Yahoo Message Archive Decoder

Description: Keylogger
Risk Level: Low
Date of First Occurence: Monday, April 28, 2008
Software Developer: (unknown)
Brief Info: Keyloggers invisibly monitor and record all of your computer activity. This information is then automatically emailed to an anonymous user.
Removal: This threat can be removed using "Spyware Terminator"

RIMUOVI SPYWARE »

Geographical Distribution of Threat "Yahoo Message Archive Decoder"

Threat Info

View All

Detected Items

  1. Detected Files: %PROGRAMFILES%\Yahoo Message Archive Decoder\uninst.exe MD5: 4E47BA459566F538ECB75966DC6E6D85 Size:38600 MD5: 924170A8775C4C68F440AB8AD3C9BD40 Size:38509 MD5: 3820E3975B220294611E1558D958B6E6 Size:35382 %PROGRAMFILES%\Yahoo Message Archive Decoder\pengataux.dll MD5: 9374BD00F77514E5FBD26B94FA9F32BB Size:8704 %PROGRAMFILES%\Yahoo Message Archive Decoder\yahoodecode.exe MD5: 1396E2C9636FC3DFDF14C1129BCF6CBD Size:272384 MD5: E8F250405A1ECFE1F758663C5E6B93C2 Size:257024 MD5: 27B63920E37B754AAB8A54737A816B64 Size:278528
  2. Detected Files with variable Filenames:

Detecting items list:

  1. Files by Name %PROGRAMFILES%\Yahoo Message Archive Decoder\pengataux.dll %PROGRAMFILES%\Yahoo Message Archive Decoder\uninst.exe %PROGRAMFILES%\Yahoo Message Archive Decoder\yahoodecode.exe %PROGRAMFILES%\Yahoo Message Archive Decoder\yahoopwd.exe %START_PROGRAMS%\Yahoo Message Archive Decoder\ Yahoo Message Archive Decoder.lnk %START_PROGRAMS%\Yahoo Message Archive Decoder\Purchase Yahoo Message Archive Decoder.lnk %START_PROGRAMS%\Yahoo Message Archive Decoder\What's new in this release.lnk %DESKTOP%\Yahoo Message Archive Decoder.lnk
  2. Files by Directories %PROGRAMFILES%\Yahoo Message Archive Decoder %START_PROGRAMS%\Yahoo Message Archive Decoder
  3. Registry Keys HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Settings\INA HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Yahoo Message Archive Decoder

« Go to Software Database