PCDetective

Description: Keylogger
Risk Level: Critical
Date of First Occurence: Friday, January 16, 2009
Software Developer: (unknown)
Brief Info: Keyloggers invisibly monitor and record all of your computer activity. This information is then automatically emailed to an anonymous user.
Removal: This threat can be removed using "Spyware Terminator"

SUPPRIMER SPYWARE »

Geographical Distribution of Threat "PCDetective"

Threat Info

View All

Detected Items

  1. Detected Files: %SYSDIR%\pcdkbh.dll MD5: 3AD41E98427D710114A1B5576C198354 Size:24576
  2. Detected Files with variable Filenames:

Detecting items list:

  1. Files by Name %DESKTOP%\The PC Detective SE Setup.lnk %sysdir%\pcdkbh.dll %COMMONFILES%\The PC Detective SE\ems.exe %COMMONFILES%\The PC Detective SE\tpcl.exe %COMMONFILES%\The PC Detective SE\tpclSetup.exe %COMMONFILES%\The PC Detective SE\updates.exe %COMMONFILES%\The PC Detective SE\NotAvail.jpg %COMMONFILES%\Microsoft Shared\DAO\System\pcd\SVCHOST.exe %COMMONFILES%\Microsoft Shared\DAO\System\pcd\SVCHOSTE.exe %COMMONFILES%\Microsoft Shared\DAO\System\pcd\BarredApps.BFW %COMMONFILES%\Microsoft Shared\DAO\System\pcd\BarredSites.BFW %COMMONFILES%\Microsoft Shared\DAO\System\pcd\CUser.dat %COMMONFILES%\Microsoft Shared\DAO\System\pcd\Users.dat %COMMONFILES%\Microsoft Shared\DAO\System\pcd\DeskTop.SDS %COMMONFILES%\Microsoft Shared\DAO\System\pcd\DeskTop.SFG %COMMONFILES%\Microsoft Shared\DAO\System\pcd\updates.exe %COMMONFILES%\Microsoft Shared\DAO\System\pcd\ems.exe %COMMONFILES%\Microsoft Shared\DAO\System\pcd\EMS.sfg
  2. Files by Directories %COMMONFILES%\The PC Detective SE %COMMONFILES%\Microsoft Shared\DAO\System\pcd
  3. Registry Keys HKLM\SOFTWARE\SCES Software\The PC Detective SE HKCU\Software\VB and VBA Program Settings\The PC Detective SE
  4. Registry Values HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders ValueName=%ProgramFiles\Common Files%\The PC Detective SE HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ValueName=SVCHOSTS

« Go to Software Database