Spy

Spyware.CheetahKeylogger removal instruction

Malware Removal

The Spyware.CheetahKeylogger is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Spyware.CheetahKeylogger virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Spyware.CheetahKeylogger?


File Info:

crc32: 85017720
md5: b861f4c2cd486258a79a2078c58885e8
name: upload_file
sha1: a52c73cecef8c37bcaf95aeeb456580544a6e27c
sha256: e0dd9126e9038ec946d016833bad57afb1d3eb06e453ec8a0bdd60661e6a3da2
sha512: 2d51a0096e6c99209bbd020f8523143c1651567296e3123cc4650e9809dc5c5f560fa8b1848d18cd240a53f5ae9fcfbf11bca98eb04d2a678f6d45c682d36371
ssdeep: 3072:npaT7S79Qar+Xlp6fQhbfWh0+37/AsZVOpvH34IbWyE7lUJVX+Guj48lTEyht:paOQg+6IRq0UZkHTDs+Jlijp4yh
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2020
Assembly Version: 1.0.8.8
InternalName: DataProtector crypter.exe
FileVersion: 1.0.8.8
CompanyName:
LegalTrademarks:
Comments:
ProductName: DataProtector crypter
ProductVersion: 1.0.8.8
FileDescription: DataProtector crypter
OriginalFilename: DataProtector crypter.exe

Spyware.CheetahKeylogger also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.34372418
FireEyeGeneric.mg.b861f4c2cd486258
CAT-QuickHealTrojanpws.Msil
ALYacTrojan.GenericKD.34372418
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 0055d2191 )
BitDefenderTrojan.GenericKD.34372418
K7GWTrojan ( 0055d2191 )
Cybereasonmalicious.ecef8c
TrendMicroTROJ_GEN.R03FC0PHH20
BitDefenderThetaGen:NN.ZemsilF.34196.rm0@aKJkOkm
CyrenW32/Trojan.ULUE-1000
SymantecTrojan Horse
TrendMicro-HouseCallTROJ_GEN.R03FC0PHH20
Paloaltogeneric.ml
KasperskyHEUR:Trojan-PSW.MSIL.Agensla.gen
AlibabaTrojan:Win32/runner.ali1000123
NANO-AntivirusTrojan.Win32.Agensla.hrypbu
AegisLabTrojan.MSIL.Agensla.i!c
APEXMalicious
RisingTrojan.Woreflint!8.F5EA (CLOUD)
Ad-AwareTrojan.GenericKD.34372418
Comodo.UnclassifiedMalware@0
F-SecureHeuristic.HEUR/AGEN.1136253
DrWebTrojan.DownLoader34.24869
ZillyaTrojan.SmartAssembly.Win32.1337
Invinceaheuristic
SophosMal/Generic-S
IkarusTrojan.MSIL.Injector
JiangminTrojan.PSW.MSIL.apde
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1136253
MAXmalware (ai score=84)
Antiy-AVLTrojan[Packed]/MSIL.SmartAssembly
MicrosoftTrojan:Win32/Tiggre!rfn
ArcabitTrojan.Generic.D20C7B42
ZoneAlarmHEUR:Trojan-PSW.MSIL.Agensla.gen
GDataTrojan.GenericKD.34372418
CynetMalicious (score: 85)
AhnLab-V3Malware/Win32.RL_Generic.C4162711
McAfeeGenericRXJT-UO!B861F4C2CD48
VBA32TScope.Trojan.MSIL
MalwarebytesSpyware.CheetahKeylogger
PandaTrj/GdSda.A
ZonerTrojan.Win32.92357
ESET-NOD32a variant of MSIL/Packed.SmartAssembly.AY
TencentMsil.Trojan-qqpass.Qqrob.Pfsr
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_89%
FortinetMSIL/Kryptik.SHS!tr
AVGWin32:MalwareX-gen [Trj]
AvastWin32:MalwareX-gen [Trj]
Qihoo-360Generic/HEUR/QVM03.0.4977.Malware.Gen

How to remove Spyware.CheetahKeylogger?

Spyware.CheetahKeylogger removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment