Spytech ShadowNet Remote Spy 2.0
Spytech ShadowNet Remote Spy 2.0 is a Keylogger with elevated risk that can also capture screenshots and realtime keystrokes and can logoff the remote machine. It can also be used to remotely monitor all running applications. Spytech ShadowNet Remote
Spy 2.0 is a Keylogger with elevated risk that can also capture screenshots and realtime keystrokes and can logoff the remote machine. It can also be used to remotely monitor all running applications.0
General information:
Malware Name: |
Spytech ShadowNet Remote Spy 2.0 |
Malware Type: |
Key Logger |
Company Name: |
Spytech Software and Design, Inc |
Company URL: |
http://www.spytech-web.com/
|
Threat Level: |
Elevated Risk |
Operating System: |
WIN XP |
Installation Type: |
Installed through EXE |
Operation: |
Time of After Installation |
Company Description:
Spytech Software and Design, Inc provides you the software Spytech ShadowNet Remote Spy that is a unique, powerful, web-based monitoring and remote control solution. ShadowNet allows you to remotely view and manage running applications and windows;
view screenshots and realtime keystrokes; shutdown, restart, and logoff the remote machine; all from your own web browser.
Spyware Description:
Spytech ShadowNet Remote Spy 2.0 is a Keylogger with elevated risk that can also capture screenshots and realtime keystrokes and can logoff the remote machine. It can also be used to remotely monitor all running applications. Spytech ShadowNet Remote
Spy 2.0 is a Keylogger with elevated risk that can also capture screenshots and realtime keystrokes and can logoff the remote machine. It can also be used to remotely monitor all running applications.0
Characteristics/Symptoms:
-> It is a web based remote monitoring solution that can be used to spy on others. -> It can also capture screenshots and real-time keystrokes. -> It can be used to remotely monitor all running applications
Additional information might be found here:
Processes Running:
Server.exe
File information Created after Installation:
File Location |
Size (Bytes) |
Type |
C:\Documents and Settings\All Users\Start Menu\Programs\Spytech ShadowNet\Read Me.lnk |
675 |
Shortcut |
C:\WINDOWS\imglib.dll |
270336 |
Application Extension |
C:\WINDOWS\snetopts.dat |
38 |
DAT File |
Folder information Created after Installation:
Folder Location |
C:\Program Files\Spytech Software\ShadowNet |
Registry information Created after Installation:
Main Registry Key |
Sub Registry Key |
Key Value Name |
HKEY_LOCAL_MACHINE |
\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Spytech ShadowNet |
Changed0 |
HKEY_LOCAL_MACHINE |
\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Spytech ShadowNet |
[NULL]0 |
HKEY_LOCAL_MACHINE |
\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Spytech ShadowNet |
UninstallString0 |