ProKeylogger 1.0.0
(Trojan-Spy.Win32.ProKeylogger.10)

by ?

Released in March 2006

 


Server:
dropped files:
c:\WINDOWS\@@@\LHOURS.DAT    Size: 1 bytes 
c:\WINDOWS\@@@\start.exe     Size: 282,810 bytes 
c:\WINDOWS\@@@\utils.dll     Size: 217,088 bytes 
c:\WINDOWS\@@@\WINLOG.EXE    Size: 282,810 bytes 

startup:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2bf41072-b2b1-21c1-b5c1-0305f4155515} "StubPath"
data: C:\WINDOWS\@@@\start.exe 



tested on Windows XP
May 01, 2006

MegaSecurity