TypeAgent

TypeAgent is a keylogger that logs keystrokes of the user's PC covertly. It can also record URLs, IM windows, Word documents, and e-mails. It works under hidden mode.0

General information:

Malware Name: TypeAgent
Malware Type: Key Logger
Company Name: Mindfire Holdings
Company URL: http://www.mindfire.com/
Threat Level: Elevated Risk
Operating System: WIN XP
Installation Type: Installed through EXE
Operation: Time of After Installation

Company Description:

Mindfire Interactive is an award-winning agency specializing in Internet Marketing, Web Development, and Creative Services. We bring our wealth of experience in Internet strategies to every client commitment, whether a corporate website development project or a managed Internet Marketing campaign. From thought to finish , our marketing, development, usability, and creative teams have the knowledge and experience to handle the critical creative needs of your company.

Spyware Description:

TypeAgent is a keylogger that logs keystrokes of the user's PC covertly. It can also record URLs, IM windows, Word documents, and e-mails. It works under hidden mode.0

Characteristics/Symptoms:

    -> Monitor and capture data from computers -> Run in stealth mode -> Intercepts keystrokes from the keyboard and records them in a log -> Starts with the operating system0

Additional information might be found here:

google Search at Google for TypeAgent
bing Search at Bing for TypeAgent
yahoo Search at Yahoo for TypeAgent

Processes Running:

TypeAgent.exe

File information Created after Installation:

File Location Size (Bytes) Type
C:\Program Files\TypeAgent\icr.dll 229376 Application Extension

Folder information Created after Installation:

Folder Location

Registry information Created after Installation:

Main Registry Key Sub Registry Key Key Value Name
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindowsCurrentVersionUninstall{0A23E25E-DA68-4EA9-9A06-424CDA272BD7} VersionMajor
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindowsCurrentVersionUninstall{0A23E25E-DA68-4EA9-9A06-424CDA272BD7} VersionMinor
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindowsCurrentVersionUninstall{0A23E25E-DA68-4EA9-9A06-424CDA272BD7} WindowsInstaller