Guardian Monitor

Guardian Monitor is a Keylogger with elevated risk that monitors and captures data from computers including screenshots, keystrokes, web cam and microphone data, instant messaging chat sessions, email, visited websites. It can monitor chat history also. Guardian Monitor is a Keylogger with elevated risk that monitors and captures data from computers including screenshots, keystrokes, web cam and microphone data, instant messaging chat sessions, email, visited websites. It can monitor chat history also.0

General information:

Malware Name: Guardian Monitor
Malware Type: Key Logger
Company Name: Guardian Software
Company URL: http://www.guardiansoftware.com/
Threat Level: Elevated Risk
Operating System: WIN XP
Installation Type: Installed through EXE
Operation: Time of After Installation

Company Description:

Guardian Software provides you the software Guardian Monitor that permits you to supervise everything your child does from surfing the Web, email, chat, instant messaging and even peer to peer sites like music and video download sites and generates reports with day by day history. It also records all keystrokes, all display screens, files downloaded and zero in on problems determined by restricted words and phrases from Guardian's comprehensive library and monitor both sides of conversations. Guardian's Video eye records a searchable video of computer usage, not just snapshots.

Spyware Description:

Guardian Monitor is a Keylogger with elevated risk that monitors and captures data from computers including screenshots, keystrokes, web cam and microphone data, instant messaging chat sessions, email, visited websites. It can monitor chat history also. Guardian Monitor is a Keylogger with elevated risk that monitors and captures data from computers including screenshots, keystrokes, web cam and microphone data, instant messaging chat sessions, email, visited websites. It can monitor chat history also.0

Characteristics/Symptoms:

    -> It is usually hidden from the user. -> It can monitor chat history also. -> It captures and logs keystrokes on the computer without the user's knowledge and consent.

Additional information might be found here:

google Search at Google for Guardian Monitor
bing Search at Bing for Guardian Monitor
yahoo Search at Yahoo for Guardian Monitor

Processes Running:

GDAdmin.exe

File information Created after Installation:

File Location Size (Bytes) Type
C:\WINDOWS\system32\GDSys\UNWISE.EXE 153088 Application
C:\WINDOWS\system32\GDSys\mx50.ocx 112904 ActiveX Control
C:\WINDOWS\system32\GDSys\vbalTab6.ocx 61440 ActiveX Control

Folder information Created after Installation:

Folder Location
C:\WINDOWS\system32\GDSys
C:\WINDOWS\system32\GDSys\BACKUP

Registry information Created after Installation:

Main Registry Key Sub Registry Key Key Value Name
HKEY_LOCAL_MACHINE \SOFTWARE\Microsoft\Windows\CurrentVersion\Run GDMgr0
HKEY_LOCAL_MACHINE \SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Guardian Software [NULL]0