|
FKWP 2.0 Key Logger Information
| Name: |
FKWP 2.0 |
| Category: |
Key Logger |
| Advice: |
Remove |
| Risk: |
Elevated Risk
Elevated threats are usually threats that fall into the range of adware in which data about a user's habits are tracked and sent back to a server for analysis without your consent or knowledge. |
| Description:
|
It is a Firewall bypassing Key logger. It has a File manager too, for controlling files in a remote system.
Features: logging all keystrokes, Download 2 urls cab files and extracting and executing the inside exes (Firewall bypass), Protected storage (Outlook, IE stored passes), Cashed Dialup passes Sender, keystrokes, passes will mail to the email id daily or when the log size is over, firewall bypassing by injecting code into IE and sending mail, No Process visible ,injects into Explorer.exe on startup and exiting, Active Setup Startup, EXE size is 11.9 KB, encrypted log file, File manager for controlling remote system
|
| Signatures:
|
process: FileManagerClient.exe: MD5 Hash: e18f07a4948d8e73e86...
process: editor~1.exe: MD5 Hash: ...
process: filema~1.exe: MD5 Hash: .. |
| Type: |
Key Logger - A key logger program runs in the background, recording all the keystrokes made by a user. Once keystrokes are logged, they are hidden in the machine for later retrieval, or shipped secretly raw to the attacker via email or over the Internet. |
Top Key Logger Visited Pages:
Keyboard Thief - 866 visits
Stealth Keyboard Interceptor - 203 visits
FKWP 2.0 - 198 visits
HackPass - 177 visits
Global Hook - 155 visits
Remote Keylogger - 73 visits
Modem Spy - 60 visits
Srv.BigBlue.01 - 55 visits
Win32.RemoteKeyLog.b - Alias: KClient, Keylog-Remote, Trojan.Spy.RemoteKeyLog.b - 52 visits
Advanced Keylogger - 49 visits
Random Key Logger Pages:
Winpass - Alias: PassW, PWS-CM, Trojan.Win32.PassW
Informer
System Spy - Alias: Trojan.Spy.VB.s, System Spy 1.00
Windows.Keylogger - Alias: Windows.Keylogger Win9xME 4.10
NetVisor - Alias: NetVisor 3.0
Lyttlesoft KeyBugger - Alias: Lyttlesoft KeyBugger 1.1.36
CQMA
DirSpy
Sinred Keylogger - Alias: Trojan.Spy.Sinred.10
Remote Keylogger
|