SpymodePCSpy

SpymodePCSpymonitors and captures data from computers. It runs in stealth mode, hidden from the user, and have the ability to store captured data for later retrieval by or transmission to another computer.0

General information:

Malware Name: SpymodePCSpy
Malware Type: Spyware
Company Name: Spymode
Company URL: http://www.spymode.com/
Threat Level: High Risk
Operating System: WIN XP
Installation Type: Installed through EXE
Operation: Time of After Installation

Company Description:

Spymode provides professional spy surveillance equipment, cell phone jammer, spy camera, security and anti-spy software, history erasing software Its Spy software is PCSpy. This amazing software package is installed on any computer and installation takes only a few seconds. Once installed, it sits hidden away in the system and is undetectable. No one will ever know it is there except us. It will then monitor all keyboard activity, page titles, websites visited, passwords, email and more. The user will be able to save and view all activities simply and quickly.

Spyware Description:

SpymodePCSpymonitors and captures data from computers. It runs in stealth mode, hidden from the user, and have the ability to store captured data for later retrieval by or transmission to another computer.0

Characteristics/Symptoms:

    -> Ability to scan systems -> Monitor and capture data from computers -> Run in stealth mode -> Negatively affect the performance and stability of the system0

Additional information might be found here:

google Search at Google for SpymodePCSpy
bing Search at Bing for SpymodePCSpy
yahoo Search at Yahoo for SpymodePCSpy

Processes Running:

main.exe

File information Created after Installation:

File Location Size (Bytes) Type
C:\PC\main.exe 548864 Application
C:\PC\memaker2.pcs 151552 PCS File

Folder information Created after Installation:

Folder Location

Registry information Created after Installation:

Main Registry Key Sub Registry Key Key Value Name
HKEY_LOCAL_MACHINE SOFTWAREpcs run
HKEY_LOCAL_MACHINE SOFTWAREpcs ter
HKEY_LOCAL_MACHINE SOFTWAREpcs win