1
I have a program called Teraterm that have some little applications like keycode.exe which it is supposed to configure the keyboard to my liking but Microsoft Security Essentials detect it as a Trojan.
It's really a Trojan or not?
1
I have a program called Teraterm that have some little applications like keycode.exe which it is supposed to configure the keyboard to my liking but Microsoft Security Essentials detect it as a Trojan.
It's really a Trojan or not?
2
Likewise, I witnessed Windows Defender report a trojan in TeraTerm 4.91 available here. I believe that download of TeraTerm is safe and that the trojan detected was a false positive based on the following:
It looks like Windows Defender (and likely Microsoft Security Essentials as well) doesn’t show a virus with version 4.90, if you would like to use that instead.
Without knowing which Teraterm the OP downloaded and from exactly where we cannot tell whether it is safe or not. There are many cracked versions of popular programs that contain malware.... – DavidPostill – 2016-07-18T09:27:30.380
I should have been more explicit about which Teraterm we are talking about. I updated the answer. – Nate – 2016-07-18T14:06:28.203
FYI, the download of TeraTerm that I refer to in my answer and the one in the first bullet point have a matching MD5 filehash (ca9e6fa2136ed23a2af331a6b0c5a6d3). – Nate – 2016-07-18T14:12:45.880
Your answer may be more complete, but we still don't know where the OP got his copy from ... – DavidPostill – 2016-07-18T14:24:09.950
True. Since we both saw a Trojan by reported by Microsoft Security software, my best guess was that the OP had the version I had, from the same source. My hope is that my answer will help the OP and others. – Nate – 2016-07-18T14:39:06.380
-1
Tera Term (tera-term.exe or Tera Term Pro.exe) is a exe file associated with guide to hacking software security 2002 by Silver Star Publishing. It can be classified as a potentially unwanted program that utilizes the install Core download manager bundled with additional offers for various ad-supported extensions, toolbars and utilities. Here is a heardProtect online-scan report of TeraTerm.exe: http://www.herdprotect.com/tera-term.exe-5334b77726ba7f837f22a40060731da5b72f60d2.aspx
The application is Teraterm is a communication tool, and since Windows 7 have no longer Hyperterminal I use Teraterm instead. – E_Blue – 2016-05-12T15:41:33.407
Although you may be correct, can you offer some source for your answer? – CharlieRB – 2016-05-12T16:23:43.167
@CharlieRB, Few years back, I installed this TeraTerm.exe on my Windows 7 desktop and I experienced large number of annoying pop-up ads on my Windows 7 machine. I added a link to HerdProtect scan result. It says "It uses the InstallCore download manager to install additional potentially unwanted software which may include extensions such as DealPly and various toolbars." – rose_04 – 2016-05-14T09:30:47.743
I think you’re confusing something. Tera Term is Open Source Software and not related to UpdateStar GmbH in any way.
– Daniel B – 2016-05-14T09:49:41.380@DanielB, if the OP was talking about this Open Source software then I'm entirely wrong. – rose_04 – 2016-05-17T14:27:49.787
This question shows lack of research effort. What have you done so far? – CharlieRB – 2016-05-12T13:06:34.390
upload the file to https://www.virustotal.com/
– TheStarvingGeek – 2016-05-12T13:36:00.480@CharlieRB I google it and give me 4 results that are no related to this. https://www.google.com.ar/search?q=teraterm+keycode+trojan&ie=utf-8&oe=utf-8&gws_rd=cr&ei=_ZozV6AKg7DABILeh-gO#q=teraterm+keycode+%2Btrojan
– E_Blue – 2016-05-12T13:55:35.243Where did you obtain Tera Term? Where is this
keycode.exe
located? What exactly does Security Essentials report? – Daniel B – 2016-05-14T09:51:06.077@DanielB I don't remember, because I have 2 desktop PC and one notebook and I download the program in different moments for each one. Only on my PC at work is marked as Trojan:Win32/Varpes.M!cl anyway; I do not remember downloading the program from the OSDN site. – E_Blue – 2016-05-20T20:03:08.800