StealthKeylog
|
Description:
|
Keylogger
|
|
Risk Level:
|
Critical
|
|
Date of First Occurence:
|
Tuesday, May 13, 2008
|
|
Software Developer:
|
(unknown)
|
|
Brief Info:
|
Keyloggers invisibly monitor and record all of your computer activity. This information is then automatically emailed to an anonymous user.
|
|
Removal:
|
This threat can be removed using "Spyware
Terminator"
|
SUPPRIMER SPYWARE »
Geographical Distribution of Threat "StealthKeylog"
Threat Info
View All
Detected Items
- Detected Files:
%ALLUSERS_APPDATA%\SystemKey\xcacls.exe
MD5: 78FD41A1E1D2CF1C7657CF80BDDE1164 Size:45056
%ALLUSERS_APPDATA%\SystemKey\SystemKeyUninstaller.exe
MD5: 3156035BA6602542505980E9BE06D349 Size:614474
%ALLUSERS_APPDATA%\SystemKey\SystemKey.exe
MD5: 8CFB9C24AE0A454AB77656E0A8A05E86 Size:3248128
%ALLUSERS_APPDATA%\SystemKey\SysSMTPSender.exe
MD5: 85C2E8CF7939DA933D8816DABE5087C9 Size:69632
%ALLUSERS_APPDATA%\SystemKey\SysScrCap.exe
MD5: 098B8D082735EA8EAEF3170A6AB9D1BA Size:180224
%WINDIR%\ASK\ScrCap.exe
MD5: 22BFC859AA81FB30E8E5702A4EB6705B Size:180224
%WINDIR%\ASK\ASK.exe
MD5: 973D457983FEA36ED3BFE1747149D6C2 Size:290816
%WINDIR%\ASK\ASK.dll
MD5: C577A68A3F15DC7A7DC2B8A83584355B Size:311296
MD5: AB0EED299D41F50E942B31104DE33278 Size:299008
- Detected Files with variable Filenames:
MD5: 43B98579BAB5F36810FC880110C4018A Size: 339968
%ALLUSERS_APPDATA%\SystemKey\SystemKey.dll
%ALLUSERS_APPDATA%\SystemKey\SystemKey.dll.ren
Detecting items list:
- Files by Directories
%Windir%\ASK
%ALLUSERS_APPDATA%\SystemKey
- Registry Keys
HKLM\SOFTWARE\ASK
HKLM\SOFTWARE\SystemKey
- Registry Values
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ValueName=ASK
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ValueName=SystemKey
«
Go to Software Database