MSN Protocol Analyzer

Spyware.MSNPAnalyzer is a program that through the packet sniffing library WinPCap will intercept, decrypt, and log all network activity made by Microsoft Messenger.0

General information:

Malware Name: MSN Protocol Analyzer
Malware Type: Spyware
Company Name: SoftAhead
Company URL: http://www.softahead.com/
Threat Level: Low Risk
Operating System: WIN XP
Installation Type: Installed through EXE
Operation: Time of After Installation

Company Description:

SoftAhead provides software for the security of the PC. One of its software is MSN Protocol Analyzer. MSNProtocol Analyzer (MSNPAnalyzer) is a network utility that can monitor (or capture, monitor) the sessions of MSN Protocol. If we use this program in combination with SwitchSniffer program, we can capture and see all the MSNP sessions including conversations and MSN commands.

Spyware Description:

Spyware.MSNPAnalyzer is a program that through the packet sniffing library WinPCap will intercept, decrypt, and log all network activity made by Microsoft Messenger.0

Characteristics/Symptoms:

    -> Ability to scan systems -> Monitor activity -> Relay information to another computer or locations in cyber-space -> Negatively affect the performance and stability of the system0

Additional information might be found here:

google Search at Google for MSN Protocol Analyzer
bing Search at Bing for MSN Protocol Analyzer
yahoo Search at Yahoo for MSN Protocol Analyzer

Processes Running:

File information Created after Installation:

File Location Size (Bytes) Type
C:\Documents and Settings\All Users\Start Menu\Programs\MSN Protocol Analyzer\Read Me First.lnk 599 Shortcut
C:\Program Files\MSN Protocol Analyzer\ReadMe.txt 2483 Text Document
C:\Program Files\MSN Protocol Analyzer\unins000.exe 707338 Application

Folder information Created after Installation:

Folder Location
C:\Program Files\MSN Protocol Analyzer

Registry information Created after Installation:

Main Registry Key Sub Registry Key Key Value Name
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindowsCurrentVersionUninstallMSN Protocol Analyzer_is1 HelpLink
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindowsCurrentVersionUninstallMSN Protocol Analyzer_is1 Inno Setup: Selected Tasks
HKEY_LOCAL_MACHINE \SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MSN Protocol Analyzer_is1 QuietUninstallString