Activity Monitor

Activity Monitor is a commercial key logger that can monitor files within programs across a network or the Internet.This is an application for real time monitoring of users activities on network computers and for employees work time tracking. Administrators can view typing keystrokes in real time, take snapshots of the remote screen at will, view all running programs and monitor when user switches between them, copy any files from remote PC, view visited web site, terminate processes, control computers remotely.0

General information:

Malware Name: Activity Monitor
Malware Type: Key Logger
Company Name: SoftActivity
Company URL: http://softactivity.com/
Threat Level: Severe Risk
Operating System: WIN XP
Installation Type: Installed through EXE
Operation: Time of After Installation.

Company Description:

SoftActivity provides Spy software for remote computer monitoring through LAN in real time or recording all Internets, email, chat and other activity on your PC. Monitor employees or students on network computers remotely. Monitor child on local home PC with its spy software for parental control with key logger module. Get full computer usage statistics. Keylogger software that runs invisible and records everything users do on their computers.

Spyware Description:

Activity Monitor is a commercial key logger that can monitor files within programs across a network or the Internet.This is an application for real time monitoring of users activities on network computers and for employees work time tracking. Administrators can view typing keystrokes in real time, take snapshots of the remote screen at will, view all running programs and monitor when user switches between them, copy any files from remote PC, view visited web site, terminate processes, control computers remotely.0

Characteristics/Symptoms:

    -> Monitor and capture data from computers -> Run in stealth mode -> Intercepts keystrokes from the keyboard and records them in a log -> Starts with the operating system0

Additional information might be found here:

google Search at Google for Activity Monitor
bing Search at Bing for Activity Monitor
yahoo Search at Yahoo for Activity Monitor

Processes Running:

swatcher.exe

File information Created after Installation:

File Location Size (Bytes) Type
C:\Program Files\Activity Monitor\Templates\first.html 1378 HTML File
C:\Program Files\Activity Monitor\Templates\head.html 333 HTML File
C:\Program Files\Activity Monitor\Templates\header.csv 128 Microsoft Excel Comma Separated Values File

Folder information Created after Installation:

Folder Location
C:\Program Files\Activity Monitor
C:\Program Files\Activity Monitor\Microsoft.VC80.CRT

Registry information Created after Installation:

Main Registry Key Sub Registry Key Key Value Name
HKEY_LOCAL_MACHINE \SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{142E758E-2AC3-443A-A549-7E6A036285A2}_is11 InstallLocation
HKEY_LOCAL_MACHINE \SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{142E758E-2AC3-443A-A549-7E6A036285A2}_is12 NoModify
HKEY_LOCAL_MACHINE \SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{142E758E-2AC3-443A-A549-7E6A036285A2}_is13 NoRepair