Child Control
It is a survelliance tool, which keeps monitoring every activity on our computer. Child Control is a survelliance tool, which keeps monitoring every activity done by us on the internet and sends our activity to the remote user via email.0
General information:
Malware Name: |
Child Control |
Malware Type: |
Key Logger |
Company Name: |
Salfeld |
Company URL: |
http://www.salfeld.com/
|
Threat Level: |
High Risk |
Operating System: |
WIN XP |
Installation Type: |
Installed through EXE |
Operation: |
Time of After Installation |
Company Description:
Salfeld Computer develops and markets security-related software to businesses and personal users worldwide. Its core products are applications that safeguard Windows settings and prevent inappropriate use of the PC. Parental Control is another area
in which Salfeld Computer is active. This company develops software that lets parents limit their children's PC use to worthwhile pursuits. Salfeld Computer creates it software over a worldwide network, and has its base in Reutlingen, Germany,
a high-tech center near Stuttgart.
Spyware Description:
It is a survelliance tool, which keeps monitoring every activity on our computer. Child Control is a survelliance tool, which keeps monitoring every activity done by us on the internet and sends our activity to the remote user via email.0
Characteristics/Symptoms:
-> Hidden from the user -> Starts with the operating system -> Monitor and capture data from computers0
Additional information might be found here:
Processes Running:
File information Created after Installation:
File Location |
Size (Bytes) |
Type |
C:\WINDOWS\system32\bin\tmr003.bin |
138416 |
BIN File |
C:\WINDOWS\system32\bin\tmr004.bin |
1544880 |
BIN File |
C:\WINDOWS\system32\bin\tmr005.dll |
162304 |
Application Extension |
Folder information Created after Installation:
Folder Location |
C:\Documents and Settings\Mohit\Start Menu\Programs\Child Control |
C:\WINDOWS\system32\tmr |
Registry information Created after Installation:
Main Registry Key |
Sub Registry Key |
Key Value Name |
HKEY_LOCAL_MACHINE |
SOFTWAREMicrosoftWindowsCurrentVersionExplorerShellKisi |
Exe |
HKEY_LOCAL_MACHINE |
SOFTWAREMicrosoftWindowsCurrentVersionUninstallChild Control_is1 |
Inno Setup: Setup Version |
HKEY_LOCAL_MACHINE |
\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Child Control_is1 |
InstallLocation |