How to remove keyfinder.exe
- File Details
- Overview
- Analysis
keyfinder.exe
The module keyfinder.exe has been detected as PUP.OpenCandy
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
fb2fe2279a27e5923639449e2efb89f9 |
| Size: |
792 KB |
| First Published: |
2026-01-27 23:01:18 (2 days ago) |
| Latest Published: |
2026-01-27 23:01:18 (2 days ago) |
| Status: |
PUP.OpenCandy (on last analysis) |
|
| Analysis Date: |
2026-01-27 23:01:18 (2 days ago) |
Overview
| Signed By: |
KeyFinder LTD |
| Status: |
Invalid (digital signature could be stolen or file could be patched) |
| %sysdrive%\_programme windows\systemtools\keyfinder |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x00094138 |
| Name |
Size of data |
MD5 |
| CODE |
603136 |
63a18aa9d65b4a3e6a9a2d192a8df525 |
| DATA |
8704 |
6fb1510e26c32d205c989f86515bd792 |
| BSS |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .idata |
10240 |
7d55b0dd734f2ac94038c7585148dea2 |
| .tls |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .rdata |
512 |
17cdf9ef11fde5aaf52d4f204fbada60 |
| .reloc |
40960 |
c57947ba9bebd7aa262c9167ba0fdf48 |
| .rsrc |
140800 |
d349ee695b8d31a12cbaee8ad35a8f50 |