Home Malware Programs Rogue Anti-Spyware Programs BlockKeeper

BlockKeeper

Posted: November 3, 2009

Threat Metric

Ranking: 16,662
Threat Level: 10/10
Infected PCs: 248
First Seen: December 1, 2009
Last Seen: August 13, 2023
OS(es) Affected: Windows

ScreenshotBlockKeeper is a new rogue anti-spyware from the WiniGuard group of malicious rogues. This parasite is another clone of the BlockScanner and BlockWatcher family of rogue anti-spyware programs. BlockKeeper is no different than any of it's predecessors as it uses downloader trojans and drive-by downloads to infiltrate the system and flood the user with popups and false system notifications. These pop-ups falsely inform the user of an infection or multiple infections present on the system. Like other rogues, BlockKeeper backs up these fake claims with system scans which mark harmless files as threats and urges the user to download their licensed version. BlockKeeper is a serous security threat and should be removed immediately when detected.

ScreenshotScreenshotScreenshot

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



setup[1].exe File name: setup[1].exe
Size: 916.81 KB (916814 bytes)
MD5: dee858994fc487965c8379d61fa31081
Detection count: 32
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
BlockKeeper.exe File name: BlockKeeper.exe
Size: 830.97 KB (830976 bytes)
MD5: 0302559c77e4a27e4b7e3dbb4449a1cc
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009

Registry Modifications

The following newly produced Registry Values are:

HKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}BlockKeeper

Additional Information

The following directories were created:
%ProgramFiles%\BlockKeeper Software\BlockKeeper
The following cookies were detected:
blockkeeper
Loading...