keygen.exe

The application keygen.exe has been detected as a potentially unwanted program by 26 anti-malware scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from dla.uloz.to and multiple other hosts.
MD5:
3208ee1f6fdaeb33f0f976efa2ab0e3d

SHA-1:
8dd21cb0d115e8c43cf7711fd2265e0c21ec7063

SHA-256:
83829c6463ba7e856195ff3592151ea51be3aadaac0685cd25c22faf51b940e9

Scanner detections:
26 / 68

Status:
Potentially unwanted

Analysis date:
8/4/2025 7:09:03 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Generic.9377125
1104

Agnitum Outpost
Packed/PECompact
7.1.1

Avira AntiVirus
SPR/Tool.Keygen.612
7.11.127.54

AVG
HackTool
2015.0.3582

Bitdefender
Trojan.Generic.9377125
1.0.20.130

Bkav FE
W32.Clod9ab.Trojan
1.3.0.4923

Comodo Security
UnclassifiedMalware
17672

Emsisoft Anti-Malware
Riskware.Win32.Keygen
11.5.0.6191

ESET NOD32
Win32/Keygen.HU potentially unsafe application
6.3.12010.0

Fortinet FortiGate
W32/SPNR.08K811!tr
1/26/2014

F-Prot
W32/Keygen
4.6.5.141

G Data
Trojan.Generic.9377125
14.1.24

IKARUS anti.virus
not-a-virus.Keygen.Sony
t3scan.2.2.29

Malwarebytes
RiskWare.Tool.HCK
v2014.01.26.04

McAfee
Artemis!3208EE1F6FDA
5600.7238

Microsoft Security Essentials
1.233.3654.0

MicroWorld eScan
Trojan.Generic.9377125
15.0.0.78

Norman
Suspicious_Gen2.UZPHE
11.20140126

Panda Antivirus
Generic Malware
14.01.26.04

Quick Heal
HackTool.Keygen (Not a Virus)
1.14.12.00

Reason Heuristics
Unnamed.Threat.43
14.3.6.0

Sophos
PUA 'DI Keygen' (of type Hacktool)
5.23

Trend Micro House Call
TROJ_SPNR.08JR12
7.2.26

Trend Micro
TROJ_SPNR.08JR12
10.465.26

VIPRE Antivirus
Trojan.Win32.Generic.pak!cobra
25786

ViRobot
JS.A.Iframe.2000896
2011.4.7.4223

File size:
1.9 MB (2,000,896 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\sony\vegas pro 11.0\keygen.exe

File PE Metadata
Compilation timestamp:
10/30/2011 5:11:57 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:38fRBdXR8HBipDUoPujZV2azEFW40lfmnfemwnhnd+cP7:mBwUVoV2E+W40l+nfvad+cP7

Entry address:
0x6F798

Entry point:
B8, 28, 5D, 66, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, B1, BE, 33, 1D, 2C, 05, F3, 37, FB, 1F, 63, 90, 97, E3, 33, 28, ED, 21, 2E, DB, A3, E6, B6, 74, 7D, B3, 93, BD, 7A, 81, F4, 0D, A6, B2, 8E, A9, 16, BF, 7F, D7, C0, F4, 2E, 1D, D3, 95, 2F, 4B, 93, 69, 8C, E5, CD, 1A, 58, 8D, 88, 38, 6A, B9, 91, BB, 4D, 69, E5, 4C, 7A, 4B, 5D, 86, C4, 40, E2, DC, DC, 04, 8C, 21, 0B, 55, 4C, 42, 13, 5E, 49, 55, 64, BD, F3, 83, 41, 62, 46...
 
[+]

Entropy:
7.9994

Packer / compiler:
PECompact v2

Code size:
438.5 KB (449,024 bytes)

The file keygen.exe has been seen being distributed by the following 24 URLs.

http://dla.uloz.to/Ps;Hs;fid=24948958;cid=2060643066;rid=47688024;up=0;uip=188.92.8.174;tm=1478971954;ut=f;aff=uloz.to;did=uloz-to;He;ch=f9f8873b4092ed6703c8508b8b32b0a4;Pe/.../sony-vegas-11-keygen-exe?bD&c=2060643066&De

http://www36.zippyshare.com/d/72314730/.../Keygen.exe

http://dla.uloz.to/Ps;Hs;fid=24948958;cid=750742828;rid=1730700597;up=0;uip=85.70.31.66;tm=1470136225;ut=f;aff=uloz.to;did=uloz-to;He;ch=98ba247092f093b59e0a27e18cb07787;Pe/.../sony-vegas-11-keygen-exe?bD&c=750742828&De

https://mega.nz/temporary/.../idVCHYLS

https://mega.nz/persistent/.../RUwwkASD

https://mega.nz/temporary/.../ZIJxHA6L

https://mega.co.nz/temporary/.../st1SwIoS

https://docviewer.yandex.com.tr/source?id=16yie-b0srow5kmbs8hxo35sekrw0370t3vv5joyywk35e1qxjoz5giqelsyamfwi7ei777qsrcy7oci97gt6irh6nssuepos55vzlgf6&archive-path=//Keygen.exe&ts=1553cf3b7bd&token=bzcWxS0isvh91exrcT7BDg==&name=Digital Insanity.rar

https://mega.nz/persistent/.../ZIJxHA6L

http://s8349.minhateca.com.br/File.aspx?e=AsVdiBQFeZVsbxo-gQijN9wyum2lkEhO8N0J5fD2xzAsKgolZYnzrSTgjV9cgkFvhLCaLhnlcFLzWBNOJktlvT8SwjJJN8u8a4tTHpgR7lhbkPoxDKfJRh35EN5rPsE6Iux6vfNl9aUc5MFMi6wSuQ&pv=2

http://www36.zippyshare.com/d/72314730/.../Keygen.exe

http://www36.zippyshare.com/d/72314730/.../Keygen.exe

https://mega.nz/temporary/.../RUwwkASD

https://downloader.disk.yandex.ua/disk/aceacdb2d2a4cac48fe20992b68bf0232f735f305959f4d118399c4e466af417/58306974/.../x-msdownload&fsize=2000896&hid=9b88f7430672a2c2ace3333777518857&media_type=executable&tknv=v2

https://docviewer.yandex.com/source?id=3g4vjn-ccka9aa0gpqhkjdicvh36u1zbimhw4gwiqc64an3sn0pk9r0ybavymcpg88f0n1hj65zgh3c8dnj563r9c878zqvx79uqt6xay2&archive-path=//Sony vegas 11 FULL TUTOSWEB88/.../ToINmm5EtC27srQ==&name=Sony 11 Tutosweb88.rar

about:internet

temp:Keygen.exe

Remove keygen.exe - Powered by Reason Core Security