We received the file CERTKEYSVC.EXE and detected that CERTKEYSVC.EXE is not good.
CERTKEYSVC.EXE is Adware. You should remove the file CERTKEYSVC.EXE.
Kill the process CERTKEYSVC.EXE and remove CERTKEYSVC.EXE from Windows.
Malware Analysis of CERTKEYSVC.EXE
Full path on a computer: %Appdata%\CertKey\CertKeySvc.exe
Detected by UnHackMe:
CERTKEYSVC.EXE
Default location: %Appdata%\CertKey\CertKeySvc.exe
Removal Results: Success
Number of reboot: 1
CERTKEYSVC.EXE is known as:
Adware.Agent1.28016
CERTKEYSVC.EXE hash:
- MD5: 4ece80d354e6df69d56fec38b7887392
How to quickly detect CERTKEYSVC.EXE presence?
Registry:
- HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Windows Explorer Plugin CertKey KB31113\UninstallString: “%Appdata%\CertKey\CertKey_uninst.exe”
- HKLM\System\CurrentControlSet\Services\CertKey\ImagePath: “%Appdata%\CertKey\CertKeySvc.exe ROLL12″
- HKLM\System\CurrentControlSet\Services\CertKey\DisplayName: “CertKey”
- HKLM\System\CurrentControlSet\Services\CertKey\ObjectName: “LocalSystem”
Folders:
- %Appdata%\CertKey
Files:
- %Appdata%\CertKey\CertKeySvc.exe
- %Appdata%\CertKey\CertKey_uninst.exe