Win Key Genie

Win Key Genie is a keylogger that logs all kestrokes pressed. The typed text is saved to a text file which can be retrieved anytime.0

General information:

Malware Name: Win Key Genie
Malware Type: Key Logger
Company Name: VsiSoftware.com, Inc.
Company URL: http://www.vsisystems.com/
Threat Level: High Risk
Operating System: WIN XP
Installation Type: Installed through EXE
Operation: Time of After Installation

Company Description:

VsiSoftware.com, Inc. provides us the commercial keylogger that automatically saves all typed text. It has many more features enabled in it. It automatically saves all text typed and pasted. It can be retrieved with or or by click the list box.  It then automatically copied to our clipboard, where we can paste it to any windows window.

Spyware Description:

Win Key Genie is a keylogger that logs all kestrokes pressed. The typed text is saved to a text file which can be retrieved anytime.0

Characteristics/Symptoms:

    -> Monitor and capture data from computers -> Run in stealth mode -> Intercepts keystrokes from the keyboard and records them in a log -> Starts with the operating system0

Additional information might be found here:

google Search at Google for Win Key Genie
bing Search at Bing for Win Key Genie
yahoo Search at Yahoo for Win Key Genie

Processes Running:

WinKeyG.exe

File information Created after Installation:

File Location Size (Bytes) Type
C:\Program Files\Win Key Genie\ST6UNST.000 2602 000 File
C:\Program Files\Win Key Genie\ST6UNST.LOG 2795 Text Document
C:\Program Files\Win Key Genie\WinKeyG.exe 69632 Application

Folder information Created after Installation:

Folder Location
C:\Program Files\Win Key Genie

Registry information Created after Installation:

Main Registry Key Sub Registry Key Key Value Name
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindowsCurrentVersionUninstallST6UNST #1 UninstallString
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindowsCurrentVersionUninstallST6UNST #2 UninstallString
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindowsCurrentVersionUninstallST6UNST #3 UninstallString