SpyArsenal Logger
SpyArsenal Logger is a keylogger that monitors employee and parents. It also captures and monitors conversations.
General information:
| Malware Name: |
SpyArsenal Logger |
| Malware Type: |
Keylogger |
| Company Name: |
KMiNT21 Software |
| Company URL: |
http://spyarsenal.com/
|
| Threat Level: |
Moderate Risk |
| Operating System: |
WIN XP |
| Installation Type: |
Installed through EXE |
| Operation: |
Time of After Installation |
Company Description:
KMiNT21 Software provides you the software SpyArsenal Logger that is a parental control and employee monitoring utility that intercepts all messages sent through a popular internet paging program Yahoo! Messenger and saves their copies to a file on
the local hard drive. It is absolutely transparent for the user who will not notice any delays or other signs which might indicate that his/her conversations are monitored.
Spyware Description:
SpyArsenal Logger is a keylogger that monitors employee and parents. It also captures and monitors conversations.
Characteristics/Symptoms:
-> It monitors employee and parents. -> It also captures and monitors conversations.
Additional information might be found here:
Processes Running:
rvy.exe
File information Created after Installation:
| File Location |
Size (Bytes) |
Type |
| C:\Documents and Settings\[USER]\Start Menu\Programs\SpyArsenal Yahoo Logger\Links\Mail to support.lnk |
1654 |
Shortcut |
| C:\WINDOWS\system32\csvdey\csvde.dll |
52736 |
Application Extension |
| C:\WINDOWS\system32\csvdey\csvdey.dll |
92160 |
Application Extension |
Folder information Created after Installation:
| Folder Location |
| C:\Documents and Settings\[USER]\Start Menu\Programs\SpyArsenal Yahoo Logge |
| C:\Documents and Settings\[USER]\Start Menu\Programs\SpyArsenal Yahoo Logger\Link |
Registry information Created after Installation:
| Main Registry Key |
Sub Registry Key |
Key Value Name |
| HKEY_CURRENT_USER |
\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\SpyArsenal Yahoo Logger |
|
| HKEY_CURRENT_USER |
\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\SpyArsenal Yahoo Logger |
Order |
| HKEY_LOCAL_MACHINE |
\SOFTWARE\KMiNT21\SpyArsenal-Yahoo-Logger |
|