GoldenKeylogger
|
Description:
|
Spyware
|
|
Risk Level:
|
High
|
|
Date of First Occurence:
|
Thursday, April 24, 2008
|
|
Software Developer:
|
(unknown)
|
|
Brief Info:
|
Golden Keylogger invisibly monitors and records all of your computer activity. This information is then automatically emailed to an anonymous user.
|
|
Removal:
|
This threat can be removed using "Spyware
Terminator"
|
SCAN & REMOVE NOW »
Geographical Distribution of Threat "GoldenKeylogger"
Threat Info
View All
Detected Items
- Detected Files:
%SYSDIR%\WSG32\Uninstall.exe
MD5: 1A90EF067814F246F1A75332A423FA63 Size:36127
MD5: 74FDEA2385075E3EC9D03A79E63EC825 Size:36723
%SYSDIR%\WSG32\procshow.dll
MD5: A84E5A837C4961FC986B8F51F1C04210 Size:74752
MD5: 1B3F0DF9324D89A9BE2E24F1856FB0E8 Size:74752
%SYSDIR%\WSG32\procshow32.dll
MD5: 60E53352C94D2C3968EED0BAE7950F4D Size:53248
%SYSDIR%\WSG32\rView.exe
MD5: 6FDE14396DE9952872EC821C547A3CEA Size:617984
MD5: A6C76A729FD86A0FEE4584D5FFD96690 Size:617472
%SYSDIR%\WSG32\wsg32.exe
MD5: 8064D48E427ED8096F8AE8747A6F8265 Size:1266176
- Detected Files with variable Filenames:
MD5: 918B1EB5D774729A82F450316A13B68F Size: 788219
%SYSDIR%\WSG32\wsg32.exe
%USERDOCUMENTS%\Alnan Dosyalarm\WSG32\wsg32.exe
%SYSDIR%\WSG32\wsg32.exe.ren
MD5: 2D54D30A08D0E560453F778F3B5DA6EF Size: 1040077
%DESKTOP%\Hepsi\GoldenKeylogger-setup.exe
%SystemDiskRoot%\RECYCLER\S-1-5-21-2025429265-1123561945-839522115-1004\Dc4\GoldenKeylogger-setup.exe
%SystemDiskRoot%\RECYCLER\S-1-5-21-2025429265-1123561945-839522115-1004\Dc2.exe
d:\programlar setup\golden-keylogger\GoldenKeylogger-setup.exe
Detecting items list:
- Files by Name
%sysdir%\system.dag
%sysdir%\WSG32\wsg32.exe
%sysdir%\WSG32\rView.exe
%sysdir%\WSG32\procshow32.dll
%sysdir%\WSG32\procshow.dll
%START_PROGRAMS%\Golden Keylogger\Golden Keylogger.lnk
%START_PROGRAMS%\Golden Keylogger\Uninstall.lnk
%START_PROGRAMS%\Golden Keylogger\Links\Download lastest version.lnk
%START_PROGRAMS%\Golden Keylogger\Links\Mail to support.lnk
%START_PROGRAMS%\Golden Keylogger\Links\Program's home page.lnk
- Files by MD5
MD5: 2D54D30A08D0E560453F778F3B5DA6EF Size: 1040077
MD5: EE8F67C58A9827B39E5A572787122BAB Size: 1199616
MD5: 918B1EB5D774729A82F450316A13B68F Size: 788219
- Files by Directories
%START_PROGRAMS%\Golden Keylogger
%sysdir%\WSG32
- Registry Keys
HKLM\software\KMiNT21\GoldenKeylogger
HKLM\software\Microsoft\Windows\CurrentVersion\Uninstall\GoldenKeylogger
- Registry Values
HKLM\Software\Microsoft\Windows\CurrentVersion\Run ValueName=wsg32 Value=%sysdir%\WSG32\wsg32.exe
«
Go to Software Database