Category Archives: KeyLogger

Unwanted/Win32.Keylogger.C105442

Unwanted/Win32.Keylogger.C105442 also known as Keylog-Perfect.dll, not-a-virus:Monitor.Win32.Perflogger.ca, MonitoringTool:Win32/PerfectKeylogger. Malware Analysis of Unwanted/Win32.Keylogger.C105442 – SO2GAMESHK.DLL Created files: %SYSDIR%\PK.BIN %SYSDIR%\SO2GAMES.EXE %SYSDIR%\SO2GAMESHK.DLL %SYSDIR%\SO2GAMESR.EXE %SYSDIR%\SO2GAMESWB.DLL Autostart registry keys: HKLM\SOFTWARE\CLASSES\CLSID\{1E1B2879-88FF-11D3-8D96-D7ACAC95951A}\INPROCSERVER32\: “%SYSDIR%\SO2GAMESWB.DLL” Detected by UnHackMe: SO2GAMESHK.DLL Default location: %SYSDIR%\SO2GAMESHK.DLL Dropper hash(md5): c4dc20b0f9a0abbec5535469deeba1d6 UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe is 100% CLEAN, which means…

Continue reading

Paq Keylog

Paq Keylog also known as Adware.Powerspy.1649837[h], Gen:Variant.Application.Emathi.1. Malware Analysis of Paq Keylog – STPE1D4_TMP.EXE Created files: %Program Files%\Power Spy\winps.exe %TEMP%\STPE1D4.TMP %TEMP%\STPE1D4_TMP.EXE %SYSDIR%\COMDLG32.OCX %SYSDIR%\EMX1.DAT Detected by UnHackMe: STPE1D4_TMP.EXE DEFAULT LOCATION: %TEMP%\STPE1D4_TMP.EXE Dropper hash(md5): a41c7ddd969d48fe24537cd0a5b2f790 UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe is 100% CLEAN, which means it does…

Continue reading

Trojan.KeyLogger.37529

Trojan.KeyLogger.37529 also known as not-a-virus:HEUR:Monitor.Win32.Ardamax.gen, SPR/Tool.Monitor.Gen, a variant of Win32/KeyLogger.Ardamax.NBP. Malware Analysis of Trojan.KeyLogger.37529 – DTL.EXE Created files: %COMMON APPDATA%\GTYFFP\DTL.01 %COMMON APPDATA%\GTYFFP\DTL.02 %COMMON APPDATA%\GTYFFP\DTL.EXE %SYSTEMDRIVE%\SAND-BOX\FOLDER.JPG %LOCAL APPDATA%\MICROSOFT\WINDOWS\HISTORY\HISTORY.IE5\MSHIST012016082820160829\CONTAINER.DAT Autostart registry keys: HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\DTL START: “%COMMON APPDATA%\GTYFFP\DTL.EXE” Detected by UnHackMe: DTL.EXE DEFAULT LOCATION: %COMMON APPDATA%\GTYFFP\DTL.EXE Dropper hash(md5): f41ed991a51182e82fc811201c42deee UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible…

Continue reading

Trojan.Keylogger.Win32.49067

Trojan.Keylogger.Win32.49067 also known as Ardamax, Gen:Variant.Mikey.38437, Trojan.Agent/Gen-KeyLogger. Malware Analysis of Trojan.Keylogger.Win32.49067 – DTL.EXE Created files: %COMMON APPDATA%\GTYFFP\DTL.01 %COMMON APPDATA%\GTYFFP\DTL.02 %COMMON APPDATA%\GTYFFP\DTL.EXE %SYSTEMDRIVE%\SAND-BOX\FOLDER.JPG %LOCAL APPDATA%\MICROSOFT\WINDOWS\HISTORY\HISTORY.IE5\MSHIST012016082820160829\CONTAINER.DAT Autostart registry keys: HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\DTL START: “%COMMON APPDATA%\GTYFFP\DTL.EXE” Detected by UnHackMe: DTL.EXE DEFAULT LOCATION: %COMMON APPDATA%\GTYFFP\DTL.EXE Dropper hash(md5): f41ed991a51182e82fc811201c42deee UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus…

Continue reading

Win32.Risk.Keylogger.Jmn

Win32.Risk.Keylogger.Jmn also known as Trojan/Win32.KeyLogger.N1974363687, W32/Ardamax.NBP!tr, Trojan.Keylogger.Win32.49067. Malware Analysis of Win32.Risk.Keylogger.Jmn – DTL.EXE Created files: %COMMON APPDATA%\GTYFFP\DTL.01 %COMMON APPDATA%\GTYFFP\DTL.02 %COMMON APPDATA%\GTYFFP\DTL.EXE %SYSTEMDRIVE%\SAND-BOX\FOLDER.JPG %LOCAL APPDATA%\MICROSOFT\WINDOWS\HISTORY\HISTORY.IE5\MSHIST012016082820160829\CONTAINER.DAT Autostart registry keys: HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\DTL START: “%COMMON APPDATA%\GTYFFP\DTL.EXE” Detected by UnHackMe: DTL.EXE DEFAULT LOCATION: %COMMON APPDATA%\GTYFFP\DTL.EXE Dropper hash(md5): f41ed991a51182e82fc811201c42deee UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus…

Continue reading

PUA.Keylogger.Ardamax

PUA.Keylogger.Ardamax also known as Gen:Variant.Mikey.38437, Monitor.W32.Ardamax!c, Gen:Variant.Mikey.38437 (B). Malware Analysis of PUA.Keylogger.Ardamax – DTL.EXE Created files: %COMMON APPDATA%\GTYFFP\DTL.01 %COMMON APPDATA%\GTYFFP\DTL.02 %COMMON APPDATA%\GTYFFP\DTL.EXE %SYSTEMDRIVE%\SAND-BOX\FOLDER.JPG %LOCAL APPDATA%\MICROSOFT\WINDOWS\HISTORY\HISTORY.IE5\MSHIST012016082820160829\CONTAINER.DAT Autostart registry keys: HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\DTL START: “%COMMON APPDATA%\GTYFFP\DTL.EXE” Detected by UnHackMe: DTL.EXE DEFAULT LOCATION: %COMMON APPDATA%\GTYFFP\DTL.EXE Dropper hash(md5): f41ed991a51182e82fc811201c42deee UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most…

Continue reading

Trojan/Win32.KeyLogger.N1974363687

Trojan/Win32.KeyLogger.N1974363687 also known as Win32/DH{gVEtggk?}, W32/Application.YVHH-1772. Malware Analysis of Trojan/Win32.KeyLogger.N1974363687 – DTL.EXE Created files: %COMMON APPDATA%\GTYFFP\DTL.01 %COMMON APPDATA%\GTYFFP\DTL.02 %COMMON APPDATA%\GTYFFP\DTL.EXE %SYSTEMDRIVE%\SAND-BOX\FOLDER.JPG %LOCAL APPDATA%\MICROSOFT\WINDOWS\HISTORY\HISTORY.IE5\MSHIST012016082820160829\CONTAINER.DAT Autostart registry keys: HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\DTL START: “%COMMON APPDATA%\GTYFFP\DTL.EXE” Detected by UnHackMe: DTL.EXE DEFAULT LOCATION: %COMMON APPDATA%\GTYFFP\DTL.EXE Dropper hash(md5): f41ed991a51182e82fc811201c42deee UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software.…

Continue reading

Trj/Keylog.JB

Trj/Keylog.JB also known as Backdoor.W32.VB.lgj3, Generic.Keylogger.F045BA0C, Generic VB.e. Malware Analysis of Trj/Keylog.JB – TYPE32.EXE Created files: %APPDATA%\MICROSOFT\PROTECT\S-1-5-21-2250177403-3231077850-1239169437-1002\69B259F9-E08E-4590-8442-343261DDC66C %SYSDIR%\MSWINSCK.OCX %SYSDIR%\OPTRVES.DLL %SYSDIR%\TYPE32.EXE Autostart registry keys: HKLM\SOFTWARE\CLASSES\CLSID\{248DD896-BB45-11CF-9ABC-0080C7E7B78D}\INPROCSERVER32\: “%SYSDIR%\MSWINSCK.OCX” HKLM\SOFTWARE\CLASSES\CLSID\{248DD897-BB45-11CF-9ABC-0080C7E7B78D}\INPROCSERVER32\: “%SYSDIR%\MSWINSCK.OCX” HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\GCSERV: “%SYSDIR%\TYPE32.EXE” Detected by UnHackMe: TYPE32.EXE Default location: %SYSDIR%\TYPE32.EXE Dropper hash(md5): 018b3c5f31905d7a6dadb36b5e7a7a56 UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe is…

Continue reading

Generic.Keylogger.F045BA0C

Generic.Keylogger.F045BA0C also known as W32/BackdoorP.BK, TR/Dropper.Gen, Trojan.Siggen3.3846. Malware Analysis of Generic.Keylogger.F045BA0C – TYPE32.EXE Created files: %APPDATA%\MICROSOFT\PROTECT\S-1-5-21-2250177403-3231077850-1239169437-1002\69B259F9-E08E-4590-8442-343261DDC66C %SYSDIR%\MSWINSCK.OCX %SYSDIR%\OPTRVES.DLL %SYSDIR%\TYPE32.EXE Autostart registry keys: HKLM\SOFTWARE\CLASSES\CLSID\{248DD896-BB45-11CF-9ABC-0080C7E7B78D}\INPROCSERVER32\: “%SYSDIR%\MSWINSCK.OCX” HKLM\SOFTWARE\CLASSES\CLSID\{248DD897-BB45-11CF-9ABC-0080C7E7B78D}\INPROCSERVER32\: “%SYSDIR%\MSWINSCK.OCX” HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\GCSERV: “%SYSDIR%\TYPE32.EXE” Detected by UnHackMe: TYPE32.EXE Default location: %SYSDIR%\TYPE32.EXE Dropper hash(md5): 018b3c5f31905d7a6dadb36b5e7a7a56 UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe is 100%…

Continue reading

Generic.Keylogger.F045BA0C (B)

Generic.Keylogger.F045BA0C (B) also known as TrojWare.Win32.Spy.VB.NBU, Backdoor/VB.f, Backdoor:Win32/VB.AVD. Malware Analysis of Generic.Keylogger.F045BA0C (B) – TYPE32.EXE Created files: %APPDATA%\MICROSOFT\PROTECT\S-1-5-21-2250177403-3231077850-1239169437-1002\69B259F9-E08E-4590-8442-343261DDC66C %SYSDIR%\MSWINSCK.OCX %SYSDIR%\OPTRVES.DLL %SYSDIR%\TYPE32.EXE Autostart registry keys: HKLM\SOFTWARE\CLASSES\CLSID\{248DD896-BB45-11CF-9ABC-0080C7E7B78D}\INPROCSERVER32\: “%SYSDIR%\MSWINSCK.OCX” HKLM\SOFTWARE\CLASSES\CLSID\{248DD897-BB45-11CF-9ABC-0080C7E7B78D}\INPROCSERVER32\: “%SYSDIR%\MSWINSCK.OCX” HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\GCSERV: “%SYSDIR%\TYPE32.EXE” Detected by UnHackMe: TYPE32.EXE Default location: %SYSDIR%\TYPE32.EXE Dropper hash(md5): 018b3c5f31905d7a6dadb36b5e7a7a56 UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe…

Continue reading

Keylog-Jingt.dll.gen

Keylog-Jingt.dll.gen also known as Win32/Spy.Delf.DV, Generic.Graybird.739870B3. Malware Analysis of Keylog-Jingt.dll.gen – QQMSGS.DLL Created files: %WINDIR%\TEMP\~DF502D493536CEBD79.TMP %WINDIR%\TEMP\~DFD1C77CD3DF553275.TMP %WINDIR%\QQMSGS.DLL %WINDIR%\QQMSGS.EXE %WINDIR%\QQMSGSHOOK.DLL Autostart registry keys: HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\NERWORK DDE IC\IMAGEPATH: “%WINDIR%\QQMSGS.EXE” HKLM\System\CurrentControlSet\services\Nerwork DDE IC\DisplayName: “Nerwork DDE IC” Detected by UnHackMe: QQMSGS.DLL Default location: %WinDir%\QQMSGS.DLL Dropper hash(md5): 05e6ea0c41178327df8433279a78f0ef UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus…

Continue reading

Win32:SCKeylog@dll [Trj]

Win32:SCKeylog@dll [Trj] also known as Win.Spyware.SCKeylog-8, Trojan.Sklog. Malware Analysis of Win32:SCKeylog@dll [Trj] – .DLL Created files: %TEMP%\WER1213.TMP.APPCOMPAT.TXT %TEMP%\WER1233.TMP.MDMP %TEMP%\WERE5FB.TMP.WERINTERNALMETADATA.XML %SYSDIR%\.DLL %SYSDIR%\.EXE Detected by UnHackMe: .DLL Default location: %SYSDIR%\.DLL Dropper hash(md5): 36497e5c4aec3fac90ee70a75926774c UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe is 100% CLEAN, which means it does not contain…

Continue reading

Win.Spyware.SCKeylog-8

Win.Spyware.SCKeylog-8 also known as Win32:SCKeylog@dll [Trj], Trojan.Generic.KDV.575143, TR/SCKeylog.20.D. Malware Analysis of Win.Spyware.SCKeylog-8 – .DLL Created files: %TEMP%\WER1213.TMP.APPCOMPAT.TXT %TEMP%\WER1233.TMP.MDMP %TEMP%\WERE5FB.TMP.WERINTERNALMETADATA.XML %SYSDIR%\.DLL %SYSDIR%\.EXE Detected by UnHackMe: .DLL Default location: %SYSDIR%\.DLL Dropper hash(md5): 36497e5c4aec3fac90ee70a75926774c UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe is 100% CLEAN, which means it does not contain…

Continue reading

TR/SCKeylog.20.D

TR/SCKeylog.20.D also known as Trojan.Generic.KDV.575143, Win.Spyware.SCKeylog-8, Trojan.Sklog. Malware Analysis of TR/SCKeylog.20.D – .DLL Created files: %TEMP%\WER1213.TMP.APPCOMPAT.TXT %TEMP%\WER1233.TMP.MDMP %TEMP%\WERE5FB.TMP.WERINTERNALMETADATA.XML %SYSDIR%\.DLL %SYSDIR%\.EXE Detected by UnHackMe: .DLL Default location: %SYSDIR%\.DLL Dropper hash(md5): 36497e5c4aec3fac90ee70a75926774c UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe is 100% CLEAN, which means it does not contain any…

Continue reading

W32/Keylog.AY!tr.bdr

W32/Keylog.AY!tr.bdr also known as Virus.Win32.Poison, Win32/Poison.NAE, Backdoor.Win32.Poison.NAN. Malware Analysis of W32/Keylog.AY!tr.bdr – 66.EXE Created files: %TEMP%\66.EXE %TEMP%\WER1D0F.TMP.APPCOMPAT.TXT %TEMP%\WER287A.TMP.MDMP %TEMP%\WERF750.TMP.WERINTERNALMETADATA.XML Detected by UnHackMe: 66.EXE DEFAULT LOCATION: %TEMP%\66.EXE Dropper hash(md5): acc87d570818d2b4348d611fcf853a50 UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe is 100% CLEAN, which means it does not contain any form…

Continue reading

Trojan.Keylog.ZKT

Trojan.Keylog.ZKT also known as Backdoor.Win32.PoisonIvy.7680.B, Backdoor/PoisonIvy.fk, Virus.Win32.Poison. Malware Analysis of Trojan.Keylog.ZKT – 66.EXE Created files: %TEMP%\66.EXE %TEMP%\WER1D0F.TMP.APPCOMPAT.TXT %TEMP%\WER287A.TMP.MDMP %TEMP%\WERF750.TMP.WERINTERNALMETADATA.XML Detected by UnHackMe: 66.EXE DEFAULT LOCATION: %TEMP%\66.EXE Dropper hash(md5): acc87d570818d2b4348d611fcf853a50 UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe is 100% CLEAN, which means it does not contain any form…

Continue reading

Win32:KeyLogger-ACN [Trj]

Win32:KeyLogger-ACN [Trj] also known as W32/Heuristic-131!Eldorado, Trojan.Scar.atec, a variant of Win32/AutoRun.Spy.KeyLogger.N. Malware Analysis of Win32:KeyLogger-ACN [Trj] – FILEQUARANTINE.EXE Created files: %SYSTEMDRIVE%\.TRASH\CLEANUP\DELETEDITEMS\XFIRC.EXE %SYSTEMDRIVE%\AUTORUN.INF %SYSTEMDRIVE%\ADWCLEANER\FILEQUARANTINE\FILEQUARANTINE.EXE %SYSTEMDRIVE%\ADWCLEANER\ADWCLEANER.EXE %SYSTEMDRIVE%\BOOT\DE-DE\DE-DE.EXE Detected by UnHackMe: FILEQUARANTINE.EXE DEFAULT LOCATION: %SYSTEMDRIVE%\ADWCLEANER\FILEQUARANTINE\FILEQUARANTINE.EXE Dropper hash(md5): c7ba6ba5ae2afb308e41b357df0666da UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe is 100% CLEAN, which means…

Continue reading

a variant of Win32/AutoRun.Spy.KeyLogger.N

a variant of Win32/AutoRun.Spy.KeyLogger.N also known as Trojan.Win32.Scar.gxnvs, W32/Heuristic-131!Eldorado, Dropped:Trojan.AutorunINF.Gen. Malware Analysis of a variant of Win32/AutoRun.Spy.KeyLogger.N – FILEQUARANTINE.EXE Created files: %SYSTEMDRIVE%\.TRASH\CLEANUP\DELETEDITEMS\XFIRC.EXE %SYSTEMDRIVE%\AUTORUN.INF %SYSTEMDRIVE%\ADWCLEANER\FILEQUARANTINE\FILEQUARANTINE.EXE %SYSTEMDRIVE%\ADWCLEANER\ADWCLEANER.EXE %SYSTEMDRIVE%\BOOT\DE-DE\DE-DE.EXE Detected by UnHackMe: FILEQUARANTINE.EXE DEFAULT LOCATION: %SYSTEMDRIVE%\ADWCLEANER\FILEQUARANTINE\FILEQUARANTINE.EXE Dropper hash(md5): c7ba6ba5ae2afb308e41b357df0666da UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe is 100% CLEAN, which…

Continue reading

W32.ArdamaxKeyloggerBV.Trojan

W32.ArdamaxKeyloggerBV.Trojan also known as Trojan.Gen, Trojan.Win32.Diple.hyyag, Application.Keylogger.Ardamax.AN (B). Malware Analysis of W32.ArdamaxKeyloggerBV.Trojan – HDW.EXE Created files: %SYSDIR%\YLMCHV\HDW.004 %SYSDIR%\YLMCHV\HDW.008 %SYSDIR%\YLMCHV\HDW.EXE Detected by UnHackMe: HDW.EXE Default location: %SYSDIR%\YLMCHV\HDW.EXE Dropper hash(md5): 8c7047a53b5c4bb35e72946bb5dc4717 UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe is 100% CLEAN, which means it does not contain any form…

Continue reading

W32.ArdamaxKeyloggerBV.Trojan

W32.ArdamaxKeyloggerBV.Trojan also known as Trojan.Gen, Trojan.Win32.Diple.hyyag, Application.Keylogger.Ardamax.AN (B). Malware Analysis of W32.ArdamaxKeyloggerBV.Trojan – HDW.EXE Created files: %SYSDIR%\YLMCHV\HDW.004 %SYSDIR%\YLMCHV\HDW.008 %SYSDIR%\YLMCHV\HDW.EXE Detected by UnHackMe: HDW.EXE Default location: %SYSDIR%\YLMCHV\HDW.EXE Dropper hash(md5): 8c7047a53b5c4bb35e72946bb5dc4717 UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe is 100% CLEAN, which means it does not contain any form…

Continue reading

Application.Keylogger.Ardamax.AN

Application.Keylogger.Ardamax.AN also known as Trojan.Gen, W32/Diple.QGG!tr, SPR/Tool.Monitor.Gen. Malware Analysis of Application.Keylogger.Ardamax.AN – HDW.EXE Created files: %SYSDIR%\YLMCHV\HDW.004 %SYSDIR%\YLMCHV\HDW.008 %SYSDIR%\YLMCHV\HDW.EXE Detected by UnHackMe: HDW.EXE Default location: %SYSDIR%\YLMCHV\HDW.EXE Dropper hash(md5): 8c7047a53b5c4bb35e72946bb5dc4717 UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe is 100% CLEAN, which means it does not contain any form of…

Continue reading

Application.Keylogger.Ardamax.AN

Application.Keylogger.Ardamax.AN also known as Trojan.Gen, W32/Diple.QGG!tr, SPR/Tool.Monitor.Gen. Malware Analysis of Application.Keylogger.Ardamax.AN – HDW.EXE Created files: %SYSDIR%\YLMCHV\HDW.004 %SYSDIR%\YLMCHV\HDW.008 %SYSDIR%\YLMCHV\HDW.EXE Detected by UnHackMe: HDW.EXE Default location: %SYSDIR%\YLMCHV\HDW.EXE Dropper hash(md5): 8c7047a53b5c4bb35e72946bb5dc4717 UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe is 100% CLEAN, which means it does not contain any form of…

Continue reading

Win32.Risk.Keylogger.Wrqc

Win32.Risk.Keylogger.Wrqc also known as Heur.Suspicious, Trojan.DownLoader5.5940, Backdoor ( 04c4f0471 ). Malware Analysis of Win32.Risk.Keylogger.Wrqc – HDW.EXE Created files: %SYSDIR%\YLMCHV\HDW.004 %SYSDIR%\YLMCHV\HDW.008 %SYSDIR%\YLMCHV\HDW.EXE Detected by UnHackMe: HDW.EXE Default location: %SYSDIR%\YLMCHV\HDW.EXE Dropper hash(md5): 8c7047a53b5c4bb35e72946bb5dc4717 UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe is 100% CLEAN, which means it does not contain…

Continue reading

Win32.Risk.Keylogger.Wrqc

Win32.Risk.Keylogger.Wrqc also known as Heur.Suspicious, Trojan.DownLoader5.5940, Backdoor ( 04c4f0471 ). Malware Analysis of Win32.Risk.Keylogger.Wrqc – HDW.EXE Created files: %SYSDIR%\YLMCHV\HDW.004 %SYSDIR%\YLMCHV\HDW.008 %SYSDIR%\YLMCHV\HDW.EXE Detected by UnHackMe: HDW.EXE Default location: %SYSDIR%\YLMCHV\HDW.EXE Dropper hash(md5): 8c7047a53b5c4bb35e72946bb5dc4717 UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe is 100% CLEAN, which means it does not contain…

Continue reading

Application.Keylogger.Ardamax.AN (B)

Application.Keylogger.Ardamax.AN (B) also known as Trojan/Diple.cjl, Trojan.DownLoader5.5940, Trojan.Win32.A.Diple.1777664. Malware Analysis of Application.Keylogger.Ardamax.AN (B) – HDW.EXE Created files: %SYSDIR%\YLMCHV\HDW.004 %SYSDIR%\YLMCHV\HDW.008 %SYSDIR%\YLMCHV\HDW.EXE Detected by UnHackMe: HDW.EXE Default location: %SYSDIR%\YLMCHV\HDW.EXE Dropper hash(md5): 8c7047a53b5c4bb35e72946bb5dc4717 UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe is 100% CLEAN, which means it does not contain any…

Continue reading

Application.Keylogger.Ardamax.AN (B)

Application.Keylogger.Ardamax.AN (B) also known as Trojan/Diple.cjl, Trojan.DownLoader5.5940, Trojan.Win32.A.Diple.1777664. Malware Analysis of Application.Keylogger.Ardamax.AN (B) – HDW.EXE Created files: %SYSDIR%\YLMCHV\HDW.004 %SYSDIR%\YLMCHV\HDW.008 %SYSDIR%\YLMCHV\HDW.EXE Detected by UnHackMe: HDW.EXE Default location: %SYSDIR%\YLMCHV\HDW.EXE Dropper hash(md5): 8c7047a53b5c4bb35e72946bb5dc4717 UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe is 100% CLEAN, which means it does not contain any…

Continue reading

Application.Keylogger.Ardamax

Application.Keylogger.Ardamax also known as Win32:Malware-gen, Win32/Trojan.540, TROJ_GEN.R0CBC0EAO14. Malware Analysis of Application.Keylogger.Ardamax – HDW.EXE Created files: %SYSDIR%\YLMCHV\HDW.004 %SYSDIR%\YLMCHV\HDW.008 %SYSDIR%\YLMCHV\HDW.EXE Detected by UnHackMe: HDW.EXE Default location: %SYSDIR%\YLMCHV\HDW.EXE Dropper hash(md5): 8c7047a53b5c4bb35e72946bb5dc4717 UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe is 100% CLEAN, which means it does not contain any form of…

Continue reading

Application.Keylogger.Ardamax

Application.Keylogger.Ardamax also known as Win32:Malware-gen, Win32/Trojan.540, TROJ_GEN.R0CBC0EAO14. Malware Analysis of Application.Keylogger.Ardamax – HDW.EXE Created files: %SYSDIR%\YLMCHV\HDW.004 %SYSDIR%\YLMCHV\HDW.008 %SYSDIR%\YLMCHV\HDW.EXE Detected by UnHackMe: HDW.EXE Default location: %SYSDIR%\YLMCHV\HDW.EXE Dropper hash(md5): 8c7047a53b5c4bb35e72946bb5dc4717 UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe is 100% CLEAN, which means it does not contain any form of…

Continue reading

Perfect Keylogger (PUA)

Perfect Keylogger (PUA) also known as Generic.Perfloger.80ACE920, TrojanSpy.Perfloger!LySXL1yJ4cA, Hacktool.Win32.Monitor.fq. Malware Analysis of Perfect Keylogger (PUA) – GHOSTHK.DLL Created files: %TEMP%\RARSFX0\RINST.EXE %SYSDIR%\GHOST.EXE %SYSDIR%\GHOSTHK.DLL %SYSDIR%\GHOSTR.EXE %SYSDIR%\GHOSTWB.DLL Detected by UnHackMe: GHOSTHK.DLL Default location: %SYSDIR%\GHOSTHK.DLL Dropper hash(md5): d723ea90bdb19d30ec8aef209d34ceea UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe is 100% CLEAN, which means it…

Continue reading

Trojan.PerfKeyLogger

Trojan.PerfKeyLogger also known as Spyware.Perfect, Generic.Win32.fbe4bab53f!MD, SPYW_PerfectKeylogger. Malware Analysis of Trojan.PerfKeyLogger – GHOSTR.EXE Created files: %SYSDIR%\GHOST.EXE %SYSDIR%\GHOSTHK.DLL %SYSDIR%\GHOSTR.EXE %SYSDIR%\GHOSTWB.DLL %SYSDIR%\INST.DAT Detected by UnHackMe: GHOSTR.EXE Default location: %SYSDIR%\GHOSTR.EXE Dropper hash(md5): d723ea90bdb19d30ec8aef209d34ceea UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe is 100% CLEAN, which means it does not contain any…

Continue reading

WordPress SEO fine-tune by Meta SEO Pack from Poradnik Webmastera