Sunday, January 18, 2009

Perfect.Keylogger Spyware

Removing Perfect.Keylogger
Categories: Spyware
Spyware is computer software that is installed surreptitiously on a personal computer
to with the computer, without the user's informed consent.

Perfect.Keylogger Also known as:

[Kaspersky]KeyLogger.Win32.PerfectKeyLogger.141;
[Computer Associates]Win32.Perflogger.A,Win32/PerfectKeyLogger.141!Troja,Win32/Perflogger.A!Trojan

Visible Symptoms:
Files in system folders:
[%DESKTOP%]\this folder leads to all of my other folders ok\bpk.exe
[%PROFILE_TEMP%]\RarSFX0\rinst.exe
[%PROFILE_TEMP%]\RarSFX1\rinst.exe
[%PROFILE_TEMP%]\RarSFX3\rinst.exe
[%PROGRAMS%]\blazingtools perfect keylogger\blazingtools perfect keylogger.lnk
[%PROGRAMS%]\blazingtools perfect keylogger\more useful programs.lnk
[%PROGRAMS%]\blazingtools perfect keylogger\order now!.lnk
[%PROGRAMS%]\blazingtools perfect keylogger\perfect keylogger help.lnk
[%PROGRAMS%]\blazingtools perfect keylogger\uninstall perfect keylogger.lnk
[%PROGRAM_FILES%]\BPK\bpk.chm
[%PROGRAM_FILES%]\bpk\bpk.dat
[%PROGRAM_FILES%]\BPK\bpk.exe
[%PROGRAM_FILES%]\bpk\bpk.exe
[%PROGRAM_FILES%]\BPK\bpkhk.dll
[%PROGRAM_FILES%]\bpk\bpkhk.dll
[%PROGRAM_FILES%]\bpk\bpki.dll
[%PROGRAM_FILES%]\BPK\bpkr.exe
[%PROGRAM_FILES%]\BPK\bpkun.exe
[%PROGRAM_FILES%]\bpk\bpkun.exe
[%PROGRAM_FILES%]\BPK\bpkvw.exe
[%PROGRAM_FILES%]\bpk\bpkvw.exe
[%PROGRAM_FILES%]\BPK\bpkwb.dll
[%PROGRAM_FILES%]\BPK\downloads.url
[%PROGRAM_FILES%]\bpk\downloads.url
[%PROGRAM_FILES%]\bpk\inst.bin
[%PROGRAM_FILES%]\bpk\install.log
[%PROGRAM_FILES%]\BPK\license.txt
[%PROGRAM_FILES%]\bpk\license.txt
[%PROGRAM_FILES%]\BPK\order.url
[%PROGRAM_FILES%]\bpk\order.url
[%PROGRAM_FILES%]\bpk\pk.bin
[%PROGRAM_FILES%]\bpk\web.dat
[%SYSTEM%]\bpk.bin
[%SYSTEM%]\bpk.dat
[%SYSTEM%]\bpk.exe
[%SYSTEM%]\bpkhk.dll
[%SYSTEM%]\bpkr.exe
[%SYSTEM%]\bpkwb.dll
[%SYSTEM%]\Kazaa+.exe
[%SYSTEM%]\Kazaa+hk.dll
[%SYSTEM%]\Kazaa+wb.dll
[%SYSTEM%]\Keyloggerhk.dll
[%SYSTEM%]\Keyloggerr.exe
[%SYSTEM%]\l2w.exe
[%SYSTEM%]\l2whk.dll
[%SYSTEM%]\l2wwb.dll
[%SYSTEM%]\PROGRAM FILES.EXE
[%SYSTEM%]\PROGRAM FILESHK.DLL
[%SYSTEM%]\Program Fileswb.dll
[%SYSTEM%]\rinst.exe
[%WINDOWS%]\WinXp\downloads.url
[%PROFILE%]\Impostazioni locali\Temp\RarSFX0\rinst.exe
[%PROFILE%]\Impostazioni locali\Temp\RarSFX1\rinst.exe
[%PROFILE%]\Impostazioni locali\Temp\RarSFX3\rinst.exe
[%PROGRAM_FILES%]\bpk\.exe
[%PROGRAM_FILES%]\bpk\bpk.chm
[%PROGRAM_FILES%]\bpk\bpkr.exe
[%PROGRAM_FILES%]\bpk\bpkwb.dll
[%PROGRAM_FILES%]\bpk\dumbo.exe
[%PROGRAM_FILES%]\bpk\dumbohk.dll
[%PROGRAM_FILES%]\bpk\hk.dll
[%PROGRAM_FILES%]\bpk\i.dll
[%PROGRAM_FILES%]\bpk\r.exe
[%PROGRAM_FILES%]\bpk\un.exe
[%PROGRAM_FILES%]\bpk\vw.exe
[%PROGRAM_FILES%]\bpk\wb.dll
[%DESKTOP%]\this folder leads to all of my other folders ok\bpk.exe
[%PROFILE_TEMP%]\RarSFX0\rinst.exe
[%PROFILE_TEMP%]\RarSFX1\rinst.exe
[%PROFILE_TEMP%]\RarSFX3\rinst.exe
[%PROGRAMS%]\blazingtools perfect keylogger\blazingtools perfect keylogger.lnk
[%PROGRAMS%]\blazingtools perfect keylogger\more useful programs.lnk
[%PROGRAMS%]\blazingtools perfect keylogger\order now!.lnk
[%PROGRAMS%]\blazingtools perfect keylogger\perfect keylogger help.lnk
[%PROGRAMS%]\blazingtools perfect keylogger\uninstall perfect keylogger.lnk
[%PROGRAM_FILES%]\BPK\bpk.chm
[%PROGRAM_FILES%]\bpk\bpk.dat
[%PROGRAM_FILES%]\BPK\bpk.exe
[%PROGRAM_FILES%]\bpk\bpk.exe
[%PROGRAM_FILES%]\BPK\bpkhk.dll
[%PROGRAM_FILES%]\bpk\bpkhk.dll
[%PROGRAM_FILES%]\bpk\bpki.dll
[%PROGRAM_FILES%]\BPK\bpkr.exe
[%PROGRAM_FILES%]\BPK\bpkun.exe
[%PROGRAM_FILES%]\bpk\bpkun.exe
[%PROGRAM_FILES%]\BPK\bpkvw.exe
[%PROGRAM_FILES%]\bpk\bpkvw.exe
[%PROGRAM_FILES%]\BPK\bpkwb.dll
[%PROGRAM_FILES%]\BPK\downloads.url
[%PROGRAM_FILES%]\bpk\downloads.url
[%PROGRAM_FILES%]\bpk\inst.bin
[%PROGRAM_FILES%]\bpk\install.log
[%PROGRAM_FILES%]\BPK\license.txt
[%PROGRAM_FILES%]\bpk\license.txt
[%PROGRAM_FILES%]\BPK\order.url
[%PROGRAM_FILES%]\bpk\order.url
[%PROGRAM_FILES%]\bpk\pk.bin
[%PROGRAM_FILES%]\bpk\web.dat
[%SYSTEM%]\bpk.bin
[%SYSTEM%]\bpk.dat
[%SYSTEM%]\bpk.exe
[%SYSTEM%]\bpkhk.dll
[%SYSTEM%]\bpkr.exe
[%SYSTEM%]\bpkwb.dll
[%SYSTEM%]\Kazaa+.exe
[%SYSTEM%]\Kazaa+hk.dll
[%SYSTEM%]\Kazaa+wb.dll
[%SYSTEM%]\Keyloggerhk.dll
[%SYSTEM%]\Keyloggerr.exe
[%SYSTEM%]\l2w.exe
[%SYSTEM%]\l2whk.dll
[%SYSTEM%]\l2wwb.dll
[%SYSTEM%]\PROGRAM FILES.EXE
[%SYSTEM%]\PROGRAM FILESHK.DLL
[%SYSTEM%]\Program Fileswb.dll
[%SYSTEM%]\rinst.exe
[%WINDOWS%]\WinXp\downloads.url
[%PROFILE%]\Impostazioni locali\Temp\RarSFX0\rinst.exe
[%PROFILE%]\Impostazioni locali\Temp\RarSFX1\rinst.exe
[%PROFILE%]\Impostazioni locali\Temp\RarSFX3\rinst.exe
[%PROGRAM_FILES%]\bpk\.exe
[%PROGRAM_FILES%]\bpk\bpk.chm
[%PROGRAM_FILES%]\bpk\bpkr.exe
[%PROGRAM_FILES%]\bpk\bpkwb.dll
[%PROGRAM_FILES%]\bpk\dumbo.exe
[%PROGRAM_FILES%]\bpk\dumbohk.dll
[%PROGRAM_FILES%]\bpk\hk.dll
[%PROGRAM_FILES%]\bpk\i.dll
[%PROGRAM_FILES%]\bpk\r.exe
[%PROGRAM_FILES%]\bpk\un.exe
[%PROGRAM_FILES%]\bpk\vw.exe
[%PROGRAM_FILES%]\bpk\wb.dll

How to detect Perfect.Keylogger:

Files:
[%DESKTOP%]\this folder leads to all of my other folders ok\bpk.exe
[%PROFILE_TEMP%]\RarSFX0\rinst.exe
[%PROFILE_TEMP%]\RarSFX1\rinst.exe
[%PROFILE_TEMP%]\RarSFX3\rinst.exe
[%PROGRAMS%]\blazingtools perfect keylogger\blazingtools perfect keylogger.lnk
[%PROGRAMS%]\blazingtools perfect keylogger\more useful programs.lnk
[%PROGRAMS%]\blazingtools perfect keylogger\order now!.lnk
[%PROGRAMS%]\blazingtools perfect keylogger\perfect keylogger help.lnk
[%PROGRAMS%]\blazingtools perfect keylogger\uninstall perfect keylogger.lnk
[%PROGRAM_FILES%]\BPK\bpk.chm
[%PROGRAM_FILES%]\bpk\bpk.dat
[%PROGRAM_FILES%]\BPK\bpk.exe
[%PROGRAM_FILES%]\bpk\bpk.exe
[%PROGRAM_FILES%]\BPK\bpkhk.dll
[%PROGRAM_FILES%]\bpk\bpkhk.dll
[%PROGRAM_FILES%]\bpk\bpki.dll
[%PROGRAM_FILES%]\BPK\bpkr.exe
[%PROGRAM_FILES%]\BPK\bpkun.exe
[%PROGRAM_FILES%]\bpk\bpkun.exe
[%PROGRAM_FILES%]\BPK\bpkvw.exe
[%PROGRAM_FILES%]\bpk\bpkvw.exe
[%PROGRAM_FILES%]\BPK\bpkwb.dll
[%PROGRAM_FILES%]\BPK\downloads.url
[%PROGRAM_FILES%]\bpk\downloads.url
[%PROGRAM_FILES%]\bpk\inst.bin
[%PROGRAM_FILES%]\bpk\install.log
[%PROGRAM_FILES%]\BPK\license.txt
[%PROGRAM_FILES%]\bpk\license.txt
[%PROGRAM_FILES%]\BPK\order.url
[%PROGRAM_FILES%]\bpk\order.url
[%PROGRAM_FILES%]\bpk\pk.bin
[%PROGRAM_FILES%]\bpk\web.dat
[%SYSTEM%]\bpk.bin
[%SYSTEM%]\bpk.dat
[%SYSTEM%]\bpk.exe
[%SYSTEM%]\bpkhk.dll
[%SYSTEM%]\bpkr.exe
[%SYSTEM%]\bpkwb.dll
[%SYSTEM%]\Kazaa+.exe
[%SYSTEM%]\Kazaa+hk.dll
[%SYSTEM%]\Kazaa+wb.dll
[%SYSTEM%]\Keyloggerhk.dll
[%SYSTEM%]\Keyloggerr.exe
[%SYSTEM%]\l2w.exe
[%SYSTEM%]\l2whk.dll
[%SYSTEM%]\l2wwb.dll
[%SYSTEM%]\PROGRAM FILES.EXE
[%SYSTEM%]\PROGRAM FILESHK.DLL
[%SYSTEM%]\Program Fileswb.dll
[%SYSTEM%]\rinst.exe
[%WINDOWS%]\WinXp\downloads.url
[%PROFILE%]\Impostazioni locali\Temp\RarSFX0\rinst.exe
[%PROFILE%]\Impostazioni locali\Temp\RarSFX1\rinst.exe
[%PROFILE%]\Impostazioni locali\Temp\RarSFX3\rinst.exe
[%PROGRAM_FILES%]\bpk\.exe
[%PROGRAM_FILES%]\bpk\bpk.chm
[%PROGRAM_FILES%]\bpk\bpkr.exe
[%PROGRAM_FILES%]\bpk\bpkwb.dll
[%PROGRAM_FILES%]\bpk\dumbo.exe
[%PROGRAM_FILES%]\bpk\dumbohk.dll
[%PROGRAM_FILES%]\bpk\hk.dll
[%PROGRAM_FILES%]\bpk\i.dll
[%PROGRAM_FILES%]\bpk\r.exe
[%PROGRAM_FILES%]\bpk\un.exe
[%PROGRAM_FILES%]\bpk\vw.exe
[%PROGRAM_FILES%]\bpk\wb.dll
[%DESKTOP%]\this folder leads to all of my other folders ok\bpk.exe
[%PROFILE_TEMP%]\RarSFX0\rinst.exe
[%PROFILE_TEMP%]\RarSFX1\rinst.exe
[%PROFILE_TEMP%]\RarSFX3\rinst.exe
[%PROGRAMS%]\blazingtools perfect keylogger\blazingtools perfect keylogger.lnk
[%PROGRAMS%]\blazingtools perfect keylogger\more useful programs.lnk
[%PROGRAMS%]\blazingtools perfect keylogger\order now!.lnk
[%PROGRAMS%]\blazingtools perfect keylogger\perfect keylogger help.lnk
[%PROGRAMS%]\blazingtools perfect keylogger\uninstall perfect keylogger.lnk
[%PROGRAM_FILES%]\BPK\bpk.chm
[%PROGRAM_FILES%]\bpk\bpk.dat
[%PROGRAM_FILES%]\BPK\bpk.exe
[%PROGRAM_FILES%]\bpk\bpk.exe
[%PROGRAM_FILES%]\BPK\bpkhk.dll
[%PROGRAM_FILES%]\bpk\bpkhk.dll
[%PROGRAM_FILES%]\bpk\bpki.dll
[%PROGRAM_FILES%]\BPK\bpkr.exe
[%PROGRAM_FILES%]\BPK\bpkun.exe
[%PROGRAM_FILES%]\bpk\bpkun.exe
[%PROGRAM_FILES%]\BPK\bpkvw.exe
[%PROGRAM_FILES%]\bpk\bpkvw.exe
[%PROGRAM_FILES%]\BPK\bpkwb.dll
[%PROGRAM_FILES%]\BPK\downloads.url
[%PROGRAM_FILES%]\bpk\downloads.url
[%PROGRAM_FILES%]\bpk\inst.bin
[%PROGRAM_FILES%]\bpk\install.log
[%PROGRAM_FILES%]\BPK\license.txt
[%PROGRAM_FILES%]\bpk\license.txt
[%PROGRAM_FILES%]\BPK\order.url
[%PROGRAM_FILES%]\bpk\order.url
[%PROGRAM_FILES%]\bpk\pk.bin
[%PROGRAM_FILES%]\bpk\web.dat
[%SYSTEM%]\bpk.bin
[%SYSTEM%]\bpk.dat
[%SYSTEM%]\bpk.exe
[%SYSTEM%]\bpkhk.dll
[%SYSTEM%]\bpkr.exe
[%SYSTEM%]\bpkwb.dll
[%SYSTEM%]\Kazaa+.exe
[%SYSTEM%]\Kazaa+hk.dll
[%SYSTEM%]\Kazaa+wb.dll
[%SYSTEM%]\Keyloggerhk.dll
[%SYSTEM%]\Keyloggerr.exe
[%SYSTEM%]\l2w.exe
[%SYSTEM%]\l2whk.dll
[%SYSTEM%]\l2wwb.dll
[%SYSTEM%]\PROGRAM FILES.EXE
[%SYSTEM%]\PROGRAM FILESHK.DLL
[%SYSTEM%]\Program Fileswb.dll
[%SYSTEM%]\rinst.exe
[%WINDOWS%]\WinXp\downloads.url
[%PROFILE%]\Impostazioni locali\Temp\RarSFX0\rinst.exe
[%PROFILE%]\Impostazioni locali\Temp\RarSFX1\rinst.exe
[%PROFILE%]\Impostazioni locali\Temp\RarSFX3\rinst.exe
[%PROGRAM_FILES%]\bpk\.exe
[%PROGRAM_FILES%]\bpk\bpk.chm
[%PROGRAM_FILES%]\bpk\bpkr.exe
[%PROGRAM_FILES%]\bpk\bpkwb.dll
[%PROGRAM_FILES%]\bpk\dumbo.exe
[%PROGRAM_FILES%]\bpk\dumbohk.dll
[%PROGRAM_FILES%]\bpk\hk.dll
[%PROGRAM_FILES%]\bpk\i.dll
[%PROGRAM_FILES%]\bpk\r.exe
[%PROGRAM_FILES%]\bpk\un.exe
[%PROGRAM_FILES%]\bpk\vw.exe
[%PROGRAM_FILES%]\bpk\wb.dll

Folders:
[%PROGRAM_FILES%]\bpk\dt

Registry Keys:
HKEY_CLASSES_ROOT\CLSID\{1E1B2879-88FF-11D3-8D96-D7ACAC95951A}
HKEY_CLASSES_ROOT\interface\{1e1b2878-88ff-11d3-8d96-d7acac95951a}
HKEY_CLASSES_ROOT\pk.ie
HKEY_CLASSES_ROOT\pk.ie.1
HKEY_CLASSES_ROOT\typelib\{1e1b286c-88ff-11d3-8d96-d7acac95951a}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1E1B2879-88FF-11D3-8D96-D7ACAC95951A}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\perfect keylogger
HKEY_CLASSES_ROOT\clsid\{1e1b2879-88ff-11d3-8d96-d7acac95951a}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{1e1b2879-88ff-11d3-8d96-d7acac95951a}

Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run

Removing Perfect.Keylogger:

You can download trial version of "Exterminate-It" antivirus software here, to check your computer instantly.

Or buy it to remove ALL viruses from your computer.

Also Be Aware of the Following Threats:
Remove Larry Trojan
Remove Trojan.Downloader.Win32.Small.csn Trojan
Remove BOClient Trojan
Ehg.mccormick.hitbox Tracking Cookie Symptoms

No comments: