Cybert Sitter

Description: Keylogger
Risk Level: Low
Date of First Occurence: Monday, April 21, 2008
Software Developer: (unknown)
Brief Info: Keyloggers invisibly monitor and record all of your computer activity. This information is then automatically emailed to an anonymous user.
Removal: This threat can be removed using "Spyware Terminator"

SCAN & REMOVE NOW »

Geographical Distribution of Threat "Cybert Sitter"

Threat Info

View All

Detected Items

  1. Detected Files: %SYSDIR%\wfileu.drv MD5: 4A12F2188CA8C8D8949756FE8170A4CA Size:5880 MD5: C8AEEE7C3A832268B22C85499D59149C Size:5880 MD5: 2207FA52423E72C443291B36EC6C66A3 Size:5880 MD5: 1DCD79AEF2AE16CD4334460A5415E6D4 Size:5692 MD5: 318281FD064047FEEAE215B93F853CCB Size:5692 MD5: 31662A749B4C3239204E3F2666FE73A1 Size:5160 MD5: 8F7346CBDAFB494D846E4F8DA3D0015F Size:5692 MD5: 1ADD831EF7F66E260DAC15155DD9B94E Size:5880 MD5: 4E78F9F9C18D12558269C1C4F23BE821 Size:5880 MD5: 578093055EA461E861EB2AA75FD692B7 Size:5692 MD5: 0A275269878DB99DE6DABF154DA19D89 Size:5692 MD5: 015185592C0A34062461F3D396D0E5F4 Size:5692 and more.... %SYSDIR%\viofil.dll MD5: 6C010FD52FDE45EB7F491F3D15F7D618 Size:3818 MD5: 81D15381DF85723F73C6CF44A5666D67 Size:4084 MD5: CE7507B210682371A734EAFE2F7939B8 Size:4084 MD5: B33B0D28A2BBFE8519F7335C51DD8DB4 Size:4162 %SYSDIR%\vgamfil.dll MD5: 80A386060D06FD28BE830767A2134116 Size:4826 MD5: CE2D70AA0FC9D139787DEE4C503F3A27 Size:5782 MD5: A3DBB09E1226A02504EC9FE1710D6DEF Size:5782 %SYSDIR%\srchout.dll MD5: E7AD720FB8ABE74582F47BEA7E9425EC Size:258 MD5: 6D98450AD194128D6FC776CA29DE9158 Size:256 %SYSDIR%\srchin.dll MD5: DADDE7D502CD206E92B4A8501D16D6D0 Size:3444 MD5: 29BE563F158404E8C674C9AF6ECC1C0A Size:3398 %SYSDIR%\snetfil.dll MD5: 7EEDFEE3C234966B6EBEF8AC297CA33A Size:652 MD5: 09CC779E69AC2EC923774E38B392019C Size:628 MD5: B61B4AB87543EC4DBE3045AA7061768F Size:592 MD5: 138D57BB74C2BF40874AC701AEAF6038 Size:482 MD5: 1F442DDB091F7EBEB69CD923B09C4551 Size:540 %SYSDIR%\picsfil.dll MD5: CDC952675214E545A1F1CD44DD6CF52A Size:306 %SYSDIR%\lgwfil.dll MD5: B283885E0640AE92D1B57ED56ABD6421 Size:3360 MD5: 3862B54714AB19385868874DC4987BE9 Size:3286 MD5: 2F0149C9B9B372C62E76A99192A3008E Size:2706 MD5: EC7AF5E481725E04AADEAE57382954E7 Size:2902 MD5: 4F5333EA5657A944B287D595F936CB71 Size:2782 %SYSDIR%\imgfil.dll MD5: D8EAC83A1AA770541AE4A0C5632225B1 Size:1100 MD5: DA836947B1124C6CEA72D03FC3DEE4D6 Size:496 MD5: 898D8EBD5D1F6E1D7CE36C3BEA67DBD9 Size:1018 MD5: ED0A6E71486DC1C2D40249B135F02736 Size:980 %SYSDIR%\iawfil.dll MD5: 26267CD9C6DE92D5ABF3CD907F44E0E2 Size:5180 MD5: 0E023ECF5087FBA2788C07268F53C837 Size:4572 MD5: F59347BBAB3D5AAE2C5834F659BA99FA Size:4392 MD5: 9C53425D2DD2FCF1CE014A982C894D00 Size:5142 %SYSDIR%\hatfil.dll MD5: 6DAF1F6749D1CB7CA3A4B2B464138CE6 Size:4442 MD5: 17D7F8E711D8E8E6B36CCA02FE748774 Size:4506 %SYSDIR%\gdwfil.dll MD5: E9EC9B32B5C69B5C004E670C460754DD Size:1352 MD5: B09E59D5433D20B78B152DEEE5645251 Size:1328 MD5: B903D35BA8433C365369029609C3A7D2 Size:1378 MD5: 9FAA2301F3D6F4619CCEE2641DC183BD Size:1482 MD5: 28E75493C4D6E14E6579CA093EA160FE Size:1482 MD5: C0450451DCA6891882E9A66D512F8D3C Size:1378 MD5: 87810BCE90A0796463D5541A75F2EEB3 Size:1352 MD5: D2516C6C39F6BE8B4E09F1FDCDB23FE7 Size:1482 MD5: 44E583830233317D9F6E5DE15B02886D Size:1352 MD5: 1D953913C88872E895636C464E915EE2 Size:1482 %SYSDIR%\gblfil.dll MD5: 95B048D76D9E0F91134A26C8B9D201A3 Size:13034 MD5: 202BA2DB3ABFEAD7734B15B09CAE20D2 Size:13036 MD5: DA83FA647A12FDDCD726FF5FCA14F3BC Size:13036 MD5: 5D5A0EDD1DCC868DBA86F051B3249030 Size:12726 MD5: 21EBE3A9F30542DFE3C79FD7845D430C Size:13070 MD5: 6030674AA9766D6C50C423C5179F265D Size:13036 %SYSDIR%\cultfil.dll MD5: F3A3A8A36D96E76200134E4DEC9F05D3 Size:1830 %SYSDIR%\chtfil.dll MD5: 423FD4AB1F3A161679F676C899F75457 Size:10862 MD5: 128DDB5AAA40704BA86E879C99BCB383 Size:10644 MD5: 6D328DCC0D3340E9AAC289296E3546FB Size:10834 MD5: BDB10B7AA03D8496E8984C9CE913E873 Size:10468 MD5: DCF4B5694151BC21BFFCA7352C709872 Size:10906 MD5: FC3BC0DC03DA3B67EF4053E13F2151B1 Size:10906 MD5: AA172C13B48B4B7DD4CDABA2069931B9 Size:10880 %SYSDIR%\adwfil.dll MD5: 8704E4F55331A6251833A69F548D350F Size:94868 MD5: B1DBD1647177A186200FE7166BF3F1D8 Size:94356 MD5: 79C4F935BED7253B155FF985FF15FC36 Size:92174 MD5: BFBB0ECC735A57CDDFC95375E1161168 Size:55542 MD5: 34D25081D794D85BDF1403F2C3B9D1AD Size:93526 MD5: FE8B26E853C67219663351C9F903640D Size:93260 MD5: DE4936AC012A592A2E2C055570022C77 Size:91404 MD5: 29815C95DAE769337CF0A941377C7AFF Size:91078 MD5: 285FFC6AE8B8E2A29084037A31867CBE Size:85268 MD5: 94C7C23419C8236B517F6A3B778A080A Size:88076 MD5: 7D3BF323966BBA52F3B515BD33508AE2 Size:49362 MD5: F8F5A4F4E8B96217ABD2483C4DC78069 Size:81136 and more.... %SYSDIR%\mslspc.exe MD5: E73598EB990D76A4311A3BBF04838753 Size:121856 MD5: 223E9F22A6483FA3E61B7BF400002F2B Size:32768 %WINDIR%\Cyb2k.exe MD5: 10467891701F50A8FC391664DFB6E1F9 Size:3340800 MD5: CDFA0AC237741C086A0FB64C786E723F Size:3106816 MD5: 2E455A2336E4E9217DBD541D4F952745 Size:3163648 MD5: 3FB8C1AA4506FCE080897830953AA24A Size:3082752 MD5: 8A0C02CF5070D154B2D94D10BBE7C59C Size:2800128 MD5: 326EBC3F7FB3872B05608476B424B4E6 Size:3103232 MD5: D242D213C1C01B6931FEA412EA703507 Size:3342336 MD5: 12AEE7108166B5C29EF08DDB5FD52AD5 Size:2672128 MD5: 380CF7C7337C7D08EC6576BCB8E1EBF9 Size:2631168 MD5: 121AA49E7CC9FB4DFA02F99D49EA6491 Size:2649088 %SYSDIR%\lspcs.dll MD5: 11C0CFC6E0A251F7EED8AD89F8CB384A Size:159744 %WINDIR%\cyb2k.exe MD5: 290A568F3714F513436AD110390E5730 Size:2875392 %SYSDIR%\wfileu.drv MD5: 993B73663A64B3BC3879241A6607BC7F Size:5692 MD5: 28688C3AF0F4AFC1CCE5B36FD1379BFF Size:5338 MD5: 1C999E0CB6D651842734CE520B599FC4 Size:5160 MD5: 0E25D75CE8294D3BF37F19CF205C0FB3 Size:5490 MD5: 9E48731560AC0CB55879A5013A54FD59 Size:5692 MD5: 2415CACDC06EFEF1AC8DDB97DA24105F Size:5692 MD5: 095448D0457E3388D68CE2AB80517615 Size:5490 MD5: 32E4AD2E75D076FDBB1DEA1B40F989E7 Size:5692 MD5: 39D0B1EAEDC55A9B384FC9F20CA77AD2 Size:5006 MD5: D6F4E1FD7EAC347019243B47087642A0 Size:5692 MD5: F934F941AFD3BA8D69EC7F7EF5A34BB0 Size:680 MD5: D7BA36CEBFE40D62BC85ACA29B5BA149 Size:680 and more.... %WINDIR%\CYB2K.EXE MD5: 20453B129D1862B58432364A6B43D077 Size:2634240 %SYSDIR%\wfileu.drv MD5: 9206FD249F2D76CA31D261C7D7EB7990 Size:5692 MD5: D628EA562E8E386D0F42B3225C0F9083 Size:5692 MD5: 87F0CA027F5E8BB833D93E4600432DF5 Size:5692 MD5: FD76D7A2B33A9ABE3083AA107919FBEC Size:5692 MD5: BE750A8E4BE0F0232C9BF6FFB6D8E182 Size:5490 MD5: 0C801A073ED11FE90EBB0EDAB782B646 Size:5692 MD5: 3A39D70AF8966E42767C542214365471 Size:5338 MD5: C4D3CB1B72D9764D1556A094BABC811C Size:5692 MD5: 4A648F8D8F144F491AF5F8A2C30A96B3 Size:5160 MD5: D1EF0BE478D04B881D5C60383B30FEE1 Size:5692 %SYSDIR%\adwfil.dll MD5: 094BD96AF185606FEA496F0BB5B9A93C Size:80390 MD5: 1C1C7D7D18DD81B80D7884E79D49E0F2 Size:73780
  2. Detected Files with variable Filenames:

Detecting items list:

  1. Files by Name %WINDIR%\Cyb2k.exe %SYSDIR%\mslspc.exe %SYSDIR%\adwfil.dll %SYSDIR%\chtfil.dll %SYSDIR%\cultfil.dll %SYSDIR%\gblfil.dll %SYSDIR%\gdwfil.dll %SYSDIR%\hatfil.dll %SYSDIR%\iawfil.dll %SYSDIR%\imgfil.dll %SYSDIR%\lgwfil.dll %SYSDIR%\picsfil.dll %SYSDIR%\snetfil.dll %SYSDIR%\srchin.dll %SYSDIR%\srchout.dll %SYSDIR%\vgamfil.dll %SYSDIR%\viofil.dll %SYSDIR%\lspcs.dll %SYSDIR%\wfileu.drv
  2. Registry Values HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ValueName=C2K

« Go to Software Database