keygen.exe

The executable keygen.exe has been detected as malware by 28 anti-virus scanners.
MD5:
93de526dec2752838471163966bca658

SHA-1:
3b1da5985871cf2b625bc89ac5552c30002c1878

SHA-256:
7ed88c47d3288c38cca5fb4d6cacff82b73796f622a2397312c78803d2d83b01

Scanner detections:
28 / 68

Status:
Malware

Analysis date:
4/20/2024 2:57:07 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Application.Keygen.CR
1018

Agnitum Outpost
Trojan.SdBot
7.1.1

AhnLab V3 Security
Win32/Palevo.worm.82432.E
14.04.23

Avira AntiVirus
TR/Agent.82432.B
7.11.140.76

AVG
IRC/BackDoor.SdBot4
2015.0.3496

Baidu Antivirus
Trojan.Win32.Generik.KJGQVJY
4.0.3.14423

Bitdefender
Application.Keygen.CR
1.0.20.565

Bkav FE
W32.Clod434.Trojan
1.3.0.4959

Comodo Security
TrojWare.Win32.Banbra.sl
18018

ESET NOD32
Generik.KJGQVJY (variant)
8.9613

Fortinet FortiGate
Cryp_PESpin
4/23/2014

F-Prot
W32/Heuristic-210
v6.4.7.1.166

F-Secure
Application.Keygen.CR
11.2014-23-04_4

G Data
Application.Keygen.CR
14.4.24

IKARUS anti.virus
Packer.PESpin
t3scan.2.2.29

K7 AntiVirus
Trojan
13.176.11595

McAfee
Generic.dx!93DE526DEC27
5600.7152

MicroWorld eScan
Application.Keygen.CR
15.0.0.339

NANO AntiVirus
Trojan.Win32.Agent2.oufxe
0.28.0.58720

Norman
Packed_PeSpin.B
11.20140423

nProtect
Trojan/W32.Agent.82432.O
14.03.30.01

Panda Antivirus
Bck/DService.TK
14.04.23.04

Quick Heal
(Suspicious) - DNAScan
4.14.12.00

Rising Antivirus
PE:Trojan.Win32.Crypt.agl!1075334316
23.00.65.14421

Sophos
Mal/Packer
4.98

Trend Micro House Call
CRCK_KEYGEN
7.2.113

Trend Micro
CRCK_KEYGEN
10.465.23

VIPRE Antivirus
Trojan.Win32.Packer.PESpinv1.32
27864

File size:
80.5 KB (82,432 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\isilo\isilo 6.05 _ chương trình xem file định dạng pdb\keygen.exe

File PE Metadata
OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

CTPH (ssdeep):
1536:N079nNaDpFciekVO0d5n4AWnWIPR7hrJS16HC:N49nQDpFHdcnjPJSsi

Entry address:
0x1B0D4

Entry point:
EB, 01, 68, 60, E8, 00, 00, 00, 00, 8B, 1C, 24, 83, C3, 12, 81, 2B, E8, B1, 06, 00, FE, 4B, FD, 82, 2C, 24, 17, E6, 46, 00, 0B, E4, 74, 9E, 75, 01, C7, 81, 73, 04, D7, 7A, F7, 2F, 81, 73, 19, 77, 00, 43, B7, F6, C3, 6B, B7, 00, 00, F9, FF, E3, C9, C2, 08, 00, A3, 68, 72, 01, FF, 5D, 33, C9, 41, E2, 17, EB, 07, EA, EB, 01, EB, EB, 0D, FF, E8, 01, 00, 00, 00, EA, 5A, 83, EA, 0B, FF, E2, EB, 04, 9A, EB, 04, 00, EB, FB, FF, E8, 02, 00, 00, 00, A0, 00, 5A, 81, EA, 45, B1, 01, 00, 83, EA, FE, 89, 95, A9, 57, 40...
 
[+]

Packer / compiler:
PE Spin v0.4x

Code size:
26.5 KB (27,136 bytes)

Remove keygen.exe - Powered by Reason Core Security