SystemSpyServer

SystemSpyServer includes elevated threats that are typically installed without adequate notice and consent, and may make unwanted changes to system, such as reconfiguring browser’s homepage and search settings. These threats may install advertising-related add-ons, including toolbars and search bars, or insert advertising-related components into the Winsock Layered Service Provider chain. These new add-ons and components may block or redirect preferred network connections, and can negatively impact computer’s performance and stability.0

General information:

Malware Name: SystemSpyServer
Malware Type: Key Logger
Company Name: Aby Software
Company URL: http://www.systemspy.org/
Threat Level: Elevated Risk
Operating System: WIN XP
Installation Type: Installed through EXE
Operation: Time of After Installation.

Company Description:

Aby Software was founded in 1997 as a software development company. In 1999 it expanded its business to the web: it developed a network of software related sites that currently covers eight separate projects, including one of the most popular software archives on the web, Free Downloads Center. In 2000 it restructured its business with software development division separated to Aby Software Company. Since 2003 Aby Software distributes its products itself. It provides high-quality software solutions both to home users and small, medium and large-scale businesses. The range of our software products presents more than twenty different titles varying from games to database applications.

Spyware Description:

SystemSpyServer includes elevated threats that are typically installed without adequate notice and consent, and may make unwanted changes to system, such as reconfiguring browser’s homepage and search settings. These threats may install advertising-related add-ons, including toolbars and search bars, or insert advertising-related components into the Winsock Layered Service Provider chain. These new add-ons and components may block or redirect preferred network connections, and can negatively impact computer’s performance and stability.0

Characteristics/Symptoms:

    -> Monitor and capture data from computers -> Run in stealth mode -> Intercepts keystrokes from the keyboard and records them in a log -> Starts with the operating system0

Additional information might be found here:

google Search at Google for SystemSpyServer
bing Search at Bing for SystemSpyServer
yahoo Search at Yahoo for SystemSpyServer

Processes Running:

sss.exe

File information Created after Installation:

File Location Size (Bytes) Type
C:\Documents and Settings\All Users\Start Menu\Programs\System Spy Server v1.0\Uninstall System Spy Server v1.0.lnk 618 Shortcut
C:\Documents and Settings\All Users\Start Menu\Programs\System Spy Server v1.0\Visit Our Website.lnk 587 Shortcut
C:\Program Files\System Spy Server v1.0\unins000.dat 2696 DAT File

Folder information Created after Installation:

Folder Location
C:\Program Files\System Spy Server v1.0

Registry information Created after Installation:

Main Registry Key Sub Registry Key Key Value Name
HKEY_LOCAL_MACHINE \SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\System Spy Server v1.0_is1 URLInfoAbout
HKEY_LOCAL_MACHINE \SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\System Spy Server v1.0_is1 URLUpdateInfo
HKEY_LOCAL_MACHINE \SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\System Spy Server v1.0_is1 UninstallString