Cordix
Cordix is a software tool that converts analog voice modem to a call recorder. It starts with the operating system0
General information:
Malware Name: |
Cordix |
Malware Type: |
Key Logger |
Company Name: |
Concel Systems |
Company URL: |
http://www.concelsys.com/
|
Threat Level: |
Severe Risk |
Operating System: |
WIN XP |
Installation Type: |
Installed through EXE |
Operation: |
Time of After Installation |
Company Description:
Concel Systems is a Greek company, developing communication software since 2003. It builds smart solutions, both generic and customized. It relies on sophisticated product architecture to bring us flexible and reliable solutions at the shortest time
and the lowest cost. It distributes the products through internet and a team of resellers who provide consultation, on-site installation, integration and support services.
Spyware Description:
Cordix is a software tool that converts analog voice modem to a call recorder. It starts with the operating system0
Characteristics/Symptoms:
-> Monitor and capture data from computers -> Run in stealth mode -> Intercepts keystrokes from the keyboard and records them in a log -> Starts with the operating system0
Additional information might be found here:
Processes Running:
apr.exe
File information Created after Installation:
File Location |
Size (Bytes) |
Type |
C:\Program Files\Concel Systems\Advanced Phone Recorder\Docs\DiacorderKit.url |
68 |
Internet Shortcut |
C:\Program Files\Concel Systems\Advanced Phone Recorder\Tree.ini |
71 |
Configuration Settings |
C:\Program Files\Concel Systems\Advanced Phone Recorder\unins000.exe |
635337 |
Application |
Folder information Created after Installation:
Folder Location |
C:\Program Files\Concel Systems\Advanced Phone Recorder |
C:\Program Files\Concel Systems\Advanced Phone Recorder\Docs |
Registry information Created after Installation:
Main Registry Key |
Sub Registry Key |
Key Value Name |
HKEY_LOCAL_MACHINE |
SOFTWAREMicrosoftWindowsCurrentVersionUninstall{1B8F77CC-1040-4808-9527-68B5007D28B1}_is1 |
URLInfoAbout |
HKEY_LOCAL_MACHINE |
SOFTWAREMicrosoftWindowsCurrentVersionUninstall{1B8F77CC-1040-4808-9527-68B5007D28B1}_is1 |
URLUpdateInfo |
HKEY_LOCAL_MACHINE |
SOFTWAREMicrosoftWindowsCurrentVersionUninstall{1B8F77CC-1040-4808-9527-68B5007D28B1}_is1 |
UninstallString |