TrueActive Monitor
|
Description:
|
Keylogger
|
|
Risk Level:
|
Low
|
|
Date of First Occurence:
|
Friday, May 09, 2008
|
|
Software Developer:
|
(unknown)
|
|
Brief Info:
|
Keyloggers invisibly monitor and record all of your computer activity. This information is then automatically emailed to an anonymous user.
|
|
Removal:
|
This threat can be removed using "Spyware
Terminator"
|
SCAN & REMOVE NOW »
Geographical Distribution of Threat "TrueActive Monitor"
Threat Info
View All
Detected Items
- Detected Files:
%SYSDIR%\winlogin.exe
MD5: EE3A1F8F7C3E52F8D84686577C4F4436 Size:2023424
MD5: F81F24512339C88F8C55B273795111D5 Size:103936
MD5: 45E459CAF251836DFEF57D0B95A62E70 Size:40960
MD5: 50CDF20C3E82CF29E2AF26E41E9641E6 Size:93184
MD5: 819AF9941024035F7ACA2EBA8D38DF43 Size:24064
MD5: BDD5AF8148B94D13B4851330079CDA98 Size:97792
MD5: E0A00E8EA8BEE506FB5FA8363249121C Size:4096
MD5: 2E9735B987E7CD3D4DDF35BFB0014747 Size:2283520
MD5: 76DA0512F1684AEE1388D7057E289FA0 Size:1681366
MD5: 0A4FF77651618FCC4747475517A68F4F Size:1911057
MD5: E8117820DD8C7644DBFF22C04E3B90CA Size:40960
MD5: 157CA5FC4E8EFE8EA72ADCFA7200EB83 Size:107520
and more....
%SYSDIR%\winlogin.exe
MD5: 749A210789153D6980AA9B02FE99AB32 Size:949645
MD5: 2D8E755C25E600590EE975C30DE4B9FB Size:1840128
MD5: D0CC65714986FFCE61A25F4AD2987362 Size:744
MD5: 1852DCE25046C4251E50416EADAE087B Size:506639
MD5: 02E3F99FDFF63C8AAA73EE2F62D29228 Size:160256
MD5: 36B7BD0058C0B306DC297AA72FD457A9 Size:372736
%SYSDIR%\_.exe
MD5: F3AE63A1BC8461811A915B348F385AA0 Size:316436
MD5: 6D0960162D727C144EBDFA8AABBC0038 Size:24576
%SYSDIR%\Pt2.exe
MD5: 676AE3F9153085DA3C8F14F4449BB418 Size:24576
- Detected Files with variable Filenames:
Detecting items list:
- Files by Name
%SYSDIR%\_.exe
%SYSDIR%\Pt2.exe
%SYSDIR%\regadd.exe
%SYSDIR%\winlogin.exe
%SystemDiskRoot%\Documents and Settings\All Users\Desktop\TrueActive Reports.lnk
%SystemDiskRoot%\Documents and Settings\All Users\Desktop\TrueActive Setup.lnk
%ALLUSERS_APPDATA%\TAM\0001.SYS
%ALLUSERS_APPDATA%\TAM\0003.SYS
%ALLUSERS_APPDATA%\TAM\0004.SYS
%ALLUSERS_APPDATA%\TAM\0005.SYS
%ALLUSERS_APPDATA%\TAM\GL8412.DLL
%ALLUSERS_APPDATA%\TAM\ir.dat
%ALLUSERS_APPDATA%\TAM\ree.exe
%ALLUSERS_APPDATA%\TAM\regadd.sys
%ALLUSERS_APPDATA%\TAM\sem.dll
%ALLUSERS_APPDATA%\TAM\tamset.sys
%ALLUSERS_APPDATA%\TAM\TAMTest.exe
%ALLUSERS_APPDATA%\TAM\TAMupd.exe
%ALLUSERS_APPDATA%\TAM\tamx1.dll
%ALLUSERS_APPDATA%\TAM\tamx2.dll
%ALLUSERS_APPDATA%\TAM\tamx3.dll
%ALLUSERS_APPDATA%\TAM\updsem.exe
%ALLUSERS_APPDATA%\TAM\winsdoc.dll
- Files by Directories
%ALLUSERS_APPDATA%\TAM
«
Go to Software Database