Should I block it?
90% of PCs block this file from running.
Possible reason:
Multiple malware detections
Additional versions
(Note, the developer publishes each variation of this file with the same version, but the hashes are unique.)
unikeynt.exe
MD5: | e2878cc39db71606f2f77186a0fd16de |
SHA1: | 01caeb20b5b39f14ecd9fd9486d6ae70e188a877 |
SHA256: | 59d4e7d2160a63714a5a9dfe201b7eb4bda81cc13db3c7678e5e58661e1704c8 |
Warning 8 antivirus scanners has detected malware.
Overview
unikeynt.exe is malware that executes as a process with the local user's privileges. It is set to be run when the PC boots and the user logs into Windows (added to the Run registry key for the current user). It is installed with a couple of know programs including UniKey 4.0 NT published by Pham Kim Long and UniKey 4.0 RC2 (build 1101) published by Pham Kim Long.
Details
File name: | unikeynt.exe |
Typical file path: | C:\tap nham\unikeynt.exe |
Size: | 212 KB (217,088 bytes) |
Build date: | 4/19/2006 6:55 AM |
Digital DNA |
PE subsystem: | Windows GUI |
File packed: | No |
.NET CLR: | No |
More details
Programs
The following programs will install this file
Behaviors
Startup files (user) run
Runs under the registry key 'HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
- 'UniKey' → C:\Unikey\UniKeyNT.exe
Malware detections
Based on 40+ industry antivirus scanners, 8 of them detected the following malware.
Antivirus engine | Engine version | Detection |
Agnitum |
5.5.1.3 |
Trojan.MalwareS!Ovhfg3NDZKA |
Bkav Security |
1.3.0.4246 |
HW32.Laneul.rmiw |
Commtouch |
5.4.1.7 |
W32/Risk.VVQL-9005 |
F-Prot |
v6.4.7.1.166 |
W32/MalwareS.IAM |
Jiangmin |
16.0.100 |
Trojan/Generic.bbnnv |
K7 AntiVirus |
9.172.9720 |
Riskware |
Norman |
7.02.06 |
Suspicious_Gen2.NMQZL |
VIPRE Antivirus |
21924 |
Trojan.Win32.Generic!BT |
Resource utilization
(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
CPU |
Total CPU: | 0.00034528% | |
Kernel CPU: | 0.00034528% | |
Kernel CPU time: | 390 ms/min | |
CPU cycles: | 10,504/sec | |
Memory |
Private memory: | 1.44 MB | |
Private (maximum): | 4.02 MB | |
Private (minimum): | 692 KB | |
Non-paged memory: | 1.44 MB | |
Virtual memory: | 55.58 MB | |
Virtual memory (peak): | 55.58 MB | |
Working set: | 792 KB | |
Working set (peak): | 4.02 MB | |
Page faults: | 1,440/min | |
I/O |
I/O read transfer: | 241 Bytes/sec | |
I/O read operations: | 1/sec | |
I/O other transfer: | 4 Bytes/sec | |
I/O other operations: | 1/sec | |
Resource allocations |
Threads: | 1 | |
Handles: | 52 | |
GUI GDI count: | 22 | |
GUI GDI peak: | 25 | |
GUI USER count: | 13 | |
GUI USER peak: | 13 | |
Process properties
Distribution by Windows OS
OS version | distribution |
Windows 7 Ultimate |
50.00% |
|
Windows 8 |
28.57% |
|
Microsoft Windows XP |
14.29% |
|
Windows 8 Pro |
7.14% |
|
Distribution by country
Vietnam installs about 100.00% of unikeynt.exe.
Distribution by PC manufacturer
PC Manufacturer | distribution |
Acer |
25.00% |
|
Toshiba |
25.00% |
|
Intel |
25.00% |
|
Hewlett-Packard |
12.50% |
|
ASUS |
12.50% |
|