Remotely Anywhere Server Edition

Remotely Anywhere Server Edition is a remote control tool that allows administrators to manage and control PCs or networks from a remote location. It captures and logs keystrokes on the computer without the user's knowledge and consent. It can be used to harm users on the same network.0

General information:

Malware Name: Remotely Anywhere Server Edition
Malware Type: Remote Control
Company Name: LogMeIn Inc
Company URL: http://remotelyanywhere.com/
Threat Level: Low Risk
Operating System: WIN XP
Installation Type: Installed through EXE
Operation: Time of After Installation

Company Description:

LogMeIn Inc provides you the software Remotely Anywhere Server Edition that provides real-time performance, connection, hardware and registry information so you know exactly what’s going on and when. This gives you access to the nuts and bolts of your system so that you can perform the diagnostic tests you need in order to keep your servers running smoothly.

Spyware Description:

Remotely Anywhere Server Edition is a remote control tool that allows administrators to manage and control PCs or networks from a remote location. It captures and logs keystrokes on the computer without the user's knowledge and consent. It can be used to harm users on the same network.0

Characteristics/Symptoms:

    -> It is a network application that allows to manage and control PCs or networks from a remote location. -> It allows to access another computer without explicit authorization. -> It can also be used to monitor and steal information from the remote computer -> Slows down the performance of PC0

Additional information might be found here:

google Search at Google for Remotely Anywhere Server Edition
bing Search at Bing for Remotely Anywhere Server Edition
yahoo Search at Yahoo for Remotely Anywhere Server Edition

Processes Running:

RemotelyAnywhere.exe

File information Created after Installation:

File Location Size (Bytes) Type
C:\Program Files\RemotelyAnywhere\MonitoringScript.txt 24967 Text Document
C:\Program Files\RemotelyAnywhere\RemotelyAnywhere.log 36556 Text Document
C:\Program Files\RemotelyAnywhere\mondevs.txt 88402 Text Document

Folder information Created after Installation:

Folder Location

Registry information Created after Installation:

Main Registry Key Sub Registry Key Key Value Name
HKEY_LOCAL_MACHINE \SOFTWARE\RemotelyAnywhere\V5\EventLogFilter\02 EventSource0
HKEY_LOCAL_MACHINE \SOFTWARE\RemotelyAnywhere\V5\EventLogFilter\02 EventType0