1 Key logger

1 Key logger monitors and captures data from computers. It runs in stealth mode, hidden from the user. 1 Keylogger intercepts keystrokes from the keyboard and records them in a log. It starts automatically with the operating system0

General information:

Malware Name:1 Key logger
Malware Type:Key Logger
Company Name:All the Soft Inc
Company URL:http://www.allthesoft.com/
Threat Level:Elevated Risk
Operating System:WIN XP
Installation Type:Installed through EXE
Operation:Time of After Installation

Company Description:

All the Soft Inc provides you the software 1 Key logger that is the popular all-round monitoring solution. It allows companies and individuals to track the use / abuse of PCs easily and invisibly. It logs keystrokes, user names, passwords, path names, access times, windows titles, and BOTH sides of a CHAT conversation for most popular chat software, AOL content and visited websites.

Spyware Description:

1 Key logger monitors and captures data from computers. It runs in stealth mode, hidden from the user. 1 Keylogger intercepts keystrokes from the keyboard and records them in a log. It starts automatically with the operating system0

Characteristics/Symptoms:

    -> Monitor and capture data from computers -> Run in stealth mode -> Intercepts keystrokes from the keyboard and records them in a log -> Starts with the operating system0

Additional information might be found here:

googleSearch at Google for 1 Key logger
bingSearch at Bing for 1 Key logger
yahooSearch at Yahoo for 1 Key logger

Processes Running:

starrcmd.exe

File information Created after Installation:

File LocationSize (Bytes)Type
C:\Documents and Settings\All Users\Application Data\STARR\License.lnk1420Shortcut
C:\Documents and Settings\All Users\Application Data\STARR\STARR Commander.lnk1429Shortcut
C:\WINDOWS\system32\starrcmd.exe1007616Application

Folder information Created after Installation:

Folder Location
C:\Program Files\STARR

Registry information Created after Installation:

Main Registry KeySub Registry KeyKey Value Name
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A3CB019F-A254-13D1-B2E4-0060975B8649}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A3CB019F-A254-13D1-B2E4-0060975B8649}0
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A3CB019F-A254-13D1-B2E4-0060975B8649}\Version