy.380414
15.0.0.915

Norman
Fujack.T
11.20141101

nProtect
Trojan/W32.Agent.141247
14.10.31.01

Sophos
Mal/EncPk-AIB
4.98

SUPERAntiSpyware
Trojan.Agent/Gen-Keygen
10265

Trend Micro House Call
HV_FUJACK_CA225359.TOMC
7.2.305

VIPRE Antivirus
Threat.4101679
34232

ViRobot
Trojan.Win32.PSWDelf.229690
2011.4.7.4223

Zillya! Antivirus
Trojan.Genome.Win32.158394
2.0.0.1973

File size:
137.9 KB (141,247 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\adobe photoshop cs6 keygen\keygen.exe

File PE Metadata
Compilation timestamp:
1/24/2044 2:48:32 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.12

CTPH (ssdeep):
3072:vpO5IKhuftlielelwqSiNby98cF/8wSN7Aa37D73x55W:hsfELBmwqhbY3BSRlrlW

Entry address:
0x1000

Entry point:
57, C7, C7, 72, AF, B4, DF, 8D, 3D, 5F, BA, 58, 1A, FF, CF, 0F, AC, F7, F2, 0F, BD, FE, F7, C7, 5C, DC, 30, 27, 0F, BA, F7, 33, 0F, BB, F7, 0F, CF, BF, 64, A9, 09, DB, 85, F6, 81, DF, AC, 19, 46, 48, F7, DF, 0F, A3, F7, C7, C7, 41, BC, 79, A0, 85, F7, D1, CF, 0F, B3, F7, 0F, AF, FE, C7, C7, 10, 6E, 5F, 55, 81, C7, B1, C9, 4B, 85, 85, F7, F3, 0F, BA, F7, 92, C7, C7, 58, 57, 03, 7B, 8B, FE, 64, 0F, BB, F7, F3, F7, C6, D9, 4C, D2, 3E, D1, FF, 09, F7, FF, C7, 87, FF, 0F, AC, F7, 1A, F2, 87, FF, 0F, AF, FE, 8D...
 
[+]

Entropy:
7.9143  (probably packed)

Remove keygen.exe - Powered by Reason Core Security