Stealer Keylogger Malware Analysis

Online Virus Checkerv.1.0.147.174
DB Version:2023-11-17 15:02:21
Available languages:ENESBRFRDEUACN

Scan Your File

Analyze suspicious files to detect malware and automatically share them with our team. You can compress your file into a zip archive (if needed, we use the password "infected" to extract before checking).

Spy.Win32.Keylogger.cld

Keylogger is designed to secretly record keystrokes on a computer or mobile device, capturing everything a user types, including sensitive information like passwords and credit card numbers. It can be used by cybercriminals to steal personal and confidential data without the user's knowledge or consent.

File:UTB.exe
Checked:2023-11-17 13:12:45
MD5:9f7357e3781dcce92bb9ad2f9eb1ad55
SHA1:5f4b0f1d5ef81ad5df26fd3271d8990d6f3d111a
SHA256:aed604e195f118c91418edc7653a9c91053fb2eb1e99a44cbd250d49a76231c1
SHA512:a4c8ab7e449091f74ca4d38506690984e29689618954fc21e27b7b8f15e91a26a200bab58c32b5b384fba5613496a02948b7a849b1bf1f5c8a4e2e68c067e2ad
Imphash:f34d5f2d4577ed6d9ceec516c1f5a744
File Size:113664 bytes

Spy.Win32.Keylogger.cld Removal

Gridinsoft has the capability to identify and eliminate Spy.Win32.Keylogger.cld without requiring further user intervention.

  • Start by downloading Gridinsoft Anti-Malware to your computer.
  • Double-click on the gsam-en-install.exe file and follow the on-screen instructions to install the program.
  • Once the installation of Gridinsoft Anti-Malware is complete, the program will open on the Scan screen.
  • Click on the "Standard Scan" button.
  • After the scanning process is finished, click on "Clean Now" to remove any detected threats.
  • If prompted, restart your system to complete the removal process.

File Version Information

Translation0x0000 0x04b0
Comments
CompanyName
FileDescriptionUTB
FileVersion1.0.0.0
InternalNameUTB.exe
LegalCopyrightCopyright © 2022
LegalTrademarks
OriginalFilenameUTB.exe
ProductNameUTB
ProductVersion1.0.0.0
Assembly Version1.0.0.0

Portable Executable Info

Image Base:0x00400000
Entry Point:0x0041d0be
Compilation:2057-07-29 23:45:47
Checksum:0x00000000 (Actual: 0x00023500)
OS Version:4.0
PDB Path:C:\Users\xxref\Downloads\Universal_Pixel_Triggerbot\Universal Pixel Triggerbot\UTB\obj\Debug\UTB.pdb
PEiD:PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
Sign:The PE file does not contain a certificate table.
Sections:3
Imports: mscoree,
Exports: 0
Resources:2

Sections

Name Virtual Address Virtual Size Raw Size MD5 Entropy
.text 0x00002000 0x0001b0c4 0x0001b200 39275a3b8897e08daf7c6a24e5400757 2.87
.rsrc 0x0001e000 0x0000057c 0x00000600 e41b282bf1abf8bebf1771dde6487ee0 4.01
.reloc 0x00020000 0x0000000c 0x00000200 a1e4603eabde48b95f6a17bd37efcac5 0.10

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware