SentryPC

SentryPC is a keylogger which logs keystrokes of the user's PC invisibly in the background. Its features: log keystrokes typed, log application usage, log websites visited, log all chat conversations, log windows viewed, work under hidden mode. It includes elevated threats that are typically installed without adequate notice and consent, and may make unwanted changes to system, such as reconfiguring browser’s homepage and search settings. These threats may install advertising-related add-ons, including toolbars and search bars, or insert advertising-related components into the Winsock Layered Service Provider chain. These new add-ons and components may block or redirect preferred network connections, and can negatively impact computer’s performance and stability.0

General information:

Malware Name: SentryPC
Malware Type: Key Logger
Company Name: SentryPC
Company URL: http://www.sentrypc.com
Threat Level: Elevated Risk
Operating System: WIN XP
Installation Type: Installed through EXE
Operation: Time of After Installation.

Company Description:

SentryPC is a collaboration of roughly 6 years in the computer monitoring and parental control software market. Devoted to creating the best software solution possible, it created a new name to go along with its new product, SentryPC. Parents will find SentryPC as the perfect solution to monitoring, filtering, and restricting their children's computer experience thus protecting them from harmful content, child predators, and more. Businesses, schools, libraries, and others can ensure their computer users have access to only what they determine when they determine. SentryPC enables to control, restrict and monitor access and usage of PC.  We can control how long and when users are allowed to use the computer, prevent the use of specific programs, block access to certain websites, restrict access to Windows functions like Control Panel and more.

Spyware Description:

SentryPC is a keylogger which logs keystrokes of the user's PC invisibly in the background. Its features: log keystrokes typed, log application usage, log websites visited, log all chat conversations, log windows viewed, work under hidden mode. It includes elevated threats that are typically installed without adequate notice and consent, and may make unwanted changes to system, such as reconfiguring browser’s homepage and search settings. These threats may install advertising-related add-ons, including toolbars and search bars, or insert advertising-related components into the Winsock Layered Service Provider chain. These new add-ons and components may block or redirect preferred network connections, and can negatively impact computer’s performance and stability.0

Characteristics/Symptoms:

    -> Monitor and capture data from computers -> Run in stealth mode -> Intercepts keystrokes from the keyboard and records them in a log -> Starts with the operating system0

Additional information might be found here:

google Search at Google for SentryPC
bing Search at Bing for SentryPC
yahoo Search at Yahoo for SentryPC

Processes Running:

services.exe

File information Created after Installation:

File Location Size (Bytes) Type
C:\Program Files\SentryPC\readme!.txt 1738 Text Document
C:\WINDOWS\spcchat.dll 65 Application Extension
C:\WINDOWS\spcviewer.exe 30 Application

Folder information Created after Installation:

Folder Location
C:\Program Files\SentryPC

Registry information Created after Installation:

Main Registry Key Sub Registry Key Key Value Name
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindowsCurrentVersionUninstallSentryPC DisplayName
HKEY_LOCAL_MACHINE \SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SentryPC UninstallString