Client-built.exe Stealer Keylogger Analysis

Stealer Keylogger
Updated on 2024-04-16 (21 days ago)
Checked by Online Virus Scanner
Online Virus Checkerv.1.0.172.174
DB Version:2024-04-16 10:00:15

Spy.Win32.Keylogger.dd!n

Keylogger is designed to secretly record keystrokes on a computer or mobile device, capturing everything a user types, including sensitive information like passwords and credit card numbers. It can be used by cybercriminals to steal personal and confidential data without the user's knowledge or consent.

FileClient-built.exe
Checked2024-04-16 10:07:50
MD519b882f6532d84ee75647dfa11c9b363
SHA160d10ccb100856a00076dc73e09c6aa2f9698d16
SHA256075cc480a01c9192695854f0406c3d624216a7c298f81a78ce7d6a24b0c15f15
SHA51270f80f2dfefb06c8f8f6b230bd25071be3ad7dfda67dd6b0296e1a9aacf97cfa26603008c1b5946e17f125c37c6fdeb45af9996e0a4b170516fbeb26d7b71276
Imphashf34d5f2d4577ed6d9ceec516c1f5a744
File Size3293184 bytes

Spy.Win32.Keylogger.dd!n Removal

Spy.Win32.Keylogger.dd!n Removal

Gridinsoft has the capability to identify and eliminate Spy.Win32.Keylogger.dd!n without requiring further user intervention.

  • Start by downloading Gridinsoft Anti-Malware to your computer.
  • Double-click on the gsam-en-install.exe file and follow the on-screen instructions to install the program.
  • Once the installation of Gridinsoft Anti-Malware is complete, the program will open on the Scan screen.
  • Click on the "Standard Scan" button.
  • After the scanning process is finished, click on "Clean Now" to remove any detected threats.
  • If prompted, restart your system to complete the removal process.

File Version Information

Translation0x0000 0x04b0
Comments
CompanyName
FileDescriptionQuasar Client
FileVersion1.4.1
InternalNameClient.exe
LegalCopyrightCopyright © MaxXor 2023
LegalTrademarks
OriginalFilenameClient.exe
ProductNameQuasar
ProductVersion1.4.1
Assembly Version1.4.1.0

Portable Executable Info

eb9544b3516ffc3f3b2a0005691e48d5
0e562ebd8c0df35fb1161c97769d42f1
64a69ae8d4d4d4a8
Image Base:0x00400000
Entry Point:0x0071e3ee
Compilation:2023-03-12 16:16:39
Checksum:0x00000000 (Actual: 0x00325337)
OS Version:4.0
PEiD:PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
Sign:The PE file does not contain a certificate table.
Sections:3
Imports: mscoree,
Exports: 0
Resources:8

Sections

Name Virtual Address Virtual Size Raw Size MD5 Entropy
.text 0x00002000 0x0031c3f4 0x0031c400 faa3dec7ba505d07afefd2677741c8e0 6.09
.rsrc 0x00320000 0x00007708 0x00007800 1aebfd52e9692b515917bf38c3058805 6.72
.reloc 0x00328000 0x0000000c 0x00000200 221440a5d95d2d9aec29428c5700ca78 0.10

Leave a comment*

Share your thoughts or insights about this file. Do you align with our conclusion?

*Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Please Wait...

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware