GoldenKeylogger

Description: Spyware
Risk Level: High
Date of First Occurence: Thursday, April 24, 2008
Software Developer: (unknown)
Brief Info: Golden Keylogger invisibly monitors and records all of your computer activity. This information is then automatically emailed to an anonymous user.
Removal: This threat can be removed using "Spyware Terminator"

SCAN & REMOVE NOW »

Geographical Distribution of Threat "GoldenKeylogger"

Threat Info

View All

Detected Items

  1. Detected Files: %SYSDIR%\WSG32\Uninstall.exe MD5: 1A90EF067814F246F1A75332A423FA63 Size:36127 MD5: 74FDEA2385075E3EC9D03A79E63EC825 Size:36723 %SYSDIR%\WSG32\procshow.dll MD5: A84E5A837C4961FC986B8F51F1C04210 Size:74752 MD5: 1B3F0DF9324D89A9BE2E24F1856FB0E8 Size:74752 %SYSDIR%\WSG32\procshow32.dll MD5: 60E53352C94D2C3968EED0BAE7950F4D Size:53248 %SYSDIR%\WSG32\rView.exe MD5: 6FDE14396DE9952872EC821C547A3CEA Size:617984 MD5: A6C76A729FD86A0FEE4584D5FFD96690 Size:617472 %SYSDIR%\WSG32\wsg32.exe MD5: 8064D48E427ED8096F8AE8747A6F8265 Size:1266176
  2. Detected Files with variable Filenames: MD5: 918B1EB5D774729A82F450316A13B68F Size: 788219 %SYSDIR%\WSG32\wsg32.exe %USERDOCUMENTS%\Alnan Dosyalarm\WSG32\wsg32.exe %SYSDIR%\WSG32\wsg32.exe.ren MD5: 2D54D30A08D0E560453F778F3B5DA6EF Size: 1040077 %DESKTOP%\Hepsi\GoldenKeylogger-setup.exe %SystemDiskRoot%\RECYCLER\S-1-5-21-2025429265-1123561945-839522115-1004\Dc4\GoldenKeylogger-setup.exe %SystemDiskRoot%\RECYCLER\S-1-5-21-2025429265-1123561945-839522115-1004\Dc2.exe d:\programlar setup\golden-keylogger\GoldenKeylogger-setup.exe

Detecting items list:

  1. Files by Name %sysdir%\system.dag %sysdir%\WSG32\wsg32.exe %sysdir%\WSG32\rView.exe %sysdir%\WSG32\procshow32.dll %sysdir%\WSG32\procshow.dll %START_PROGRAMS%\Golden Keylogger\Golden Keylogger.lnk %START_PROGRAMS%\Golden Keylogger\Uninstall.lnk %START_PROGRAMS%\Golden Keylogger\Links\Download lastest version.lnk %START_PROGRAMS%\Golden Keylogger\Links\Mail to support.lnk %START_PROGRAMS%\Golden Keylogger\Links\Program's home page.lnk
  2. Files by MD5 MD5: 2D54D30A08D0E560453F778F3B5DA6EF Size: 1040077 MD5: EE8F67C58A9827B39E5A572787122BAB Size: 1199616 MD5: 918B1EB5D774729A82F450316A13B68F Size: 788219
  3. Files by Directories %START_PROGRAMS%\Golden Keylogger %sysdir%\WSG32
  4. Registry Keys HKLM\software\KMiNT21\GoldenKeylogger HKLM\software\Microsoft\Windows\CurrentVersion\Uninstall\GoldenKeylogger
  5. Registry Values HKLM\Software\Microsoft\Windows\CurrentVersion\Run ValueName=wsg32 Value=%sysdir%\WSG32\wsg32.exe

« Go to Software Database