We received the file SIGNKEY.EXE and detected that SIGNKEY.EXE is not good.
SIGNKEY.EXE is Adware. You should remove the file SIGNKEY.EXE.
Kill the process SIGNKEY.EXE and remove SIGNKEY.EXE from Windows.
Malware Analysis of SIGNKEY.EXE
Full path on a computer: %Local Appdata%\signkey\signkey.exe
Detected by UnHackMe:
SIGNKEY.EXE
Default location: %Local Appdata%\signkey\signkey.exe
Removal Results: Success
Number of reboot: 1
SIGNKEY.EXE is known as:
Adware.KrAdword.238160, TrojanDownloader.Kraddare.g, Adware.KorAd, SecurityRisk.Downldr, Malware, ADW_KRADDARE, Trojan.Agentb.jcn, Adware.Kraddare.2UwbX1zmpsc, Trojan.Agentb (A), Trojan.DownLoader8.24309, TR.Dldr.Kraddare.G.8, TrojanDownloader.Kraddare.G, Adware.SignKey.238160, PUP.SignKey, a variant of Win32.Adware.Kraddare.GJ, Trojan-Downloader.Kraddare
SIGNKEY.EXE hash:
- MD5: f22a90b326da52d08fd5b246627d1475
The file is used for downloading and installing other malware, Trojans, viruses by the commands received from the Command Center.
How to quickly detect SIGNKEY.EXE presence?
Registry:
- HKCU\Software\Microsoft\Windows\CurrentVersion\Run\signkey: “%Local Appdata%\signkey\signkey.exe”
Folders:
- %Local Appdata%\signkey
Files:
- %Local Appdata%\signkey\ie_signkey.exe
- %Local Appdata%\signkey\signkey.exe
- %Local Appdata%\signkey\skun.exe