KeepCop
KeepCop Description
KeepCop (or KeepCop) is a misleading security application that is spread through sneaky Trojans. KeepCop may also be downloaded directly from its website by unsuspecting users. Once KeepCop has entered a victim’s system, a fake system scan is conducted which will report that the system is severely infected with several parasites. Following the frequent display of irritating pop-ups and warning messages, the victim will be advised to purchase the full version of KeepCop. The scan report displayed by KeepCop is fabricated; KeepCop is not capable of detecting or removing any malicious parasites.
Type: Rogue AntiSpyware Programs
How Can You Detect KeepCop?
KeepCop Technical Report
As new KeepCop details are reported by our customers and findings from our Threat Research Center, we will update this section.
The following KeepCop files with its MD5s were created in the system:
| File Name | File Size | MD5 |
|---|
| setup[1].exe | 373760 | a1fa58520ca969bcc71a638509c49fc8 |
| setup[1].exe | 1751869 | b486306d8552ae7278a1890f01a4f2d2 |
| KeepCop.exe | 1636864 | 797095b893b636194544f06e3a2e1a3f |
KeepCop has typically the following processes in memory:
- KeepCop.exe
KeepCop created the following directories, files, paths:
- %ProgramFiles%\KeepCop Software\KeepCop
- %AllUsersProfile%\Start Menu\Programs\KeepCop
KeepCop creates the following registry entries:
- Microsoft\Windows\CurrentVersion\Uninstall\KeepCop
- Microsoft\Windows\CurrentVersion\Run\KeepCop
Important Article Disclaimer

KeepCop 










