Keyboard Monitor
|
Description:
|
Spyware
|
|
Risk Level:
|
Low
|
|
Date of First Occurence:
|
Monday, April 28, 2008
|
|
Software Developer:
|
(unknown)
|
|
Brief Info:
|
Spyware is computer software that is installed surreptitiously on a personal computer to intercept or take partial control over the user's interaction with the computer, without the user's informed consent.
|
|
Removal:
|
This threat can be removed using "Spyware
Terminator"
|
SUPPRIMER SPYWARE »
Geographical Distribution of Threat "Keyboard Monitor"
Threat Info
View All
Detected Items
- Detected Files:
%SystemDiskRoot%\PC\winsock.dll
MD5: 68485C5EF0E2EFCEBF21BBB1042B823B Size:2864
%SystemDiskRoot%\PC\MSWINSCK.OCX
MD5: 9484C04258830AA3C2F2A70EB041414C Size:108336
%SystemDiskRoot%\PC\msvbvm60.dll
MD5: F40C65CBA5AC3F6570D2C88AA2D3C68E Size:1388544
%SystemDiskRoot%\PC\main.exe
MD5: 44BFD55FBC25229EB5EE82BFBF1B0A2C Size:548864
%SystemDiskRoot%\PC\comdlg32.ocx
MD5: D76F0EAB36F83A31D411AEAF70DA7396 Size:140288
%WINDIR%\system\memaker2.exe
MD5: 6E8D3FC796D3A432F5085468A756AC2F Size:151552
- Detected Files with variable Filenames:
MD5: 5D22BC9031D84C236A51268B66B7FC54 Size: 1090048
%SystemDiskRoot%\Downloads\pcteste.exe
f:\Lixo Web e Outros\Pcspy 4.0\pc.exe
%DESKTOP%\pc.exe
%USERPROFILE%\Configuraes locais\Temporary Internet Files\Content.IE5\B393LBY7\pc[1].exe
%SystemDiskRoot%\Dlwd\pcKLG.exe
d:\programas\capiturar logs(haker)\trojam.exe
d:\PROGRAMAS\win98\pc.exe
%USERDOCUMENTS%\Alex\pc.exe
f:\Programas\pc.exe
e:\Programas Jose Luiz\Programas Diversos\Pcspy 4.0 - monitoramento de pc.exe
d:\Unidade G\unidade E\programas\Pcspy 4.0.exe
and next 1 variations.
MD5: C276859F892BB9CBA8A0C5CFF1151032 Size: 151552
%WINDIR%\system\memaker2.EXE
%SystemDiskRoot%\PC\memaker2.pcs
Detecting items list:
- Files by Name
%WINDIR%\system\memaker2.exe
%WINDIR%\winmem132.Dat
%SystemDiskRoot%\PC\comdlg32.ocx
%SystemDiskRoot%\PC\main.exe
%SystemDiskRoot%\PC\memaker2.pcs
%SystemDiskRoot%\PC\msvbvm60.dll
%SystemDiskRoot%\PC\MSWINSCK.OCX
%SystemDiskRoot%\PC\Readme.txt
%SystemDiskRoot%\PC\winsock.dll
- Files by MD5
MD5: 5D22BC9031D84C236A51268B66B7FC54 Size: 1090048
- Registry Keys
HKLM\SOFTWARE\pcs
- Registry Values
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ValueName=pst
«
Go to Software Database