Intel Common User Interface by Intel Corporation (Signed)

Remove HKCMD.exe
Warning 7 antivirus scanners has detected malware in various versions of HKCMD.exe.


hkcmd.exe has 323 known versions, the most recent one is hkcmd.exe is run as a standard windows process with the logged in user's account privileges. During installation, a run registry key for all users is added that will cause the program to run each time any user logs on to Windows. The average file size is about 312.74 KB. It is an authenticode code-signed executable issued to Intel Corporation by the certification authority VeriSign. The programs Internet Download Manager, Intel(R) Graphics Media Accelerator Driver and Intel_Chipset_Win8x64 have been observed as installing specific variations of hkcmd.exe. During the process's lifecycle, the typical CPU resource utilization is about 0.0020% including both foreground and background operations, the average private memory consumption is about 2.29 MB with the maximum memory reaching around 5.84 MB. Addionally, typically read and write I/O disk operations is about 1.79 KB per minute for reads and 14 Bytes per minute for writes.

What is hkcmd.exe?

The Common User Interface is part of Intels Common User Interface for chipsets with integrated graphics controllers which allows user to change different driver properties through Windows User Interface. Quick access to the control panel via a System Tray icon.


File name:hkcmd.exe
Publisher:Intel Corporation
Product name:Intel(R) Common User Interface
Description:hkcmd Module
Typical file path:C:\Windows\System32\hkcmd.exe
Issued to:Intel Corporation
Authority (CA):VeriSign
Effective date:Thursday, March 20, 2008
Expiration date:Saturday, April 23, 2011

Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'igfxhkcmd' → C:\WINDOWS\system32\hkcmd.exe
  • 'HotKeysCmds' → C:\WINDOWS\system32\hkcmd.exe

MalwareMalware detections

Based on 40+ industry antivirus scanners, 7 of them detected the following malware.
Antivirus engineEngine versionDetectionFile version
Bkav Security W32.HfsAuto.65f5
ByteHero Trojan.Malware.Win32.xPack.m
NANO AntiVirus Trojan.Win32.IframeExec.brouwu
The Hacker None Trojan/Menti.mxuv
The Hacker None Trojan/Menti.mxvf
Trend Micro HouseCall 9.700.0.1001 TROJ_GEN.F47V0824
Vba32 AntiVirus Trojan.Menti 3,0,0,1918

