Files signed by One Up Ltd

One Up Ltd

One Up Ltd is a digital signature publisher name observed in ThreatInfo records. This page groups 14 signed files and shows whether those files are currently classified as clean, undefined, or detected.

A digital signature can help identify a publisher, but it does not always prove that a file is safe. Certificates may be abused, stolen, expired, or attached to modified installers, so the file hash and detection status should be checked together.

Detection signal

Detected files use this signature name

At least one file signed as One Up Ltd is detected by GridinSoft. Review the hashes below and scan the device if one of these files is present.

Download GridinSoft scanner
keyfinder.exe 4187dfaf99e89cc211eb3f2bf6af81ca PUP.MagicalJellyBean
RecoverKeys.exe 84104b4f62f9f58be6f2b279fe211ae8 Under review
WiFiPasswordRevealer.EXE 15707e261bb5aab2da796de2c95e675d Under review
RecoverKeysDemo-x64.exe ae466a87533717ac5eef7ba8638e1818 Under review
unins000.exe 538079eda9b75d1527783995bd5421bd Under review
RecoverKeysInstaller.exe 14d68897c90cc7a664444ab814514e9f PUP.MagicalJellyBean
unins000.exe 9646dae0bb34c4f47bfd973bcef2e003 PUP.MagicalJellyBean
PasswdFinderInstaller.exe 0c9db8081f48ae47690c0f9ee702770a PUP.MagicalJellyBean
PasswdFinder.exe 4cfc6304c83ae5001cb85b083c678c3f Under review
unins000.exe bafb2c100c14dc5861c49aaaa02ae561 PUP.MagicalJellyBean
unins000.exe 2cd98880a00b07767aba76e78a28e92a PUP.MagicalJellyBean
RecoverKeys-Installer-x64.exe 2377c5981be282fa7bf1c740be3159ab PUP.MagicalJellyBean
unins000.exe f0d2df5d7932be28eddcc3012df104e1 PUP.MagicalJellyBean
RecoverKeys.exe 60a8e6188ccdf75dc5526ac177e1088b PUP.MagicalJellyBean

Certificate review summary

Do not trust this signature name by itself

ThreatInfo found detected files associated with One Up Ltd. A matching signature name should be checked together with the file hash, detection verdict, and source path.

Recommended checks

  • Open any matching file report and compare the MD5 hash.
  • Confirm the file path and download source before trusting the binary.
  • Run a GridinSoft scan if a detected file from this list is present.