Home / malwarePDF  

TrojanSpy:MSIL/QVKeyLogger.A


First posted on 20 April 2017.
Source: Microsoft

Aliases :

There are no other names known for TrojanSpy:MSIL/QVKeyLogger.A.

Explanation :

Installation

It modifies the registry so that it runs each time you start your PC. For example:

In subkey: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Sets value: "FlashUpdate"
With data: ""

Payload

Collects your sensitive information

This threat can collect your sensitive information without your consent. This can include:

  • The keys you press
  • The applications you open
  • Your web browsing history
  • Your credit card information
  • Your user names and passwords


It can also imitate a legitimate website to lure you into revealing your sensitive information.

This malware description was published using automated analysis of file SHA1 fe1985884d4faa5cd199fa00a9790cebf89880e5.

Last update 20 April 2017

 

TOP