Home Malware Programs Keyloggers VirTool:Win32/Keylogger.A

VirTool:Win32/Keylogger.A

Posted: August 29, 2011

VirTool:Win32/Keylogger.A is a malicious keylogger program which is able to record all your PC keystrokes to gather confidential information such as user names, passwords, credit card numbers, etc. VirTool:Win32/Keylogger.A may usually be stealthily installed on a compromised machine without a user's knowledge or permission and may cover itself as a low level system process. VirTool:Win32/Keylogger.A is able to download other malware threats to an affected PC system. VirTool:Win32/Keylogger.A is a serious security risk that has to be removed from an infected computer system immediately.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%AppData%\pagefile.sys File name: %AppData%\pagefile.sys
File type: System file
Mime Type: unknown/sys
%AppData%\Microsoft\installer.exe File name: %AppData%\Microsoft\installer.exe
File type: Executable File
Mime Type: unknown/exe
%AppData%\rundll.exe File name: %AppData%\rundll.exe
File type: Executable File
Mime Type: unknown/exe
%AppData%\jungheinrich.exe File name: %AppData%\jungheinrich.exe
File type: Executable File
Mime Type: unknown/exe

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run rundll.exe = ""%AppData%\rundll.exe ""
Loading...