Home Malware Programs Trojans HackTool:Win32/Keygen

HackTool:Win32/Keygen

Posted: September 30, 2010

Threat Metric

Ranking: 6,319
Threat Level: 8/10
Infected PCs: 239,740
First Seen: December 1, 2010
Last Seen: October 10, 2023
OS(es) Affected: Windows

HackTool:Win32/Keygen is a malicious tool that generates keys (special codes) for illegally-obtained versions of various software products. HackTool:Win32/Keygen may initially seem beneficial but it does pose a threat to PC security as it may cause system malfunctions.

HackTool:Win32/Keygen may put a computer user at risk of using software that is illegally registered. Because the HackTool:Win32/Keygen infection could generate the code to register warez or software that was never purchased, the programs may run without essential updates causing further software issues. Failing to eliminate HackTool:Win32/Keygen may put the administrator or registered computer user at risk for performing illegal activities.

Aliases

possible-Threat.Hacktool.KMS [Ikarus]Win32.Trojan.Agent.ET9SBN [GData]Keygen (PUA) [Sophos]Win.Trojan.Keygen-60 [ClamAV]Generic PUP [McAfee]HackTool.Keygen.r3 (Not a Virus) [CAT-QuickHeal]not-a-virus.Keygen.FineReader [Ikarus]Riskware/Sim [Fortinet]Generic PUA KP [Sophos]SPR/Tool.Keygen.277 [AntiVir]W32/MalwareF.FGAJ [F-Prot]Artemis!A0E4F5BCD5AF [McAfee]Generic17.BYN [AVG]W32/KeyGen.M!tr [Fortinet]W32/MalwareS.BJLQ [F-Prot]
More aliases (1281)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



D:\Soft\Office 2010\Activador\Activador Office 2010.exe File name: Activador Office 2010.exe
Size: 1.07 MB (1070607 bytes)
MD5: a0e4f5bcd5afc8b891cafcaccec37364
Detection count: 4,417
File type: Executable File
Mime Type: unknown/exe
Path: D:\Soft\Office 2010\Activador\Activador Office 2010.exe
Group: Malware file
Last Updated: October 11, 2023
D:\System Volume Information\_restore{4963FEC3-F6D4-426D-8C3B-1710FF92E2C8}\RP102\A0052950.exe File name: A0052950.exe
Size: 289.28 KB (289280 bytes)
MD5: 3e9b7b76b154342811a8dcc2b507c1ce
Detection count: 3,534
File type: Executable File
Mime Type: unknown/exe
Path: D:\System Volume Information\_restore{4963FEC3-F6D4-426D-8C3B-1710FF92E2C8}\RP102\A0052950.exe
Group: Malware file
Last Updated: October 14, 2023
D:\Conteúdo do outro HD\00\Corel Draw X5 PTB BR + Keygen + Instrucoes\Corel Draw X5 BR\Keygen.exe File name: Keygen.exe
Size: 16.38 KB (16384 bytes)
MD5: 9b578fd26c3fbe4b720c9ab2e3556924
Detection count: 3,401
File type: Executable File
Mime Type: unknown/exe
Path: D:\Conteúdo do outro HD\00\Corel Draw X5 PTB BR + Keygen + Instrucoes\Corel Draw X5 BR\Keygen.exe
Group: Malware file
Last Updated: September 14, 2023
%SystemDrive%\Folder\inst\Microsoft Office 2010 CZ Professional\Aktivace\Office 2010 Toolkit 2.0 beta 3\Office 2010 Toolkit.exe File name: Office 2010 Toolkit.exe
Size: 13.89 MB (13895168 bytes)
MD5: 801d7f317b7a067295bf4f8ea9dbf75f
Detection count: 3,033
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Folder\inst\Microsoft Office 2010 CZ Professional\Aktivace\Office 2010 Toolkit 2.0 beta 3
Group: Malware file
Last Updated: October 16, 2023
F:\Users\<username>\Downloads\cs2\keygen.exe File name: keygen.exe
Size: 59.9 KB (59904 bytes)
MD5: b824c5d7bea0d803440c19744c6543ef
Detection count: 2,298
File type: Executable File
Mime Type: unknown/exe
Path: F:\Users\<username>\Downloads\cs2\keygen.exe
Group: Malware file
Last Updated: June 29, 2023
%SYSTEMDRIVE%\Users\<username>\AppData\Local\Temp\Rar$EXb4612.10313\PUPC[Medicina]\Embrace_Keygen\keygen.exe File name: keygen.exe
Size: 325.12 KB (325120 bytes)
MD5: 5619be55d01c1e196dcd1547f4fda891
Detection count: 1,827
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Local\Temp\Rar$EXb4612.10313\PUPC[Medicina]\Embrace_Keygen\keygen.exe
Group: Malware file
Last Updated: June 23, 2023
F:\Progr\P Solo XP\NOD32 Anti-Virus v.2.51.26 Multil+Crack NOD Fix v.2.1\NOD32.FiX.v2.1-nsane.exe File name: NOD32.FiX.v2.1-nsane.exe
Size: 303.12 KB (303123 bytes)
MD5: 871ba3e3ed099c4a168358f21930b8e7
Detection count: 1,253
File type: Executable File
Mime Type: unknown/exe
Path: F:\Progr\P Solo XP\NOD32 Anti-Virus v.2.51.26 Multil+Crack NOD Fix v.2.1\NOD32.FiX.v2.1-nsane.exe
Group: Malware file
Last Updated: August 13, 2023
E:\GAMES\Angry Birds Space PC\Patch.exe File name: Patch.exe
Size: 207.87 KB (207872 bytes)
MD5: 023ca444e2fc4d22069de82cc529aaf9
Detection count: 1,145
File type: Executable File
Mime Type: unknown/exe
Path: E:\GAMES\Angry Birds Space PC\Patch.exe
Group: Malware file
Last Updated: July 15, 2023
G:\zeljko\Nikola\Downloads\Nero 10.0 + Serials en Keygen - DivXNL-Team\Nero Multimedia Suite 10 - Keygen.exe File name: Nero Multimedia Suite 10 - Keygen.exe
Size: 655.87 KB (655872 bytes)
MD5: 2ea777f1974dbfb8ec2036503b464cc8
Detection count: 752
File type: Executable File
Mime Type: unknown/exe
Path: G:\zeljko\Nikola\Downloads\Nero 10.0 + Serials en Keygen - DivXNL-Team\Nero Multimedia Suite 10 - Keygen.exe
Group: Malware file
Last Updated: June 23, 2023
J:\1_GRAFICOS\GRAFICOS_II\6_PHOTOSHOP\Photoshop_cs5\adobemasterkeygen55.exe File name: adobemasterkeygen55.exe
Size: 78.84 KB (78848 bytes)
MD5: df9f6bfca92822cc878eac8faeecdf50
Detection count: 632
File type: Executable File
Mime Type: unknown/exe
Path: J:\1_GRAFICOS\GRAFICOS_II\6_PHOTOSHOP\Photoshop_cs5\adobemasterkeygen55.exe
Group: Malware file
Last Updated: July 25, 2023
C:\Users\<username>\Downloads\SUPERAntiSpyware_Pro_Rus(parol_123)\keygen.exe File name: keygen.exe
Size: 293.88 KB (293888 bytes)
MD5: d347c02630e9a3033de092e1303b7c84
Detection count: 457
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\Downloads\SUPERAntiSpyware_Pro_Rus(parol_123)\keygen.exe
Group: Malware file
Last Updated: September 16, 2023
C:\Users\<username>\Documents\usbvieja\TNod-1.4.0.15-setup.exe File name: TNod-1.4.0.15-setup.exe
Size: 756.18 KB (756180 bytes)
MD5: 8733c89f832c5e011934b72685a34153
Detection count: 393
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\Documents\usbvieja\TNod-1.4.0.15-setup.exe
Group: Malware file
Last Updated: February 2, 2023
E:\MY CONTENT\PrΎvate\4.Backup\LAPTOP BACKUP\usb backup\ΧΡHΣΗΜΑ ΕΡΓΑΛΕΙΑ\RevoUninPro 2.5.5+Keygen aditamayahya.blogspot.com\Keygen\keygen.exe File name: keygen.exe
Size: 51.2 KB (51200 bytes)
MD5: 1079fb1e72cf72361eedf520c641f013
Detection count: 363
File type: Executable File
Mime Type: unknown/exe
Path: E:\MY CONTENT\PrΎvate\4.Backup\LAPTOP BACKUP\usb backup\ΧΡHΣΗΜΑ ΕΡΓΑΛΕΙΑ\RevoUninPro 2.5.5+Keygen aditamayahya.blogspot.com\Keygen\keygen.exe
Group: Malware file
Last Updated: December 10, 2022
C:\Arquivos de programas\RAR Password Cracker\rpc.exe File name: rpc.exe
Size: 307.2 KB (307200 bytes)
MD5: 1fa14cabb1829252a5ec20ced72aa4e7
Detection count: 316
File type: Executable File
Mime Type: unknown/exe
Path: C:\Arquivos de programas\RAR Password Cracker\rpc.exe
Group: Malware file
Last Updated: December 17, 2022
I:\Programas\Descargas\Descargador de seriales\CrackDown.exe File name: CrackDown.exe
Size: 399.87 KB (399872 bytes)
MD5: c214925a6e327165f985aaeef29bd7f3
Detection count: 304
File type: Executable File
Mime Type: unknown/exe
Path: I:\Programas\Descargas\Descargador de seriales\CrackDown.exe
Group: Malware file
Last Updated: October 8, 2023
%PROGRAMFILES%\mIIIw-unlocked.version\iw5sp.exe File name: iw5sp.exe
Size: 2.52 MB (2529280 bytes)
MD5: 86ff1d397d80f435586a54273d152c19
Detection count: 201
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\mIIIw-unlocked.version\iw5sp.exe
Group: Malware file
Last Updated: May 1, 2023
C:\Archivos de programa\TNod User & Password Finder\TNODUP.exe File name: TNODUP.exe
Size: 1.81 MB (1811968 bytes)
MD5: e268c7c2716e33f91dd988e38d2973fd
Detection count: 197
File type: Executable File
Mime Type: unknown/exe
Path: C:\Archivos de programa\TNod User & Password Finder\TNODUP.exe
Group: Malware file
Last Updated: February 2, 2023
%PROGRAMFILES%\UlisesSoft\nodlogin.exe File name: nodlogin.exe
Size: 564.5 KB (564506 bytes)
MD5: 8813010d9d8fbe43f3595a2e788199fe
Detection count: 180
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\UlisesSoft\nodlogin.exe
Group: Malware file
Last Updated: April 25, 2023
C:\New Folder\Activation Codes\Activation Codes File name: Activation Codes
Size: 1.33 MB (1334982 bytes)
MD5: 9c48ef2da58a1ac5cbe5ef89d3e52fe1
Detection count: 119
Path: C:\New Folder\Activation Codes\Activation Codes
Group: Malware file
Last Updated: August 23, 2023
C:\Users\<username>\Desktop\PEN\ADOBE\QuarkXPress.v9.1\QuarkXPress.v9.1.Multilingual.Incl.KeymakeR.mundomanuales.com\Keygen.exe File name: Keygen.exe
Size: 63.48 KB (63488 bytes)
MD5: d28f38b2b14bf9f3843dd4738c25238e
Detection count: 44
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\Desktop\PEN\ADOBE\QuarkXPress.v9.1\QuarkXPress.v9.1.Multilingual.Incl.KeymakeR.mundomanuales.com\Keygen.exe
Group: Malware file
Last Updated: January 13, 2023
C:\Users\<username>\Documents\Computer\Office 2010 (New) Professional Plus 32bit and 64bit with Volume Edition Activator_timesurfer\Office Volume Activation Script for Z.W.T Keygen.exe File name: Office Volume Activation Script for Z.W.T Keygen.exe
Size: 413.18 KB (413184 bytes)
MD5: c484209576c5699b3ab245edc316fc24
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\Documents\Computer\Office 2010 (New) Professional Plus 32bit and 64bit with Volume Edition Activator_timesurfer\Office Volume Activation Script for Z.W.T Keygen.exe
Group: Malware file
Last Updated: February 14, 2022
C:\Program Files (x86)\Microsoft Office\ConfigurationSet\KMService.exe File name: KMService.exe
Size: 124.92 KB (124928 bytes)
MD5: 307e4f755bcef63b7ac69bbe8722bd20
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: C:\Program Files (x86)\Microsoft Office\ConfigurationSet\KMService.exe
Group: Malware file
Last Updated: March 15, 2021
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\FLOATING_Pa.exe File name: FLOATING_Pa.exe
Size: 1.09 MB (1092096 bytes)
MD5: 3398109272dd58774d49827923e0eba8
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: March 7, 2013
OfficeResetAuto.exe File name: OfficeResetAuto.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Office activator.exe File name: Office activator.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
ashampkeygen.exe File name: ashampkeygen.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
fltlib.dll File name: fltlib.dll
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file

More files

2 Comments

  • iso says:

    Someone necessarily lend a hand to make seriously posts I'd state. That is the very first time I frequented your web page and so far? I surprised with the research you made to make this particular publish amazing. Excellent job!

  • Paxer0o says:

    Going by 1st impressions you have a very useful and well up to date site. VERY handy for someone who is not a complete novice and wants to learn about security threats and how they work, the different types and the sneaky ways they actually get onto your machine in the 1st place!
    I realise your main is to get people to buy this software (which is as you say very good and well worth the small investment, the fact you can ring them if the software can't do something-unlikely-and they will sort it out for you is a unique feature as far as I know. Helplines are ok but for them to state they WILL fix the problem is a big big bonus) but the amount of information you have on your pages is a brilliant start on it's own for anyone who doesn't just want to block them-but to UNDERSTAND them and how they work, get installed, what to watch for.
    Very good reading, I enjoyed the site very much.
    And yes-I will be using the software.:)

Loading...