Cordix

Cordix is a software tool that converts analog voice modem to a call recorder. It starts with the operating system0

General information:

Malware Name: Cordix
Malware Type: Key Logger
Company Name: Concel Systems
Company URL: http://www.concelsys.com/
Threat Level: Severe Risk
Operating System: WIN XP
Installation Type: Installed through EXE
Operation: Time of After Installation

Company Description:

Concel Systems is a Greek company, developing communication software since 2003. It builds smart solutions, both generic and customized. It relies on sophisticated product architecture to bring us flexible and reliable solutions at the shortest time and the lowest cost. It distributes the products through internet and a team of resellers who provide consultation, on-site installation, integration and support services.

Spyware Description:

Cordix is a software tool that converts analog voice modem to a call recorder. It starts with the operating system0

Characteristics/Symptoms:

    -> Monitor and capture data from computers -> Run in stealth mode -> Intercepts keystrokes from the keyboard and records them in a log -> Starts with the operating system0

Additional information might be found here:

google Search at Google for Cordix
bing Search at Bing for Cordix
yahoo Search at Yahoo for Cordix

Processes Running:

apr.exe

File information Created after Installation:

File Location Size (Bytes) Type
C:\Program Files\Concel Systems\Advanced Phone Recorder\Docs\DiacorderKit.url 68 Internet Shortcut
C:\Program Files\Concel Systems\Advanced Phone Recorder\Tree.ini 71 Configuration Settings
C:\Program Files\Concel Systems\Advanced Phone Recorder\unins000.exe 635337 Application

Folder information Created after Installation:

Folder Location
C:\Program Files\Concel Systems\Advanced Phone Recorder
C:\Program Files\Concel Systems\Advanced Phone Recorder\Docs

Registry information Created after Installation:

Main Registry Key Sub Registry Key Key Value Name
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindowsCurrentVersionUninstall{1B8F77CC-1040-4808-9527-68B5007D28B1}_is1 URLInfoAbout
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindowsCurrentVersionUninstall{1B8F77CC-1040-4808-9527-68B5007D28B1}_is1 URLUpdateInfo
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindowsCurrentVersionUninstall{1B8F77CC-1040-4808-9527-68B5007D28B1}_is1 UninstallString