EmailObserver

EmailObserver is a spyware program that will invisibly copy all outgoing emails and accurately sends them to an email address. It also shows popup messages and associated with other browser too. It also collects personal information. It slows down the browser.0

General information:

Malware Name: EmailObserver
Malware Type: Spyware
Company Name: Raytown Corporation LLC
Company URL: http://www.softsecurity.com/
Threat Level: Medium
Operating System: WIN XP
Installation Type: Installed through EXE
Operation: Time of After Installation.

Company Description:

Raytown Corporation LLC is an independent monitoring and anti-monitoring software developing company. Its specialists have more than 10 years of experience in information protection. Today its products and custom solutions may be found in more than 80 countries all over the world, including a large number of Fortune 500 companies, law enforcement, government organizations, and military agencies. Its international team consists of people from the USA, Israel, Ukraine, Russia and other countries. Its information security technologies are used all over the globe. Its software is a perfect example of its ability to combine software development skills with a deep understanding of the state-of-the-art solutions in information security. It provides all its customers with the highest quality service. It does respect its Customers' privacy and maintain strict confidentiality of the information about them.

Spyware Description:

EmailObserver is a spyware program that will invisibly copy all outgoing emails and accurately sends them to an email address. It also shows popup messages and associated with other browser too. It also collects personal information. It slows down the browser.0

Characteristics/Symptoms:

    -> Ability to scan systems -> Monitor activity -> Relay information to another computer or locations in cyber-space -> Negatively affect the performance and stability of the system0

Additional information might be found here:

google Search at Google for EmailObserver
bing Search at Bing for EmailObserver
yahoo Search at Yahoo for EmailObserver

Processes Running:

emos.exe

File information Created after Installation:

File Location Size (Bytes) Type
C:\Documents and Settings\[USER]\Start Menu\Programs\EmailObserver\EmailObserver Help.lnk 571 Shortcut
C:\Documents and Settings\[USER]\Start Menu\Programs\EmailObserver\Uninstall EmailObserver.lnk 569 Shortcut
C:\Program Files\EmailObserver\emoshelp.chm 307732 Compiled HTML Help file

Folder information Created after Installation:

Folder Location
C:\Program Files\EmailObserver

Registry information Created after Installation:

Main Registry Key Sub Registry Key Key Value Name
HKEY_LOCAL_MACHINE \SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\EmailObserver URLInfoAbout
HKEY_LOCAL_MACHINE \SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\EmailObserver URLUpdateInfo
HKEY_LOCAL_MACHINE \SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\EmailObserver UninstallString