Skip to main content
Skip to main content
Microsoft Security Intelligence
Published Aug 24, 2010 | Updated Sep 15, 2017

Trojan:WinNT/Gekey.A!rootkit

Detected by Microsoft Defender Antivirus

Aliases: Dropper/Malware.53248.BQ (AhnLab) Trojan-Dropper.Win32.Agent.cbdb (Kaspersky) W32/Rootkit.AIWH.dropper (Norman) Trojan.DR.Agent.VZCP (VirusBuster) Trojan horse Rootkit-Agent.BN (AVG) TR/Crypt.XPACK.Gen (Avira) Dropped:Rootkit.Agent.AJBR (BitDefender) Dropper.Win32.Minit.w (Rising AV) Trojan.Win32.Generic!BT (Sunbelt Software)

Summary

Trojan:WinNT/Gekey.A!rootkit is the detection for the multi-partite malware that consists of the dropper, password stealing and rootkit trojan. It logs keystrokes and other user credentials, and sends this information to a remote attacker. Its malicious activity is hidden to the affected user.
To detect and remove this threat and other malicious software that may be installed in your computer, run a full-system scan with an up-to-date antivirus product such as the following:
 
 
For more information on antivirus software, see http://www.microsoft.com/windows/antivirus-partners/.
Follow us