Keylogger.Perflogger.ad
Keylogger.Perflogger.ad Description
Keylogger.Perflogger.ad is a keylogger that is used by hackers to record keystrokes for the purpose of logging into online banking accounts or steal personal information. In addition to recording keystrokes, Keylogger.Perflogger.ad is able to log online activity which can reveal a plethora of personal and confidential information about a computer user.
Type: Keyloggers
How Can You Detect Keylogger.Perflogger.ad?
Keylogger.Perflogger.ad Technical Report
As new Keylogger.Perflogger.ad details are reported by our customers and findings from our Threat Research Center, we will update this section.
The following Keylogger.Perflogger.ad files with its MD5s were created in the system:
| File Name | File Size | MD5 |
|---|
| winx.exe | 417792 | ce74bebd69c23687ef526e57c4f66f55 |
| ins.exe | 417792 | a635bc1492e4c39ef47ed617d3dfe491 |
| BMJM-AQSH-UHQF-NQXR.exe | 218112 | d0572ddefa42687cf903a123500faf20 |
| skshk.dll | 24576 | 58129986fa29f6dacd99ab45f60bcb3c |
| inshk.dll | 22016 | a11068817ba83d7b8c61a5c53c5a72ab |
| bpk.exe | 417792 | 00f04e5eac2603967ff1bc14a3f21a86 |
| bpk.exe | 434176 | 994ffae187f4e567c6efee378af66ad0 |
Keylogger.Perflogger.ad has typically the following processes in memory:
- BMJM-AQSH-UHQF-NQXR.exe
- ins.exe
- inshk.dll
- winx.exe
- skshk.dll
Keylogger.Perflogger.ad creates the following registry entries:
- HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN BMJM-AQSH-UHQF-NQXR
- HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN ins
- HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN winx
- RUNNING PROGRAMexplorer.exe
Important Article Disclaimer
This entry was posted on 09/30/09 and is filed under Keyloggers.
You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.

English 
Deutsch
Español
Français
Portuguese
Keylogger.Perflogger.ad 











